Securing the Supply Chain… for Software With Brian Fox, Co-Founder, SVP and CTO

Media Thumbnail
00:00
00:00
1x
  • 0.5
  • 1
  • 1.25
  • 1.5
  • 1.75
  • 2
This is a podcast episode titled, Securing the Supply Chain… for Software With Brian Fox, Co-Founder, SVP and CTO. The summary for this episode is: <p>If companies don't truly know the elements in their products, then they are set up for trouble. According to <a href="https://www.linkedin.com/in/brianefox/">Brian Fox</a>, Co-Founder, SVP and CTO of <a href="https://www.sonatype.com/">Sonatype</a>, without this knowledge they won’t know how to address issues or if bad actors have infiltrated their products with disruptive parts. Brian advises that all aspects in the supply chain for software must be identified and secured just like any physical product. </p><p><br />Tune in to learn:</p><ul><li>How does Sonatype help companies make better supply chain decisions for their software? (01:56)</li><li>How did Sonatype evolve to focus on supply chain security for software? (05:57)</li><li>How did Sonatype help address the Log4j vulnerability?? (15:32)</li><li>How does Fox describe bad actors using what he calls “malicious components”? (23:25)</li><li>Can automation inadvertently amplify attacks? (29:05)</li><li>How to move fast yet deal with bad actors? (33:38)</li></ul><p><i>IT Visionaries is brought to you by The Salesforce Platform. If you love the thought leadership on this podcast, Salesforce has even more meaty IT thoughts to chew on. Take your company to the next level with in-depth research and trends right in your inbox. Subscribe to a newsletter tailored to your role at </i><a href="https://sforce.co/3hz7QPc "><i>Salesforce.com/newsletter</i></a><i>.</i></p><p>Mission.org is a media studio producing content for world-class clients. Learn more at <a href="https://mission.org/">mission.org</a>.</p> <p><p>--&nbsp;</p><p>Brightspot is the leading content management platform built for modern teams. Your content lifecycle - from ideation to archival - moves faster, handling any volume, variety, or velocity with ease.&nbsp;<br><br>Unlike legacy platforms that demand heavy dev work and struggle with scale, Brightspot is user-friendly, endlessly customizable, and enterprise-ready. Think dynamic, modern experiences, shipped in minutes—not months.&nbsp;<br><br>Trusted by some of the world’s leading tech organizations, Brightspot reduces total cost of ownership, boosts productivity, and gives you the governance, security, and performance your teams need.&nbsp;<br><br>Visit brightspot.com/ITVisionaries to learn more.<br><br>---</p><p>This episode was produced by the team at Mission.org and brought to you by Brightspot.</p></p>

DESCRIPTION

If companies don't truly know the elements in their products, then they are set up for trouble. According to Brian Fox, Co-Founder, SVP and CTO of Sonatype, without this knowledge they won’t know how to address issues or if bad actors have infiltrated their products with disruptive parts. Brian advises that all aspects in the supply chain for software must be identified and secured just like any physical product. 


Tune in to learn:

  • How does Sonatype help companies make better supply chain decisions for their software? (01:56)
  • How did Sonatype evolve to focus on supply chain security for software? (05:57)
  • How did Sonatype help address the Log4j vulnerability?? (15:32)
  • How does Fox describe bad actors using what he calls “malicious components”? (23:25)
  • Can automation inadvertently amplify attacks? (29:05)
  • How to move fast yet deal with bad actors? (33:38)

IT Visionaries is brought to you by The Salesforce Platform. If you love the thought leadership on this podcast, Salesforce has even more meaty IT thoughts to chew on. Take your company to the next level with in-depth research and trends right in your inbox. Subscribe to a newsletter tailored to your role at Salesforce.com/newsletter.

Mission.org is a media studio producing content for world-class clients. Learn more at mission.org.

-- 

Brightspot is the leading content management platform built for modern teams. Your content lifecycle - from ideation to archival - moves faster, handling any volume, variety, or velocity with ease. 

Unlike legacy platforms that demand heavy dev work and struggle with scale, Brightspot is user-friendly, endlessly customizable, and enterprise-ready. Think dynamic, modern experiences, shipped in minutes—not months. 

Trusted by some of the world’s leading tech organizations, Brightspot reduces total cost of ownership, boosts productivity, and gives you the governance, security, and performance your teams need. 

Visit brightspot.com/ITVisionaries to learn more.

---

This episode was produced by the team at Mission.org and brought to you by Brightspot.