Loading…
June 21-24, 2022
Austin, Texas, USA + Virtual
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Open Source Summit North America 2022 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Central Daylight Time (UTC -5). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date."

IMPORTANT NOTE: Timing of sessions and room locations are subject to change.

OSPOCon [clear filter]
Wednesday, June 22
 

2:35pm CDT

Using OpenSSF's Allstar to Secure Your Organizations GitHub Repositories - Jeff Mendoza, Google
OpenSSF's Allstar is a tool for administrators of GitHub organizations to help improve the security posture of their repositories. While GitHub provides some security settings at the organization level, such as 2-factor authentication requirement, other settings are only at the repository level, such as branch protection settings. Fortunately Allstar is able to scale setting enforcement across many repositories in a large organization. This talk will cover the security best practices that are baked-in to Allstar, and the configuration of those practices to allow defining a custom security policy that can fit the needs of various organizations. Policy enforcement actions will be covered, including notification, and direct setting remediation. Finally, it will cover what is next for Allstar, and ideas for future security policies.

Speakers
avatar for Jeff Mendoza

Jeff Mendoza

Software Engineer, Google
Jeff is a software engineer on Google's Open Source Security Team. He is focused on supply chain security and securing Google's GitHub repositories. Jeff is a long time FOSS enthusiast, and enjoys cycling and classic video games in his spare time.



Wednesday June 22, 2022 2:35pm - 3:15pm CDT
Room 301/302 (Level 3)
  OSPOCon, Hosting Projects and Communities

3:45pm CDT

Building an Open Source Community from the Ground Up: Red Hat’s Game Industry Community of Practice - Ruth Suehle, Red Hat
Building a community is fundamentally about recognizing a group of people with underserved needs and the common thread of interest and passion that engages them. Red Hat is home to more than 50 Communities of Practice (CoPs): internal communities where associates from many differing roles and departments collaborate on technical, task-related, or vertical-centric topics. One is the Gaming CoP, focused on the video game industry (which is not historically a deep user of or contributor to open source), but more broadly, the interactive entertainment and simulation industries from animation and film to robotics and AI. We’ve built an open source arcade, hosted livestreams and podcasts, created demos, and engaged hundreds of colleagues with open source through a shared love for gaming. Join Gaming CoP leader Ruth Suehle to learn about building influence in an industry that has low open source familiarity or trust, the current state of open source in game development, and how to build an open community of practice in your company. If you heard this talk at OSS 2021, return to hear about a new year of growth, adjusting to change, and the lessons learned.

Speakers
avatar for Ruth Suehle

Ruth Suehle

Director, Community Outreach, Open Source Program Office, Red Hat
Ruth Suehle is Director of Community Outreach in Red Hat’s Open Source Program Office. She is also executive vice-president of the Apache Software Foundation, co-chair of the Free and Open Source Software SIG in the International Game Developers Association (IGDA), and governing... Read More →



Wednesday June 22, 2022 3:45pm - 4:25pm CDT
Room 301/302 (Level 3)
  OSPOCon, Hosting Projects and Communities
 

Filter sessions
Apply filters to sessions.
  • CloudOpen
  • Community Leadership Conference
  • ContainerCon
  • Critical Software Summit
  • Diversity Empowerment Summit
  • Embedded IoT
  • Embedded Linux Conference (ELC)
  • Emerging OS Forum
  • Global Security Vulnerability Summit (GSVS)
  • Keynote Sessions
  • LinuxCon
  • Open AI & Data Forum
  • Open Source On-Ramp
  • OSPOCon
  • Project Mini-Summits / Co-located Events
  • Special Events / Exhibits / Breaks
  • SupplyChainSecurityCon
  • Wildcard