Skip to main content

DORA Report 2022: The Magnitude of Software Supply Chain Security  

research DevOps DORA hybrid

research DevOps DORA hybridThe term ‘software supply chain security’ (SSC) can be interpreted in many ways. Following the White House executive order in May 2021 and the European Cyber Resilience Act (CRA) of 2022, both governments and corporations are taking a more active role in ensuring their software is secure. Fundamentals such as having a software bill of […]

The post DORA Report 2022: The Magnitude of Software Supply Chain Security   appeared first on DevOps.com.



from DevOps.com https://ift.tt/rKAwBHv

Comments

Popular posts from this blog

Why the Software Development Tools you Choose Directly Affect Your CI/CD Reliability 

Most conversations about CI/CD reliability start in the wrong place. Teams debug flaky pipelines, investigate intermittent failures, tune alerting thresholds and optimize build times. All of that work is legitimate. However, the decisions that most directly determine whether a CI/CD pipeline is reliable or not were made months or years earlier, during tool selection. By the time teams are debugging pipeline reliability, they are usually dealing with the downstream consequences of upstream decisions that seemed reasonable at the time.   The software development tools a team chooses shape their CI/CD pipeline in ways that are not always visible during evaluation. Understanding those connections is the most practical starting point for teams that want reliable pipelines rather than better pipeline firefighting.   The Integration Surface Problem   Every tool in a software development stack creates an integration surface. Integration surface is the set of connections a tool has with oth...

They Survived Covid. Now They Need New Lungs.

They Survived Covid. Now They Need New Lungs. By Daniela J. Lamas from NYT Opinion https://ift.tt/3aQtonL Transplants, Lungs, Coronavirus (2019-nCoV), Hospitals