author image

Michael Lieberman

Michael Lieberman is an engineer and architect focused on technology transformation especially with regards to cloud native architectures, technologies and migrations. His passion is in applying his expertise to use cases where privacy and security are paramount. Most recently he has been focused on work within the software supply chain security space. He is co-chair of the CNCF Financial Services User Group, SLSA steering committee member, and recently co-lead the Secure Software Factory Reference Architecture for the Security Technical Advisory Group. Michael has also participated in multiple podcasts, panels and talks on behalf of the FSUG, the companies he’s worked for and on behalf of himself as an individual contributor in the tech community.

post image
April 26, 2023

Kusari Open-Sources Spector

With the recent release of SLSA v1.0, we’re excited to announce the open-sourcing of Spector, a brand-new tool and library designed to generate, validate, and verify supply chain metadata documents.

Read More
post image
April 4, 2023

Figure Out Who's Lurking in Your Supply Chain With Signatures and Attestations

A Story of Software and Cats This cat’s wearing a bowtie and looks trustworthy but

Read More
post image
March 28, 2023

Applying Zero Trust to the Software Supply Chain

In the previous article, we went over a high-level overview of what software supply chain security is and how it can be solved.

Read More
post image
March 14, 2023

Kusari's Software Supply Chain Security Overview

So there’s Network Security, Application Security, Hardware Security, End Point Security, and a bunch of other categories of security.

Read More
post image
October 20, 2022

A high fidelity view of software supply chain

Understanding and maintaining your software supply chain can be a task that needs 24/7 vigilance.

Read More
post image
July 20, 2022

Not Just Third Party Risk

There’s a misconception in Cybersecurity among some that Software* Supply Chain Security is just Third Party Risk Management (TPRM).

Read More