DevOps Tools: Securing the Software Supply Chain

DevOps Tools: Securing the Software Supply Chain

The webinar took place on Thursday, July 07, 2022
Webinar Presentation Martin Kuppinger
Webinar Presentation Craig Lurey

Watch the Recording

Join this Webinar to

  • Understand the importance and business benefits of securing IT infrastructure secrets.
  • Discover the security requirements of agile IT and DevOps infrastructures.
  • Understand why hardcoded and embedded credentials are a major pain point in DevOps.
  • Learn about the solutions that help increase software supply chain security.
  • Gain insights into the benefits of infrastructure secrets management.
  • Learn how to protect secrets when employees leave.
  • Get an overview of Keeper Secrets Manager.

Protecting API Keys, Database Credentials, Certificates and Other Secrets

Following the SolarWinds and Kaseya supply chain attacks, security of the DevOps tools chain with all the related components has shifted to the center of attention. There is a lot to do around securing code and CI/CD tools, as well as the execution environments. But it all starts with protecting secrets such as keys, certificates, and even passwords.- each one of these can provide access to large amounts of critical information.

Join experts from KuppingerCole Analysts and Keeper Security as they discuss the expanding attack surface in the DevOps environment. This is often due to little oversight or control of widely distributed and poorly managed secrets such as API keys, database passwords, cloud access keys, certificates, SSH keys, and service account passwords.

Speakers Contribution

Martin Kuppinger, Principal Analyst at KuppingerCole Analysts will look at the broad range of security requirements in today’s agile IT and DevOps infrastructures, at solutions that help in increasing software supply chain security, and at the specific role Secrets Management plays.

Craig Lurey, CTO and Co-Founder of Keeper Security will explain the main points of infrastructure secrets management and how this can be done securely using a cloud-based, zero-knowledge platform without adding complexity or needing to invest in extra hardware.

Craig Lurey is the CTO and Co-Founder of Keeper Security, Inc. Craig leads Keeper Security’s software development and technology infrastructure. Prior to Keeper Security, Craig was the CTO of Callpod, a technology company that creates unique power products and software. Before that he was...

Lead Sponsor


Join this combined presentation to gain quick insights and hands-on solutions from a KuppingerCole analyst and selected industry expert, finishing with by a comprehensive Q&A for your individual business challenges.

To register for the webinar, you need to log in to your KuppingerCole User first. If you do not have a KuppingerCole User yet, you can sign up here. After logging in, please enter your requested personal data which is necessary for the further administration of your registration. Once registered, a booking confirmation will be sent to your indicated email address.

Our webinars last approximately 50-60 minutes.

If you didn’t receive the booking confirmation in your inbox, please check your spam folder. If you cannot find the booking confirmation in your spam folder, please contact us. We will get back to you within one business day.

We use the "GoToWebinar" software for the webinars. Simply click on "Join the webinar" in the registration confirmation. GoToWebinar will check directly on your computer if the software is already installed. If not, the installation process will start automatically, and you only need to confirm it.

To participate, you need a computer or a laptop with Internet access. If you want to use the sound transmission via the computer, you will need headphones (headset) or speakers. You do not need a webcam or microphone. A combination of computer and telephone is also possible - you then follow the webinar via your Internet connection on the computer and dial in at the same time via telephone to listen to the moderator's explanations. You can type in questions in the chat window. In the registration confirmation you will also receive a link that allows you to test the technical requirements in advance.

Our webinars are generally free of charge.

The recordings and presentation slides will be available on the website shortly after the webinar. An email will be sent to all registered users. In order to access the materials, you will need to log in to your KuppingerCole User first.

Yes, the recordings and presentation slides are made available to all users that registered for the webinar, regardless if they attended live or were tied up with business. You do not need to deregister.

In some companies there are - mostly due to restrictive IT policies - problems with the installation. We regret this, of course, but cannot provide support in these cases. But no problem: You will receive the recording after the webinar, which you can watch in a normal web browser.