Loading…
May 10-12, 2023
Vancouver, British Columbia, Canada + Virtual
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit North America 2023 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Pacific Daylight Time (UTC/GMT -8). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date."

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.

OSPOCon [clear filter]
Thursday, May 11
 

4:05pm PDT

A Guide to Securing GitHub Based on Lessons Learned - Christine Abernathy, F5, Inc.
As an Open Source Program Office (or OSPO) you typically have projects hosted on a platform like GitHub or GitLab. The key question is, how do you manage the organizations, members and repositories in a way that is secure and encourages collaboration? F5's fledgling OSPO took on a project to standardize how their GitHub assets were organized. This was important given many recent acquisitions with open source organizations and repositories that were often configured differently. Sharing the lessons learned from that standardization work is the focus of Christine's talk. Christine will cover common security risks and mitigation strategies available through access and permission controls at the GitHub organization, team, and membership level. Additional topics will include code review best practices, dependency management, code scanning, and vulnerability reporting. Christine will share some open source tools that she found helpful in this work. Whilst this talk centers on GitHub, many concepts can be extended to other source code management platforms. Attendees will leave with a deeper understanding of the importance of secure code management and a set of actionable steps they can take to secure their own GitHub repositories.

Speakers
avatar for Christine Abernathy

Christine Abernathy

Sr. Director Open Source, F5, Inc.
Christine leads the Open Source Programs Office at F5. Christine joined F5 from Facebook (now Meta Platforms) where she was instrumental in growing their open source presence. Prior roles included Developer Advocate Parse, Facebook Platform and Partner Engineer, Mobile. Before Facebook... Read More →


Thursday May 11, 2023 4:05pm - 4:45pm PDT
217-219 (Level 2)
  OSPOCon, Security
 

Filter sessions
Apply filters to sessions.
  • Ask the Experts
  • CloudOpen
  • Co-Located Events
  • ContainerCon
  • Critical Software Summit
  • Diversity Empowerment Summit
  • Emerging OS Forum
  • Keynote Sessions
  • Lightning Talks & Treats
  • LinuxCon
  • Open AI & Data Forum
  • Open Metaverse Summit
  • Open Source Leadership Summit
  • Open Source On-Ramp
  • OpenGovCon
  • OpenJS World
  • OSPOCon
  • Project Mini Summits
  • Special Events / Exhibits / Breaks
  • SupplyChainSecurityCon
  • SustainabilityCon