Secure Software Supply Chain with Nikhil Kaul and Victor Szalvay

Secure Software Supply Chain with Nikhil Kaul and Victor Szalvay

This week on the podcast, hosts Stephanie Wong and Bukola Ayodele speak with Nikhil Kaul and Victor Szalvay about security in the software supply chain. Cloud OnAir will be offering a virtual event on supply chain software security on July 29th, and our guests start the show by telling us more about it.

The recent cyber attacks on US companies have brought to light the importance of cyber security. A new set of guidelines for securing these components and software as a whole will be released soon, impacting not just software developers but the users as well. The Cloud OnAir event will breakdown these new guidelines and educate attendees on steps to take to ensure more secure software and software components. Internally, Google has been optimizing their software supply chain security for years with solutions like BeyondCorp and internally developed solutions that Google has since adapted for their clients. These solutions will be discussed in detail in the Cloud OnAir event.

Victor goes on to explain the three areas of supply chain security and how they fit into the overall security of online platforms. Software projects are often built using many small pieces of software sourced from third parties, which can create vulnerabilities. The new guidelines will help ensure quality and security at all levels of development for software and its pieces, thus strengthening security at every level of the supply chain. Nikhil and Victor talk about issues that contribute to supply chain security, including the risks that a microservices architecture can introduce and the use of open source software and their dependencies. We hear about Google's contributions to the supply chain security effort, like OpenSSF that strives to bring the open source community together toward the goal of cyber security. Our guests give listeners tips on starting the supply chain security journey.

Join the Cloud OnAir talk to learn more!

Nikhil Kaul

Nikhil leads a team of product marketers focused on driving and building messaging, positioning, and go-to-market strategy for Google Cloud's DevOps portfolio.

Victor Szalvay

Victor is an Outbound Product Manager with Google Cloud focused on helping customers get the most from the cloud. Previously he has been a tech entrepreneur and leader, with a concentration on DevOps and app dev team productivity.

Cool things of the week
  • Helping you pick the greenest region for your Google Cloud resources blog
  • Optimizing your Google Cloud spend with BigQuery and Looker blog
Interview
  • Container Security: Building trust in your software supply chain site
  • OpenSSF site
  • Deps site
  • SLSA site
  • Cloud Build site
  • BeyondCorp site
  • Binary Authorization for Borg docs
  • GKE Autopilot docs
  • GCP Podcast Episode 251: BeyondCorp with Kiran Nair and Ameet Jani podcast
What's something cool you're working on?

Bukola is working on the new season of Security Command Center set to be released next month!

Episoder(335)

Database Migration Service with Shachar Guz, Inna Weiner, and Gabe Weiss

Database Migration Service with Shachar Guz, Inna Weiner, and Gabe Weiss

Stephanie Wong talks with guests Shachar Guz, Inna Weiner, and Gabe Weiss about Google's Database Migration Service and how it helps companies move data to Google Cloud. What typically is a complicate...

16 Nov 202240min

ML/AI Data Science for Data Analytics with Jed Dougherty and Dan Darnell

ML/AI Data Science for Data Analytics with Jed Dougherty and Dan Darnell

On the show this week, Carter Morgan and Anu Srivastava talk about AI and ML data analytics with Dataiku VP of Platform Strategy, Jed Dougherty, and Head of Product Marketing, Dan Darnell. Dataiku is ...

9 Nov 202232min

Assured Workloads with Key Access Justifications with Bryce Buffaloe and Seth Denney

Assured Workloads with Key Access Justifications with Bryce Buffaloe and Seth Denney

Hosts Max Saltonstall and Daryl Ducharme are joined by Bryce Buffaloe and Seth Denney to chat about Assured Workloads and the sovereignty control Key Access Justifications so customers can see how the...

2 Nov 202242min

Digital Sovereignty with Archana Ramamoorthy and Julien Blanchez

Digital Sovereignty with Archana Ramamoorthy and Julien Blanchez

This week, Max Saltonstall and Chloe Condon welcome guests Archana Ramamoorthy and Julien Blanchez to talk about digital sovereignty and what goes into a technical strategy for dealing with this compl...

26 Okt 202236min

Top 5 Data & Analytics Launches from Next 2022 with Bruno Aziza and Maire Newton

Top 5 Data & Analytics Launches from Next 2022 with Bruno Aziza and Maire Newton

Debi Cabrera and Stephanie Wong have more great Next content this week as we focus on launches specifically related to data and analytics with guests Bruno Aziza and Maire Newton. We start the episode...

19 Okt 202230min

Next 2022 with Forrest Brazeal and Stephanie Wong

Next 2022 with Forrest Brazeal and Stephanie Wong

Forrest Brazeal joins Stephanie Wong today on the second day of Google Cloud Next '22. We're talking about all the exciting announcements, how the conference has changed in recent years, and what to e...

12 Okt 202243min

2022 State of DevOps Report with Nathen Harvey and Derek DeBellis

2022 State of DevOps Report with Nathen Harvey and Derek DeBellis

On the show this week, we're talking updated DevOps practices for 2022 with hosts Stephanie Wong and Chloe Condon and our guests Nathen Harvey and Derek DeBellis. Nathen and Derek start the show with ...

5 Okt 202244min

DEI and Belonging in the Cloud with Jason Smith

DEI and Belonging in the Cloud with Jason Smith

Jason Smith, founder of the Mixed Googlers group here at Google, joins Stephanie Wong to talk about DEI and the importance of belonging in tech. Jason helps us better understand what the concepts dive...

28 Sep 202233min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
aftenpodden-usa
forklart
stopp-verden
popradet
i-retten
lydartikler-fra-aftenposten
det-store-bildet
dine-penger-pengeradet
rss-gukild-johaug
nokon-ma-ga
hanna-de-heldige
rss-ness
aftenbla-bla
rss-dannet-uten-piano
grasoner-den-nye-kalde-krigen
frokostshowet-pa-p5
fotballpodden-2
unitedno