Driving Software Recalls: Manufacturing Supply Chain Best Practices for Open Source Consumption

The biggest problem facing software organizations today is an inability to track, monitor, and improve the usage of open source software. This isn’t about security alone. From DevOps to DevSecOps, there are fundamental principles that the best development teams use to guide open source software consumption. Many of these best practices come from traditional manufacturing, which is the focus of the paper, “Driving Software Recalls: Manufacturing Supply Chain Best Practices for Open Source Consumption” from the research of Sonatype's Office of the CTO, Open Source Strategy, Policy, and Regulation in partnership with Atlantic Council’s Open Source Policy Network and Digital Forensic Research Lab (DFRLab).

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms and Conditions apply.

IMPORTANT NOTICE
Any information you supply is subject to our privacy policy. Access to this content is available to registered members at no cost. In order to provide you with this free service, Government Executive Media Group may share member registration information and other information you have provided to us with content sponsors.