Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Securing the "other" supply chain
Search
Nicolas Byl
May 15, 2019
Technology
0
260
Securing the "other" supply chain
Nicolas Byl
May 15, 2019
Tweet
Share
More Decks by Nicolas Byl
See All by Nicolas Byl
Die Flucht aus der Prototypen-Hölle
nbyl
0
42
Lean Prototyping for Industrial-IoT Projects
nbyl
0
38
DevSecOps - Vom Unikum zur gut geölten Maschine
nbyl
0
94
Securing your software supply chain
nbyl
0
360
Keeping-Up-WithUpstream.pdf
nbyl
0
160
Dr. Kube und der Helm - Anatomie einer CD-Pipeline
nbyl
0
120
Kubernetes - Auf die Cluster, Fertig, Los!
nbyl
0
180
Helm - Kubernetes Deployments richtig gemacht
nbyl
0
120
It's the developers, stupid!
nbyl
0
190
Other Decks in Technology
See All in Technology
【5分でわかる】セーフィー エンジニア向け会社紹介
safie_recruit
0
30k
ECS モニタリング手法大整理
yendoooo
1
120
人と組織に偏重したEMへのアンチテーゼ──なぜ、EMに設計力が必要なのか/An antithesis to the overemphasis of people and organizations in EM
dskst
5
580
Yahoo!ニュースにおけるソフトウェア開発
lycorptech_jp
PRO
0
320
事業価値と Engineering
recruitengineers
PRO
1
160
Goでマークダウンの独自記法を実装する
lag129
0
210
MySQL HeatWave:サービス概要のご紹介
oracle4engineer
PRO
4
1.7k
第4回 関東Kaggler会 [Training LLMs with Limited VRAM]
tascj
12
1.7k
Observability for LLM Application lifecycle
ivry_presentationmaterials
1
240
Goss: New Production-Ready Go Binding for Faiss #coefl_go_jp
bengo4com
0
1.1k
GitHub Copilot coding agent を推したい / AIDD Nagoya #1
tnir
2
4.4k
会社にデータエンジニアがいることでできるようになること
10xinc
9
1.5k
Featured
See All Featured
Done Done
chrislema
185
16k
Scaling GitHub
holman
462
140k
GraphQLの誤解/rethinking-graphql
sonatard
71
11k
Designing for Performance
lara
610
69k
The Power of CSS Pseudo Elements
geoffreycrofte
77
5.9k
What’s in a name? Adding method to the madness
productmarketing
PRO
23
3.6k
Learning to Love Humans: Emotional Interface Design
aarron
273
40k
Raft: Consensus for Rubyists
vanstee
140
7.1k
Being A Developer After 40
akosma
90
590k
Practical Tips for Bootstrapping Information Extraction Pipelines
honnibal
PRO
23
1.4k
The Cost Of JavaScript in 2023
addyosmani
53
8.8k
GitHub's CSS Performance
jonrohan
1031
460k
Transcript
1 Nicolas Byl, DevOpsDays Zürich
2 Storytime 2 https://pxhere.com/de/photo/237
3 Checklists 3 https://pxhere.com/de/photo/1455425
4 Compliance 4
5 5
6 The castle illusion 6 https://pxhere.com/de/photo/852079
7 7
8 8 source code binary
9 Binary Authorization 9 https://pxhere.com/de/photo/662108
10 1 0 signature verify
11 build signature 1 dependency check static code analysis QA
tests successful release manager sign-off 2 3 4 5 11 1 1 https://pxhere.com/de/photo/661983
12 Demo 1 2 https://pxhere.com/de/photo/237
13 Emergencies 1 3 https://pxhere.com/de/photo/499662
14 Logging is not enough 1 Break-glass deployments should trigger
an action Abuse must be sanctioned A tool for emergency situations 2 3 4 14 1 4 https://pxhere.com/de/photo/33077
15 Demo 1 5 https://pxhere.com/de/photo/1140826
16 How to introduce these concepts? Blockchain? 1 6 https://pxhere.com/de/photo/237
17
[email protected]
17 http://www.twitter.com/NicolasByl