From the course: Introduction to Product Security

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

The ultimate challenge in product security

The ultimate challenge in product security

From the course: Introduction to Product Security

The ultimate challenge in product security

- [Narrator] Can anyone guess what the ultimate challenge in product security is? Okay, sure. You have to secure a product. We've discussed that already, but the real answer is supply chain risk. What is supply chain risk? I'm so glad you asked. Supply chain risks are the potential threats and vulnerabilities that might affect the security and integrity of a product from the start of development all the way through deployment. The key aspects that need to be protected are the components, services, and processes used to create and maintain the product. Here are the key aspects when considering supply chain risk. Software dependencies. Software engineers often rely on third party libraries to build software. These libraries and components can introduce tainted code into the production environment. Vulnerabilities in these dependencies can be exploited by an attacker to gain unauthorized access or cause disruptions. An advanced persistent threat could target commonly used third party…

Contents