Cloud Native

What’s The Goal Of Open Source Security Foundation | Interview With Derek Weeks

0

Guest: Derek Weeks (LinkedIn, Twitter)
Organization: The Linux Foundation (Twitter)

The Open Source Security Foundation (OpenSSF) is a cross-industry collaboration that brings together multiple open source software initiatives under one umbrella to identify and fix cybersecurity vulnerabilities in open source software and develop improved tooling, training, research, best practices, and vulnerability disclosure practices. The foundation recently raised $10 million in new investments becoming a fully funded foundation within the Linux Foundation. We sat down with Derek Weeks, SVP and Chief Marketing Officer at The Linux Foundation to understand the goal of OpenSSF and how it plans to tackle some of the biggest security challenges in the computing space.

Topics we covered in this show:

  • How serious are the challenges in terms of security and open source?
  • There is a growing emphasis on understanding the open-source software supply chain to secure environments and workloads. We discussed the importance of the software supply chain.
  • Is the Linux Foundation trying to consolidate all of its security efforts with OpenSSF as it has a few projects, such as SPDX, focusing on security and software supply chain?
  • Since OpenSSF is now a fully funded organization, what are the areas they are looking at for investment and growth?
  • The Linux Foundation is also home to AI/ML projects and many other projects that security can benefit from. o Is OpenSSF looking at collaboration within such projects to leverage each other’s work?
  • Is there any plan to engage the public sector and government agencies as there is a renewed interest in cybersecurity by the Biden administration via some Executive orders?
  • What’s the governance model for OpenSSF?
Read Full Transcript & Technical Deep Dive

API Investments Remain Strong As More Companies Embrace API-First Philosophy: Report

Previous article

SUSE Acquires NeuVector; Plans To Fully Integrate NeuVector Into SUSE Rancher

Next article