3 Software Supply Chain Security Pitfalls and How to Avoid Them

Logo
Presented by

John Tierney, Field CTO at Legit Security & Liav Caspi, CTO and Co-Founder at Legit Security

About this talk

The SolarWinds attack in December 2020 put software supply chain security on the radar of many organizations, and new threats have been rapidly multiplying ever since. But surveys show that 71% of security professionals have misconceptions about what effective software supply chain security entails and have yet to fully adopt a modern approach to securing it despite evidence that traditional AppSec tools and methodologies are no longer sufficient. Join Liav Caspi (CTO at Legit Security) and John Tierney (Field CTO at Legit Security) as they reveal the 3 most common software supply chain security pitfalls and how to avoid them so you can: - Protect your business beyond 3rd-party and open-source dependencies - Prevent malicious injections into source code and development pipeline - Secure build systems as robustly as production system - Avoid attacks by taking a holistic approach to software supply chain security.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (10)
Subscribers (802)
Legit is a new way to manage your application security posture for security, product and compliance teams. With Legit, enterprises get a cleaner, easier way to manage and scale application security and address risks from code to cloud. Built for the modern SDLC, Legit tackles the toughest problems facing security teams, including GenAI usage, proliferation of secrets and an uncontrolled dev environment. Fast to implement and easy to use, Legit lets security teams protect their software factory from end to end, gives developers guardrails that let them do their best work safely, and proves the success of the security program. This new approach means teams can control risk across the business – and prove it.