『Opensource Software Security in the DoD』のカバーアート

Opensource Software Security in the DoD

Opensource Software Security in the DoD

無料で聴く

ポッドキャストの詳細を見る

【Amazonプライム会員限定】今ならプレミアムプランが4か月 月額99円。

10月19日まで。※適用条件あり

Open source software promises cost savings and faster innovation, but the Department of Defense's approach to it is messier than most people realize. Host Matt Triner sits down with Hunter Strategy's Greg Vanore (Director of Software Engineering) and Nate Kingsley (CIO) to unpack the real risks: contributor license agreements that can sign away government-funded code, foreign ownership questions that don't always get consistent answers, and a supply chain that's only as trustworthy as its weakest link. They also dig into what's actually fixing the problem, from CI/CD pipelines to continuous ATO. This one gets spicy.Episode Chapters:

00:00 Introduction and Overview

01:59 Defining Open Source Software

03:49 Contributor License Agreements and Licensing Issues

06:08 The Challenges of Open Source Software in the DoD

08:39 The Need for Clear Policies

11:25 The Financial Challenges of Open Source Software

17:19 The Risk of Support and Lack of Governance

20:12 The Permissiveness of Open Source Software in the DoD

24:02 Supply Chain Risk and Software Sourcing

30:11 Improving the Use of Open Source Software

35:16 The Role of S-BOMs and Information Sharing

37:49 Conclusion and Call to Action

adbl_web_anon_alc_button_suppression_t1
まだレビューはありません