filmov
tv
Kubernetes Supply Chain Security: The Software Factory - Andrew Martin, Control Plane
Показать описание
Kubernetes Supply Chain Security: The Software Factory - Andrew Martin, Control Plane
The original supply chain attack was described by Ken Thompson 35 years ago, in Reflections on Trusting Trust. As the SUNBURST attacks abuse the same implicit trust relationship between consumers and vendors today, we ask ourselves: does cloud native have the answer? Based on work from the US Air Force and DoD, we present a Kubernetes Software Factory approach that can defend against supply chain risks. But can we mitigate the risk entirely? What about consuming closed source and binary artefacts? Is there a silver bullet for this producer-consumer problem, that impacts supply chain relationships at all levels of industry and technology? In this talk we: - Showcase work to build a Kubernetes Software Factory with Tekton - Deep dive on signing and verification approaches to securely build software with in-toto, TUF, SPIFFE, SPIRE, and sigstore - Review lessons learned from the SUNBURST attacks - Detail future cloud native solutions to harden Kubernetes, builds, and infrastructure
Kubernetes Supply Chain Security
Kubernetes Supply Chain Security: The Software Factory - Andrew Martin, Control Plane
Enforcing a Secure Supply Chain on Kubernetes
Supply Chain Security in Kubernetes - DevConf.CZ 2024
Supply Chain Security in Kubernetes - Adrian Mouat, Chainguard | Craft Conference 2022
Enforcing a Secure Supply Chain on Kubernetes
Software supply chain security in Kubernetes
Getting Started with Supply Chain Security is Easier Than You... Michael Lieberman & Timothy Mi...
Kubernetes Security: Attacking And Defending Modern Infrastructure - Lenin Alevski
The Big Bang! Zero Trust and Supply Chain Security with Kubernetes | Kirsten Newcomer [LIVE SERIES]
Enforcing a Secure Supply Chain on Kubernetes
Secure Supply Chain in Kubernetes
Make the Secure Kubernetes Supply Chain Work for You - Adolfo García Veytia, Chainguard
Keynote: Approaching the SBOM: Best Practice for Software Supply Chain Security - Daniel Nurmi
Kubernetes: Securing the Supply Chain
Software supply chain security in Kubernetes Explained
Software Signing for Kubernetes Supply Chain & Everybody Else
Securing the Software Supply Chain with in-toto - Santiago Torres-Arias & Justin Cappos, NYU
From Kubernetes With ♥ Open Tools For Open, Secure Supply Chains - Adolfo García Veytia, Chainguard...
Certified Kubernetes Security Specialists (CKS) Full Course - Supply Chain Security 5.2
Kubernetes Security Trends 2024 | Software Supply Chain Security, Zero Trust and AI
Supply chain security - The first steps
Building Images for the Secure Supply Chain - Adrian Mouat, Chainguard
The Secure Cloud Cast (E1) | Supply Chain Security Best Practices
Комментарии