Loading…
SOSS Fusion 2024 has ended
October 22-23, 2024 | Atlanta, Georgia USA
View More Details & Registration

The Sched app allows you to build your schedule but is separate from your event registration. You must be registered for SOSS Fusion 2024 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Eastern Daylight Saving Time. To see the schedule in your preferred timezone, please select from the drop-down located at the bottom of the menu to the right.
strong>Public Policy [clear filter]
Tuesday, October 22
 

2:15pm EDT

Crash Course on AI Risk Management Framework - Andrew Staton, Dell Technologies
Tuesday October 22, 2024 2:15pm - 2:45pm EDT
Over the past year, AI has been talk of the town in terms of emerging technology. There is a lot of discussion around how AI technology and capabilities will be utilized both for the betterment and the detriment of our world and those around us. One of the first attempts to manage these risks from a regulatory perspective is the AI Risk Management Framework from NIST. This session will be a crash course on that standard and some preliminary analysis/dialogue around how effective the standard will be.
Speakers
avatar for Andrew Staton

Andrew Staton

Cyber Security Advisor, Dell Technologies
Andrew Staton works as a Cybersecurity Advisor at Dell Technologies. His background entails working with and for companies of all shapes and sizes to implement and stand up a Secure CyberSecurity program and enhance their existing practices. He is active within the North Alabama Chapter... Read More →
Tuesday October 22, 2024 2:15pm - 2:45pm EDT
Salon 2-3
  Public Policy
  • Session Slides Attached yes

4:25pm EDT

5 Things OSS Can Do To Make Life Easier For The Public Sector - Eddie Zaneski, Defense Unicorns
Tuesday October 22, 2024 4:25pm - 4:40pm EDT
OSS developers play a crucial role in shaping solutions that impact the public sector. This lightning talk will highlight practical steps maintainers can take to improve adoption and usage for governmental and public service organizations. Join us as we explore how relatively small changes can lead to significant improvements.
Speakers
avatar for Eddie Zaneski

Eddie Zaneski

Tech Lead - Open Source, Defense Unicorns
Eddie lives in Denver, CO with his wife and dog. He loves open source and works on the Kubernetes project. When not hacking on random things you'll most likely find him climbing rocks somewhere.
Tuesday October 22, 2024 4:25pm - 4:40pm EDT
Salon 4-6
  Public Policy
  • Session Slides Attached yes
 
Wednesday, October 23
 

11:30am EDT

Navigating the Open Source Policy Labyrinth: Unraveling Global Policy Efforts for a Secure Future - Dan Lorenc, Chainguard
Wednesday October 23, 2024 11:30am - 12:00pm EDT
OSS underpins the digital infrastructure of our society, ensuring its security has never been more critical. This talk will delve into the intricate web of public policy initiatives aimed at enhancing the security of OSS. From the President’s EO on Cybersecurity in the US to the ambitious EU Cyber Resiliency Act, we will explore how these pivotal regulations are shaping the landscape of software security. We will also shed light on forward-thinking policy initiatives such as Secure by Design, SLSA, and Software Self Attestation, examining how they complement and reinforce existing legislation. By weaving together these diverse strands of policy, this session will provide a comprehensive overview of the current policy ecosystem, highlighting both the connectedness of these initiatives and uncovering potential gaps and areas where there is significant disconnect. As the world grapples with the complexities of building and securing OSS, understanding the global policy landscape becomes essential for developers, policymakers, and industry leaders alike. Join me to gain a clear perspective on how policy efforts are converging to create a more secure and resilient open source future.
Speakers
avatar for Dan Lorenc

Dan Lorenc

CEO and Co-Founder, Chainguard
Dan Lorenc is co-founder and CEO of Chainguard, a leading software supply chain security company. He started projects like Minikube, Skaffold, and Kaniko to make containers easy and fun, then got so worried about the state of OSS supply-chains he helped found the Tekton and Sigstore... Read More →
Wednesday October 23, 2024 11:30am - 12:00pm EDT
Salon 4-6

12:05pm EDT

The Open Source Paradox: Unpacking Risk, Equity, and Acceptance - Vincent Danen, Red Hat
Wednesday October 23, 2024 12:05pm - 12:35pm EDT
Open source software isn’t just allowed in most enterprises—it’s often the go-to choice. Yet while procurement policies have evolved to embrace open source, risk acceptance frameworks haven’t kept pace. We tend to treat security concerns like monsters under the bed, wanting them to vanish, but there's a key difference between how we view open source vs. proprietary software. In fact, open source’s very strengths are often weaponized against it, creating a double standard. Join me as we explore the paradox of risk tolerance, security equity, and the overlooked biases shaping the conversation around open source and proprietary software. Let’s level the playing field and rethink how we define and manage risk.
Speakers
avatar for Vincent Danen

Vincent Danen

Vice President, Product Security, Red Hat
Vincent Danen lives in Canada and is the Vice President of Product Security at Red Hat. He joined Red Hat in 2009 and has been working in the security field, specifically around Linux, operating security and vulnerability management, for over 20 years.
Wednesday October 23, 2024 12:05pm - 12:35pm EDT
Salon 4-6
  Public Policy
  • Session Slides Attached yes
 
  • Filter By Date
  • Filter By Venue
  • Filter By Type
  • Session Slides Attached
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.