Takeaways from Recent Software Supply Chain Developments

Logo
Presented by

Anthony Decicco, GTC Law Group

About this talk

Modern application development and deployment models make for a software supply chain that’s more complicated than ever before. While managing the open source dependencies brought in by developers and package managers is a crucial consideration, you must begin looking further. - Which dependencies are being included in containers after you’ve scanned the base image? - What business, security and compliance risks are introduced by the web services you leverage? - What are the license obligations of the code snippets automatically added by intelligent IDEs? Join us as we discuss how to stay on top the newest application development technologies and the risks that come along with them.
Related topics:

More from this channel

Upcoming talks (9)
On-demand talks (131)
Subscribers (67546)
Black Duck® offers the most comprehensive, powerful, and trusted portfolio of application security solutions in the industry. We have an unmatched track record of helping organizations around the world secure their software quickly, integrate security efficiently in their development environments, and safely innovate with new technologies. As the recognized leaders, experts, and innovators in software security, Black Duck has everything you need to build trust in your software. As of October 1, 2024 the Synopsys Software Integrity Group is now Black Duck®