Software Supply Chain Security with Sigstore — LearnFlat
⏱ 2 godz 36 min 📚 26 lekcji 🎧 Wersja audio

Software Supply Chain Security with Sigstore

Learn how to protect your software distribution pipeline by signing and verifying artifacts using Cosign, Rekor, and Fulcio.

  • 💬 Instruktor AI
    Zadawaj pytania o każdą lekcję i otrzymuj jasną odpowiedź od razu, o każdej porze.
  • 🕐 Zacznij kiedy chcesz
    Bez harmonogramów i terminów — ucz się we własnym tempie, kiedy chcesz.
  • 🌐 Po polsku
    Lekcje, zadania i certyfikat — wszystko w pełni w Twoim języku.

O tym kursie

Software supply chain attacks are on the rise, making it critical to verify the integrity of every dependency and artifact you deploy. Understanding how to secure your code from commit to production is no longer optional—it is a core requirement for modern software delivery. This text-based course equips you with the fundamental skills to implement robust security practices using the open-source Sigstore ecosystem. You will learn how to sign, verify, and monitor software artifacts to ensure they remain untampered throughout the delivery pipeline. Through clear written explanations and configuration examples, you will master the principles of cryptographic verification. What you'll learn: - Understand the core concepts of software supply chain security and the SLSA framework. - Configure and use Cosign to sign and verify container images and digital artifacts. - Implement keyless signing using Fulcio and Rekor for seamless cryptographic verification. - Generate and integrate Software Bill of Materials (SBOMs) into your security workflow. - Verify the integrity of third-party dependencies before integration. - Establish transparency logs to monitor and audit digital signatures over time. You will start by exploring foundational security definitions and the mechanics of modern supply chain threats. From there, you will progress through structured written guides and real-world configuration examples to set up cryptographic signing and verification pipelines. This course is designed for software developers, DevOps beginners, and security enthusiasts who want to establish a solid foundation in supply chain security without needing prior cryptography experience. Start building a safer, more resilient software pipeline today.

Co otrzymasz

  • 📜 Certyfikat ukończenia
    Dodaj do profilu LinkedIn
  • 💬 Osobisty tutor AI
    Utknąłeś na lekcji? Zapytaj wbudowanego tutora o cokolwiek, w dowolnej chwili.
  • 🎧 Wersja audio w zestawie
    Ucz się w drodze — bez ekranu
  • ♾️ Dożywotni dostęp
    Wracaj, kiedy chcesz — bez wygaśnięcia
  • 📱 Telefon lub komputer
    Działa wszędzie, na każdym urządzeniu
  • 💸 Zwrot w 14 dni
    Bez pytań
  • Krótko i konkretnie
    2 godz 36 min praktycznej treści

Recenzje

Brak recenzji — bądź pierwszą osobą, która podzieli się doświadczeniem.

Napisz recenzję

Po wysłaniu poprosimy o zalogowanie — szkic zostanie zapisany.

Inni uczyli się też

Najczęstsze pytania

Czego potrzebuję, by wziąć udział w tym kursie? +

Wystarczy telefon lub komputer z internetem. Bez instalacji i specjalnego sprzętu.

Jak zapłacić? +

Kartą przez Stripe. Nie przechowujemy danych karty — robi to bezpiecznie Stripe.

Czy mogę otrzymać zwrot? +

Tak — pełen zwrot w 14 dni, bez pytań.

Jak długo będę mieć dostęp? +

Na zawsze. Po zakupie kurs jest twój — wracaj, kiedy chcesz.

Czy dostanę certyfikat? +

Tak. Po ukończeniu otrzymasz certyfikat, który możesz dodać do profilu LinkedIn.

Stworzony dla uczących się w
IT Design Finanse Marketing Ochrona zdrowia Edukacja Hotelarstwo Produkcja