Securing the Software Supply Chain

July 25, 2018 1 minute read

This is a talk Jianing Guo and I gave at Google Cloud Next 2018 about securing software supply chains with Binary Authorization. I showed off the tool my team developed called Voucher which we later donated to the Grafeas organization.

I also wrote about this over on

Containers have revolutionized how we develop, package, and deploy applications. As enterprises create more containerized workloads, the security of the software supply chain must be top of mind. Join this session to learn how security teams can enhance deploy-security security. We’ll also hear from the security team at Shopify to learn how they use GCP tools as part of their container security strategy and best practices.