The Secure Developer

Securing the future of DevOps and AI: real talk with industry leaders.

https://the-secure-developer.simplecast.com

subscribe
share






episode 133: Securing Supply Chains In C++, Java, And JavaScript With Liran Tal And Roy Ram


In this episode of The Secure Developer, we delve into the subject of supply chain security across various ecosystems and languages, guided by industry experts Liran Tal and Roy Ram from Snyk. Liran is the Director of Developer Advocacy at Snyk and has a background working particularly in Node.js and JavaScript. Roy is a Senior Product Manager serving as part of the product team for Snyk Code, and has a background in cybersecurity and a solid understanding of C++. With a 20-year background in Java, host Simon Maple moderates the conversation. We discuss the challenges and differences between ecosystems, such as the use of third-party libraries and issues with typosquatting and malicious packages. We also talk about the volume of dependencies that each of our ecosystems pull in, whether you should stay on the latest version or pin to a version, and the importance of software bill of materials (SBOMs). For valuable advice on securing your supply chain in different languages and ecosystems, tune in today!

Follow Us

  • Our Website
  • Our LinkedIn


fyyd: Podcast Search Engine
share








 May 15, 2023  38m