Software supply chain security practices seeing only modest adoption
If you are wondering what area of DevSecOps has tremendous opportunity for impact, look no further than security of your software supply chain . "Software supply chain security practices, embodied as the SLSA or SSDF frameworks, are already seeing modest adoption but are not seeing universal adoption yet. There is still a lot of room for improvement there," said Todd Kuleza, a member of Google Cloud's DevOps Research and Assessment (DORA) team and a senior user experience (UX) researcher at Google Cloud. Kuleza, a co-author of the DORA team's 2022 State of DevOps Report , recently joined GitLab for a webcast to discuss software supply chain security adoption, including: Why teams choose CI/CD and other modern development processes to improve their security posture How automated security checks within integration and deployment help developers own security processes How to establish team security practices to reduce developer burnout Listen to the full webc...