Work

SOSS Fusion Keynote

Keynote
Security
Open Source

Back to Security Basics: Evaluating, Consuming, and Contributing Open Source Software

A bright pink sheet of paper used to wrap flowers curves in front of rich blue background

SOSS Fusion Session

We won! Open source software is everywhere... so now what? Shifting left starts at the beginning – ensuring the security of open source software requires careful evaluation, use, and contribution. This talk will cover some important challenges in securely consuming open source software. Attendees will learn to evaluate projects based on active maintenance, patch cycles, and vulnerability management. We will explore the role of project documentation, code contribution expectations, and community involvement in project maturity and code quality, as well as tools and community guidance. Walk away with the beginnings of a practical framework and checklist that you can mold to your own needs.