News

Chainguard named an IDC Innovator for open source software supply chain security

Dan Lorenc, CEO
February 15, 2023
copied

Chainguard was recently named an IDC Innovator in the report – IDC Innovators: Open Source Software Supply Chain Security, 2023 (doc #US50138923, February 2023). According to the IDC Innovators press release, “To address these concerns, the companies profiled in this report have developed  software supply chain management platforms that utilize DevSecOps capabilities to better manage the security of the open source components used in their software development and deployment operations.”

At Chainguard we recognize that software supply chain security is not one problem, it's many problems. As the first developer platform built for software supply chain security, we are focused on helping all organizations transform their software development process so that it is inherently more secure. 

Chainguard Images and Chainguard Enforce are the beginning and end stages of our vision for a comprehensive platform that organizations can use to continuously secure their software supply chain by default. To do this, we root our solutions in open standards and tools like SLSA and Sigstore to integrate these necessary security checkpoints throughout the entire software development lifecycle. 

"The challenge of securing the OSS software supply chain is significant and complex for virtually every organization," said Katie Norton, senior research analyst, DevOps & DevSecOps. "The many entry points into the software supply chain constitute a significant risk that has gone unaccounted for in many organizations."

We’re thrilled to be recognized as one of the IDC Innovators on our journey to make the software supply chain secure by default. To read the full IDC Innovators Report: Open Source Software Supply Chain Security, 2023, download it here. To get in touch with our team to learn how we can help your organization secure its software supply chain and software development practices, visit our website.

Resources:

Preventing Log4Shell Reintroduction with Chainguard Enforce 

Creating and Enforcing Policies for Signing Software 

Identifying Images Unaddressed by Policies 

Related articles

Ready to lock down your supply chain?

Talk to our customer obsessed, community-driven team.