Cloud Native Security
A look at the NSA's "Securing the Software Supply Chain: Recommended Practices for Managing OSS and SBOM's"
A look at the current software identification ecosystem
A look at the recently published secure AI system development guidelines from CISA and NCSC
Chris joins Clint Gibler of tl;dr sec and SemGrep to discuss software supply chain security
OSS Security & the Federal Government
An analysis of the new OWASP BOM Maturity Model
Security Data, Detections & the Cyber Market
A look at the OMB Memo "Modernizing the Federal Risk Authorization Management Program (FedRAMP)"
A look at the new CISA Secure-by-Design publication
SecOps, Detection & AI
A look at the recent NSA/CISA Top 10 Cybersecurity Misconfigurations publication