
Kyle Kelly -- The Dumpster Fire of Software Supply Chain Security
The Application Security Podcast
00:00
Navigating Software Supply Chain Security
This chapter explores the risks of forking third-party software without adequate oversight, emphasizing the impact on software supply chain security. It discusses best practices from industry leaders like Google and the necessity for organizations to implement robust evaluation processes for open-source components. The conversation concludes with effective strategies for enhancing security, including the establishment of visible policies and the use of Software Bills of Materials (SBOMs).
Transcript
Play full episode