Software Supply Chain Security in the SDLC: Design Phase

In the wake of high-profile security breaches like Log4Shell, CodeCov, and OrionGate, software supply chain security has surged to the forefront of industry concerns. These incidents have driven remarkable advancements in technology aimed at fortifying our supply chains. Yet, despite these leaps forward, some critical areas remain under-addressed, often because they require a more holistic and integrated approach rather than standalone solutions. Discussions about software supply chain security often center on topics like SBOMs, dependency management, and open-source risks....

August 30, 2024 · 8 min · 1523 words

Professional Profile

Professional Profile Christopher Clarkson Engineer & Consultant | Cloud Security & DevSecOps Location: West Yorkshire, UK Email: chris@chrisclarkson.org LinkedIn: cjclarkson Professional Summary Detail-driven and highly qualified Security Architect and Engineer, CISSP, and CCSP with a comprehensive background in Cloud and Application Security, Secure Software Supply Chain, Security Architecture & Solutions Design, PKI & Encryption, and DevSecOps. Known for promoting continuous integration and delivery through configuration management, security automation, and scripting. A skilled leader, communicator, and mentor with an educational background in computer science and a proven track record in development and consultancy....