Skip to content

Details

How many times have we asked ourselves if it is a good idea to release to production on a Friday afternoon? Is the production software sufficiently robust and/or resilient to vulnerabilities? How can we detect and correct security problems in production? Better yet, how can we prevent such problems or attacks?

In recent years the topic Software Supply Chain Security has taken on greater importance. Concepts like SBOMs, SLSA, Reproducible Builds, CI/CD Security are widely discussed to answer the previously posited questions. In this session we will discover what are these concepts and how you may apply them to your own projects.

Speaker:
Andres Almiray is a Java/Groovy developer and a Java Champion, Developer Advocate, with more than 2 decades of experience in software design and development. He has been involved in web and desktop application development since the early days of Java. Andres is a true believer in open source and has participated on popular projects like Groovy, Griffon, and DbUnit, as well as starting his own projects. Founding member of the Griffon framework and Hackergarten community event. Author of JReleaser. You can find him on X as @aalmiray.

Schedule:
11:30AM-12:00PM EST Networking
12:00PM-1:00PM EST Andres presentation with Q&A

AI summary

By Meetup

Session on software supply chain security for developers/DevOps, showing how to apply SBOMs, SLSA, and reproducible builds to secure production deployments.

Related topics

Java
Open Source
Continuous Integration

You may also like