Software Engineering Radio - the podcast for professional software developers cover image

SE Radio 606: Charlie Jones on Third-Party Software Supply Chain Risks

Software Engineering Radio - the podcast for professional software developers

00:00

Managing Transitive Dependencies and Supply Chain Risks

Discussion on the complexities of transitive dependencies in third-party software components, emphasizing the importance of understanding dependencies to mitigate supply chain risks and the role of binary analysis for independent evaluation. Emphasis on automation for efficient risk management and the need for continual assessment of software packages. Insights into regulations, compliance, and real-world examples like the SolarWinds case and vulnerabilities in the MOVEit application by Progress Software.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app