Software Supply Chain Security: Xray Policies, Integrations, and SBOMs (JFTC 507)
Designed for DevSecOps and Security Champions, this course automates compliance using JFrog Xray. You will create policies, generate SBOMs, integrate scanning, and use dedicated resources and toold to develop a comprehensive execution plan.
Course Level: Foundational
Requirements:
Understanding of the Software Development Lifecycle (SDLC).
knowledge of JFrog Artifactory.
Prerequisites:
Completion of JFrog Platform Essentials is recommended.
Familiarity with CLI tools (e.g., Maven, npm, Go)
Topics Covered:
- Core Terminology: Understanding Indexing, Resources, Rules, Watches, and Violations.
- Policy Management: Configuring Security, License, and Operational Risk policies.
- Integrations: Setting up the JFrog IDE Plugin, Frogbot, and JFrog CLI for developers.
- Traceability: utilizing Build Info and Release Bundle V2 for deep visibility.
- Administration: Managing Role-Based Access Control (RBAC) and interpreting scan reports.
These 3 hour live, instructor-led sessions provide an interactive learning environment featuring real-time Q&A and hands-on labs to practice practical exercises.
*In case of a refund, please contact training@jfrog.com