<img height="1" width="1" style="display:none" src="https://www.facebook.com/tr?id=705633339897683&amp;ev=PageView&amp;noscript=1">

Upstream-logo

Upstream community

UPSTREAM LIVE IN BOSTON

Rethinking vulnerability management

Wednesday, September 18 4-6 p.m. ET

Upstream microphone

We're hosting an exclusive group of technology leaders in Boston on September 18 to discuss rethinking open source vulnerability management.

CONVERSATION HOSTS:    
donald
Donald Fischer
CEO and co-founder
Tidelift
johnmarkwalker
John Mark Walker
Director of OSPO
Fannie Mae

jordan-harband
Jordan Harband
Maintainer and Principal Open Source Architect
HeroDevs

What is the goal of your organization’s current vulnerability management strategy? Is your goal to eliminate all vulnerabilities? This sounds like a noble goal. But the truth is that the number of vulnerabilities being reported increases exponentially every year, which makes a zero vulnerability goal an endless game of whack a mole.

The real goal most organizations would actually like to achieve with their vulnerability management strategy is to reduce security risk. But development teams are overwhelmed triaging long lists of vulnerabilities, often without enough context on which are the most important to patch to actually reduce risk.

Meanwhile, open source maintainers are also swamped with vulnerability reports to investigate, many of which end up being false positives. We’ve managed to create a self perpetuating vulnerability detection and remediation industrial complex. And, worst of all, it may not actually be delivering the outcome we really desire: actual security risk reduction.

Join us live on Wednesday, Sept. 18 when we bring together leading experts with clear ideas on what we can change about the vulnerability management status quo.

They’ll lead an interactive dialogue with other industry leaders like you, as we share experiences, debate new ideas and approaches, and walk away with some fresh ideas for attacking the vulnerability management challenge.

 

Hold your spot:

Are you in? Space is limited, so please RSVP

When? Wednesday, Sept. 18 from 4 p.m. to 6 p.m. ET

Where? CIC at 245 Main St, Cambridge, MA 02142, United States

Agenda:

4-4:15: Welcome
4:15-5:00 Panel discussion: Rethinking open source vulnerability management
5-5:30 pm: Open dialogue
5:30-6 pm: Networking with drinks and hors d'oeuvres