Paul McCarty -- The Burrito Analogy of the Software Supply Chain

The Application Security Podcast - A podcast by Chris Romeo and Robert Hurlbut - Tuesdays

Categories:

"Visualizing the Software Supply Chain" is a project which aims to kick off a discussion about the scope and breadth of the software supply chain.Paul McCarty emphasizes the importance of understanding what's in the software supply chain to secure it effectively. He uses the burrito analogy, stating that you can't decide if you want to eat it if you don't know what's in it. We discuss the nuances around the Software Bill of Materials (SBOM) and the importance of understanding the differences ...