Software Supply Chain Security with Sigstore
Learn to sign, verify, and secure software artifacts, container images, and metadata using the open-source Sigstore toolkit.
-
💬
Giảng viên AI
Hỏi về bất kỳ bài học nào và nhận câu trả lời rõ ràng ngay lập tức, mọi lúc. -
🕐
Bắt đầu bất cứ lúc nào
Không lịch trình hay hạn chót — học theo nhịp của bạn, bất cứ khi nào. -
🌐
Bằng tiếng Việt
Bài học, bài tập và chứng chỉ — tất cả hoàn toàn bằng ngôn ngữ của bạn.
Về khóa học này
How do you ensure the software running in your production environment hasn't been tampered with? Modern software delivery relies on complex supply chains, making securing your build artifacts and container images more critical than ever. This text-based course provides a clear, step-by-step introduction to securing your software supply chain using the Sigstore ecosystem, ensuring you can verify the integrity of everything you deploy.
You will gain a solid foundation in cryptographic signing and verification, moving from basic concepts to practical configurations. By reading through detailed explanations and studying real-world configuration examples, you will learn how to protect your code, generate Software Bills of Materials (SBOMs), and automate security checks in your delivery pipelines.
What you'll learn:
- Understand the core concepts of software supply chain security and the SLSA framework
- Generate and verify cryptographic signatures for container images and binaries using Cosign
- Implement keyless signing using identity providers for seamless, secure workflows
- Create, manage, and sign Software Bills of Materials (SBOMs) to track dependencies
- Configure automated verification policies within modern CI/CD pipelines
- Query public transparency logs to audit and verify artifact history
The course begins with essential terminology, explaining why supply chain security matters and how cryptographic signing protects your workflows. You will then progress through practical, written guides on using the Sigstore toolset to secure artifacts, manage metadata, and integrate automated checks into your development lifecycle.
This course is designed for software developers, DevOps beginners, and system administrators who want to understand modern software security practices. No prior experience with cryptography or security engineering is required.
Start building trust and integrity into your software delivery process today.
Bạn sẽ nhận được
-
📜
Chứng chỉ hoàn thành
Thêm vào hồ sơ LinkedIn -
💬
Gia sư AI cá nhân
Bí ở một bài học? Hỏi gia sư tích hợp của bạn bất cứ điều gì, bất cứ lúc nào. -
♾️
Truy cập trọn đời
Quay lại bất cứ lúc nào, không hết hạn -
📱
Điện thoại hoặc máy tính
Hoạt động mọi nơi, mọi thiết bị -
💸
Hoàn tiền 14 ngày
Không cần lý do -
⚡
Ngắn gọn, đi vào trọng tâm
2 giờ 54 phút nội dung thực hành
Đánh giá
Chưa có đánh giá — hãy là người đầu tiên chia sẻ.
Học viên cũng học
🔥 Nổi bật
🎓 Có chứng chỉ
Hướng dẫn Thực hành Tuân thủ MLPS 2.0
Chứng chỉ
Thực hành
$14.99
→
🔥 Nổi bật
🎓 Có chứng chỉ
Nền tảng Kỹ thuật An ninh mạng để Chứng nhận
Chứng chỉ
Thực hành
$14.99
→
💼 Sẵn sàng cho công việc
🎓 Có chứng chỉ
Quản lý và quản trị an ninh mạng thực tế
Chứng chỉ
Thực hành
$14.99
→
🔥 Nổi bật
🎓 Có chứng chỉ
Kiểm thử Xâm nhập Web cho Người mới bắt đầu: SQL Injection và Khám phá Lỗ hổng
Chứng chỉ
Thực hành
$14.99
→
Câu hỏi thường gặp
Tôi cần gì để học khóa này? +
Chỉ cần điện thoại hoặc máy tính có kết nối internet. Không cần cài đặt hay thiết bị đặc biệt.
Tôi thanh toán bằng cách nào? +
Bằng thẻ qua Stripe. Chúng tôi không lưu thông tin thẻ — Stripe xử lý an toàn.
Tôi có thể được hoàn tiền không? +
Có — hoàn tiền đầy đủ trong 14 ngày, không cần lý do.
Tôi sẽ có quyền truy cập trong bao lâu? +
Mãi mãi. Sau khi mua, khóa học là của bạn để xem lại bất cứ lúc nào.
Tôi có nhận được chứng chỉ không? +
Có. Sau khi hoàn thành, bạn sẽ nhận được chứng chỉ và có thể thêm vào hồ sơ LinkedIn.
Dành cho người học trong
Công nghệ
Thiết kế
Tài chính
Marketing
Y tế
Giáo dục
Khách sạn-Dịch vụ
Sản xuất