Friday, February 3, 2023
  • Events
  • Interviews
  • Jobs
  • Opinion
  • Whitepapers
  • Glossary
  • Community Forum
  • Web Hosting Directory
  • Login
  • Register
Cloud7 News
  • Cloud Computing
  • Web Hosting
  • Data Center
  • Linux
  • Cybersecurity
  • More
    • Network/Internet
    • Windows
    • Software
    • Hardware
    • Blockchain
    • Policy/Legislation
    • How-Tos
    • Troubleshooting
No Result
View All Result
Cloud7 News
  • Cloud Computing
  • Web Hosting
  • Data Center
  • Linux
  • Cybersecurity
  • More
    • Network/Internet
    • Windows
    • Software
    • Hardware
    • Blockchain
    • Policy/Legislation
    • How-Tos
    • Troubleshooting
No Result
View All Result
Cloud7 News
No Result
View All Result

Home > Opinion > Cloud7 Expert Series: Sarwar Raza from Red Hat

Cloud7 Expert Series: Sarwar Raza from Red Hat

Cloud7 Expert Series continues with the opinions of Sarwar Raza from Red Hat for securing software supply chains in 2023.


Sarwar Raza Sarwar Raza
December 26, 2022
3 min read
Cloud7 Expert Series - Sarwar Raza from Red Hat

Cloud7 is gathering opinions of the important names in the cloud, web hosting, cybersecurity, Linux, and other industries for 2022 in the Cloud7 Expert Series. Alongside their evaluations of 2022, they will share their expectations for the next year, 2023.

Sarwar Raza, Vice President and General Manager of Cloud Services at Red Hat, is currently responsible for the company’s cloud services portfolio and business unit. He holds a Bachelor’s degree in computer science and economics from Clark University and a Master’s in computer science from WPI. He previously worked for Totogi, Amazon Web Services, and Hewlett Packard Enterprise.


Securing your software supply chain in 2023

Over the next year, establishing secure software supply chains will emerge as a top priority for DevSecOps teams and security teams. According to the Red Hat 2023 Global Tech Outlook, IT leaders are focusing on security, with network security (40%) and cloud security (38%) as the clear leaders. Software supply chain security combines best practices from risk management and cybersecurity to help protect the software supply chain from potential vulnerabilities, such as hijacking updates, undermining code signing, and compromising open source code. 

Sarwar Raza, Vice President and General Manager of Cloud Services at Red Hat
Sarwar Raza, Vice President and General Manager of Cloud Services at Red Hat

Everything that touches an organization’s code in the software development lifecycle, from application development to deployment, is a part of the software supply chain. Designing a secure software supply chain with a DevSecOps mindset is crucial. DevSecOps is a culture, automation, and software design approach that integrates security as a shared responsibility throughout the entire IT lifecycle. Selecting the right tools to continuously integrate security– like agreeing on an integrated development environment (IDE) with security features– can help meet these goals.

When considering implementing a secure software supply chain, businesses should implement a security blueprint that includes the following: 

  • Know your suppliers: Businesses should be familiar with who they work with, starting with tier-one suppliers. Conduct risk assessments to evaluate each supplier’s cybersecurity posture and public policies on vulnerabilities and regularly scan for vulnerabilities. 
  • Embrace Software chain Levels for Software Artifacts (SLSA): This enables developers to digitally sign software artifacts to authenticate provenance and leverage automation for processes and policies.
  • Automated security testing tools: Routine scans with automated security testing tools such as Software Composition Analysis (SCA), Static Application Security Testing (SAST), and Dynamic Application Security Testing (DAST).
  • Industry-wide communication: When major vulnerabilities occur, the industry needs to be more proactive in reporting these flaws. Organizations should encourage developers to contribute to open-source projects and to speak up when security issues are discovered. 

Improper security implementation can impact the business by delaying important releases in order to address issues found later in the software life cycle or by losing security fixes that were only applied to running workloads. Software security is a shared responsibility and missed best practices by end users often lead to security failures. Building security into the software supply chain positively impacts other areas of the business, such as application development. When you bake security into the core of your software infrastructure, your teams are empowered to focus on business-critical initiatives and innovation. 

Tags: Cloud7 Expert SeriesRed Hat
Sarwar Raza

Sarwar Raza

Sarwar Raza is Vice President and General Manager of Cloud Services at Red Hat. In this role, he is responsible for the company’s cloud services portfolio and business unit, including product strategy, planning, product management and product marketing. Sarwar leads Red Hat’s vision for all cloud services as part of Red Hat’s Open Hybrid Cloud mission.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

Next Post
Facebook to pay $725 million to settle legal dispute

Facebook to pay $725 million to settle legal dispute

Related News

Emre Baran, Co-founder & CEO at Cerbos.

Cloud7 Expert Series: Emre Baran from Cerbos

January 28, 2023 3:00 pm
The great exodus of women leaders

The great exodus of women leaders has begun

January 22, 2023 7:40 pm
Cloud7 Expert Series - Kevin Coupal from KeepSec

Cloud7 Expert Series: Kevin Coupal from KeepSec

January 21, 2023 4:00 pm
Cloud7 Expert Series Andre Reitenbach from Gcore

Cloud7 Expert Series: Andre Reitenbach from Gcore

January 14, 2023 7:00 pm
Get free daily newsletters from Cloud7 News Get the Cloud7 Newsletter
Select list(s):

Check your inbox or spam folder to confirm your subscription.

By subscribing, you agree to our
Copyright Policy and Privacy Policy

Get the free newsletter

Subscribe to receive the latest IT business updates straight to your inbox.

Select list(s):

Check your inbox or spam folder to confirm your subscription.

Editor's Choice

What’s new in Linux kernel 6.2 rc6?

10 Best Web Hosting Services of 2023

Ubuntu 22.04 LTS is available for download. What is new?

CERN and Fermilab recommend AlmaLinux

7 best hosting control panels of 2023

How to update Linux Kernel without rebooting?

7 best Linux mail servers of 2023

7 best cPanel alternatives for 2023

7 best Linux web browsers for 2023

7 best CentOS alternatives

7 best Linux server distros of 2023

Interview with Igor Seletskiy on AlmaLinux

How to create a VM on VMware Workstation

Recent News

  • LockBit encryptor source code is updated
  • LibreOffice 7.5 Community is released. What’s new?
  • NTT to add Palo Alto Networks’ solution to its portfolio
  • Gcore announces partnership with Super Protocol
  • Fortinet is expanding its SOC offerings portfolio

Cloud7 News
Cloud7 is a news source that publishes the latest news, reviews, comparisons, opinions, and exclusive interviews to help tech users of high-experience levels in the IT industry.

EXPLORE

  • Web Hosting
  • Cloud Computing
  • Data Center
  • Cybersecurity
  • Linux
  • Network/Internet
  • Software
  • Hardware
  • How-Tos
  • Troubleshooting

RESOURCES

  • Events
  • Interviews
  • Jobs
  • Opinion
  • Whitepapers
  • Glossary
  • Community Forum
  • Web Hosting Directory

Get the Cloud7 Newsletter

Get FREE daily newsletters from Cloud7 delivering the latest news and reviews.

  • About
  • Privacy & Policy
  • Copyright Policy
  • Contact

© 2023, Cloud7 News. All rights reserved.

No Result
View All Result
  • Cloud Computing
  • Web Hosting
  • Data Center
  • Linux
  • Cybersecurity
  • More
    • Network/Internet
    • Windows
    • Software
    • Hardware
    • Blockchain
    • Policy/Legislation
    • How-Tos
    • Troubleshooting
  • Events
  • Interviews
  • Jobs
  • Opinion
  • Whitepapers
  • Glossary
  • Community Forum
  • Web Hosting Directory

© 2023, Cloud7 News. All rights reserved.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Sign Up with Facebook
Sign Up with Google
Sign Up with Linked In
OR

Fill the forms below to register

*By registering into our website, you agree to the Terms & Conditions and Privacy Policy.
All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.