Software Supply Chain Security with Sigstore — LearnFlat
⏱ 2 h 36 min 📚 26 aulas 🎧 Versão em áudio

Software Supply Chain Security with Sigstore

Learn how to protect your software distribution pipeline by signing and verifying artifacts using Cosign, Rekor, and Fulcio.

  • 💬 Instrutor de IA
    Pergunte sobre qualquer aula e receba uma resposta clara na hora, quando quiser.
  • 🕐 Comece quando quiser
    Sem horários nem prazos: aprenda no seu ritmo, quando quiser.
  • 🌐 Em português
    Aulas, tarefas e certificado: tudo totalmente no seu idioma.

Sobre este curso

Software supply chain attacks are on the rise, making it critical to verify the integrity of every dependency and artifact you deploy. Understanding how to secure your code from commit to production is no longer optional—it is a core requirement for modern software delivery. This text-based course equips you with the fundamental skills to implement robust security practices using the open-source Sigstore ecosystem. You will learn how to sign, verify, and monitor software artifacts to ensure they remain untampered throughout the delivery pipeline. Through clear written explanations and configuration examples, you will master the principles of cryptographic verification. What you'll learn: - Understand the core concepts of software supply chain security and the SLSA framework. - Configure and use Cosign to sign and verify container images and digital artifacts. - Implement keyless signing using Fulcio and Rekor for seamless cryptographic verification. - Generate and integrate Software Bill of Materials (SBOMs) into your security workflow. - Verify the integrity of third-party dependencies before integration. - Establish transparency logs to monitor and audit digital signatures over time. You will start by exploring foundational security definitions and the mechanics of modern supply chain threats. From there, you will progress through structured written guides and real-world configuration examples to set up cryptographic signing and verification pipelines. This course is designed for software developers, DevOps beginners, and security enthusiasts who want to establish a solid foundation in supply chain security without needing prior cryptography experience. Start building a safer, more resilient software pipeline today.

O que você vai receber

  • 📜 Certificado de conclusão
    Adicione ao seu perfil do LinkedIn
  • 💬 Tutor AI pessoal
    Travou em uma aula? Pergunte ao seu tutor integrado qualquer coisa, a qualquer hora.
  • 🎧 Versão em áudio incluída
    Estude em qualquer lugar, sem tela
  • ♾️ Acesso vitalício
    Volte quando quiser, sem expirar
  • 📱 Celular ou computador
    Funciona em qualquer dispositivo
  • 💸 Reembolso em 14 dias
    Sem perguntas
  • Curto e focado
    2 h 36 min de conteúdo prático

Avaliações

Ainda não há avaliações — seja o primeiro a compartilhar sua experiência.

Escrever uma avaliação

Pediremos para fazer login após enviar — o rascunho fica salvo.

Outros também fizeram

Perguntas frequentes

O que preciso para fazer este curso? +

Só um celular ou computador com internet. Sem instalações nem hardware especial.

Como faço para pagar? +

Com cartão via Stripe. Não guardamos dados do cartão — o Stripe processa com segurança.

Posso pedir reembolso? +

Sim — reembolso integral em 14 dias, sem perguntas.

Por quanto tempo terei acesso? +

Para sempre. Uma vez comprado, o curso é seu para revisar quando quiser.

Vou receber um certificado? +

Sim. Ao concluir, você recebe um certificado que pode adicionar ao seu perfil do LinkedIn.

Feito para profissionais em
Tecnologia Design Finanças Marketing Saúde Educação Hotelaria Indústria