You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
🌱 I’m currently all over enhancing/improving the OWASP CycloneDX specification as well as studying how to improve OWASP Dependency Track project for our CIO/CISO teams
👴 I’ve formerly chaired the Apache OpenWhisk project from incubator to graduation and contributed to the CD Foundation Tekton project
👯 I’m looking to collaborate on CI/CD and Serverless projects for DevSecOps
🤔 I’m hoping to create reusable CI/CD workflows/profiles for DevSecOps
💬 Ask me about Ohio State! ⭕ 🙌 ❗ ⭕
📫 How to reach me: Email or Slack
⚡ Fun fact: Worked on Skynet AI for the US Navy in the late 80s.. buy me a mead sometime ;)
Specification maintainer for CycloneDX including workign groups for v1.5: Attestations, Machine Learning (ML), Manufacturing (Formulation) as well as the Software Component Verification Standard (SCVS)
Covers core concepts and practices of building and running Cloud Native applications and how to run these applications in a multicloud environment including DevSecOps, CI/CD, Docker, Kubernetes, and OpenShift.
Badges
Important
Key information users need to know to achieve their goal.
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, an…