
DEVSECOPS Talks #53 - Open Software Supply Chain Attack Reference Framework with Neatsun
The DevSecOps Talks Podcast
00:00
The Benefits of Continuous Compliance
I saw PCI DSS prescriptive. It's a prescriptive regulation that requires you to do certain steps, right? Non prescriptive like HIPAA that doesn't tell you what to do. This is your basic prioritization. So it actually makes sense when you think about it in there. But part of this are vulnerabilities within open source. Some of them are configuration issues. We make as people working in this industry that just five years ago, we thought that there are normal standards ways of working and now we know it better.
Transcript
Play full episode