December 6-8, 2017 - Austin, Texas
Click Here for More Information + Registration 

Customize your schedule by session topic and skill level:
Session Topic - Refer to the "Type" filter list to the right to find a session based on topic. Talk Difficulty - Sessions are categorized as [B]eginner, [I]ntermediate or [A]dvanced at the end of each talk title. No letter indicates an “Any” level. 
View analytic
Wednesday, December 6 • 7:30pm - 9:00pm
BoF: Grafeas: Using Artifact Metadata to Audit, Govern, and Secure Your Software Supply Chain - hosted by Stephen Elliott & Wendy Dembowski, Google & Graeme Hay, Morgan Stanley

Sign up or log in to save this to your schedule and see who's attending!

Feedback form is now closed.
Building software at scale requires strong governance of the software supply chain, and strong governance requires good data. This BoF will be a discussion around the recently launched Grafeas ("scribe") open source project (see grafeas.io), whose goal is to provide organizations with a central source of truth for tracking artifacts and enforcing policies across an ever growing set of software development teams and pipelines. Part of the Grafeas project is Kritis ("judge"), a Kubernetes policy engine that lets organizations do real-time enforcement of container properties at deploy time for Kubernetes clusters. To kick off the discussion, Google and other Grafeas collaborators will give an overview of the Grafeas project.

avatar for Wendy Dembowski

Wendy Dembowski

Software Engineer, Google
avatar for Stephen Elliott

Stephen Elliott

Product Manager, Google
avatar for Graeme Hay

Graeme Hay

Managing Director, Global Head of Enterprise and Cloud Engineering, Morgan Stanley

Wednesday December 6, 2017 7:30pm - 9:00pm
Meeting Room 10C, Level 3

Attendees (156)