A Deep Dive Into Software Supply Chain Security – Neatsun Ziv – ASW #231
In this episode, Neatsun Ziv, co-founder and CEO of OX Security, takes a deep dive into software supply chain security. He focuses on the new Open Software Supply Chain Attack Reference (OSC&R), a first-of-its-kind framework for understanding techniques, tactics, and procedures (TTPs) used by attackers to compromise supply chains. OSC&R was forged by a group led by OX Security with cybersecurity pros from a number of companies, including Google, GitLab, FICO, Check Point, VISA and Fortinet.
Segment Resources: - https://pbom.dev/ - https://github.com/pbom-dev/OSCAR
Announcements
We’d like to invite our listeners to be part of our 2023 SC Awards!
Our prestigious and competitive SC Awards program recognizes outstanding innovations, organizations, and leaders that are advancing the practice of information security. This year, there are awards in 36 categories up for grabs, including best IT security-related training program, innovator of the year, best SASE solution, and more. We’d love to see your company in the spotlight!
Visit securityweekly.com/scawards to submit your entries by March 20!
Guest
Neatsun is the co-founder and CEO of OX Security, the first end-to-end software supply chain security solution. Prior to founding OX, Neatsun was the VP Cyber Security at Check Point where he oversaw all cyber initiatives. His team was one of the first to respond to SolarWinds, NotPetya and other major attacks, working closely with Interpol, Local CERT and other enforcement agencies.