Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

CNCF [Cloud Native Computing Foundation]

Protecting Ourselves from CNCFgate - Software Supply Chain Security at CNCF - Practices, and Tools

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This presentation examines practices and tools for securing cloud native software supply chains. It discusses source code, dependency validation, build pipelines, reproducible builds, and challenges in maintaining a secure supply chain.

Syllabus

Intro
Why is Cloud Native Supply Chain a Problem?
Navigating Supply Chain Security in Cloud Native
Five Main Areas
Securing the Source Code Start with the basics...
Securing the Dependencies • Scan & Validate dependencies • Remember - CVE's are a trailing indicatorl Look for operational hygiene
Securing the Build Pipeline Step 1: Read the DoD DevSecOps Reference Paper
Reproducible Builds
Unresolved Challenges
Framework with common tools and templates
Get Involved

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of Protecting Ourselves from CNCFgate - Software Supply Chain Security at CNCF - Practices, and Tools

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.