Open Source

Session Software Supply Chain Security

Achieving SLSA Certification with a “Bring-Your-Own-Builder” Framework

Tuesday Jun 13 / 04:10PM EDT

Supply-chain Levels for Software Artifacts, or SLSA (pronounced “salsa”), is a security framework to reason about and improve the integrity of released artifacts. With the recent release of SLSA version 1.0, SLSA is seeing increased adoption, both from industry and open source projects.

Speaker image - Asra Ali

Asra Ali

Software Engineer @Google

Session AI/ML

Going Beyond the Case of Black Box AutoML

Thursday Jun 15 / 01:40PM EDT

Most AutoML tools are black-box tools. They offer no code/low code tools (UI/simple APIs) for practitioners to get started quickly. While this helps beginners, most experienced data scientists/ML practitioners often need more control.

Speaker image - Kiran Kate

Kiran Kate

Senior Technical Staff Member @IBM Research

Session Security

Implementing OSSF Scorecards Across an Organization

Wednesday Jun 14 / 04:10PM EDT

Open Source Security Foundation (OSSF) Scorecards provide a way for open source users to determine whether maintainers are being diligent about securing their link in the software security supply chain.

Speaker image - Chris Swan

Chris Swan

Engineer @atsigncompany