Artwork

Innhold levert av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam. Alt podcastinnhold, inkludert episoder, grafikk og podcastbeskrivelser, lastes opp og leveres direkte av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam eller deres podcastplattformpartner. Hvis du tror at noen bruker det opphavsrettsbeskyttede verket ditt uten din tillatelse, kan du følge prosessen skissert her https://no.player.fm/legal.
Player FM - Podcast-app
Gå frakoblet med Player FM -appen!

Google’s Andrew Pollock and Addressing Open Source Vulnerabilities

12:16
 
Del
 

Manage episode 433932135 series 3564832
Innhold levert av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam. Alt podcastinnhold, inkludert episoder, grafikk og podcastbeskrivelser, lastes opp og leveres direkte av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam eller deres podcastplattformpartner. Hvis du tror at noen bruker det opphavsrettsbeskyttede verket ditt uten din tillatelse, kan du følge prosessen skissert her https://no.player.fm/legal.

Episode description: Andrew Pollock is a Senior Software Engineer at Google, currently working on https://osv.dev. With a background as an Enterprise Security Engineer, he has extensive experience in large-scale Linux Systems Administration and GCP Security. Andrew is passionate about the human factors in security, focusing on scalable solutions, great user experiences and self-service opportunities. He has primarily worked in Linux/Unix environments as a Site Reliability Engineer or Security Engineer, with a strong interest in process improvement and automation.

  • 00:52 - Andrew shares his background as a “mid-90s data nerd”
  • 02:31 - Managing vulnerabilities in the open source ecosystem
  • 03:57 - How to navigate inconsistent metadata
  • 06:26 - The challenge of source attribution
  • 07:54 - The rapid-fire round
  • 09:15 - Andrew’s advice to open source developers
  • 10:22 - Andrew’s call to action to developers

Episode links:

  continue reading

15 episoder

Artwork
iconDel
 
Manage episode 433932135 series 3564832
Innhold levert av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam. Alt podcastinnhold, inkludert episoder, grafikk og podcastbeskrivelser, lastes opp og leveres direkte av Omkhar Arasaratnam, OpenSSF and Omkhar Arasaratnam eller deres podcastplattformpartner. Hvis du tror at noen bruker det opphavsrettsbeskyttede verket ditt uten din tillatelse, kan du følge prosessen skissert her https://no.player.fm/legal.

Episode description: Andrew Pollock is a Senior Software Engineer at Google, currently working on https://osv.dev. With a background as an Enterprise Security Engineer, he has extensive experience in large-scale Linux Systems Administration and GCP Security. Andrew is passionate about the human factors in security, focusing on scalable solutions, great user experiences and self-service opportunities. He has primarily worked in Linux/Unix environments as a Site Reliability Engineer or Security Engineer, with a strong interest in process improvement and automation.

  • 00:52 - Andrew shares his background as a “mid-90s data nerd”
  • 02:31 - Managing vulnerabilities in the open source ecosystem
  • 03:57 - How to navigate inconsistent metadata
  • 06:26 - The challenge of source attribution
  • 07:54 - The rapid-fire round
  • 09:15 - Andrew’s advice to open source developers
  • 10:22 - Andrew’s call to action to developers

Episode links:

  continue reading

15 episoder

所有剧集

×
 
Loading …

Velkommen til Player FM!

Player FM scanner netter for høykvalitets podcaster som du kan nyte nå. Det er den beste podcastappen og fungerer på Android, iPhone og internett. Registrer deg for å synkronisere abonnement på flere enheter.

 

Hurtigreferanseguide

Copyright 2024 | Sitemap | Personvern | Vilkår for bruk | | opphavsrett