Loading…
Type: Presentation clear filter
Tuesday, July 21
 

10:00am EDT

Build your Castle, Dig your Moat: AI Sovereignty, Provenance and Compliance
Tuesday July 21, 2026 10:00am - 10:30am EDT
Your intelligent application is your castle, and your security practices are the moat that protects it. Inside your castle, you must aim for full visibility into what you’re running and why, with freedom to iterate. Your moat creates your security perimeter, ensuring no proprietary data leaves your castle and enforcing best practices including data provenance, cryptographically signed models, evaluation tools, build pipelines and reproducible environments.

Build on your infrastructure, answer to your requirements, scale on your terms.
Speaker
avatar for Dawn Wages

Dawn Wages

Director Community and Developer Relations, Anaconda, Inc.
Dawn Wages is the Director of Community and Developer Relations at Anaconda, responsible for the most popular Python distribution in the world. She is a software engineer, ethical open source advocate, and community leader who previously served as Chair of the Python Software Foundation. Her... Read More →
Tuesday July 21, 2026 10:00am - 10:30am EDT
Software Engineering Institute 4301 Wilson Boulevard, Arlington, VA 22203

11:30am EDT

Tooling for Air-Gapped K8s: An Overview of Solutions
Tuesday July 21, 2026 11:30am - 12:00pm EDT
Container orchestration in air-gapped environments has been a technical barrier slowing its adoption in highly regulated industries. In this talk we'll discuss a basic solution to achieve moving resources (like Helm Charts, OCI Images, etc.) to show the "old school" method, then transition to discussion of two open-source projects that vastly improve the experience of managing platforms in the disconnected network. We'll discuss the differences
between the two and use cases for each.
Speaker
avatar for Patrick Earl

Patrick Earl

DevOps Engineer, Carnegie Mellon University Software Engineering Institute
Patrick joined the SEI as an Associate DevOps Engineer with the Rapid Fielding of High Assurance Software (previously known as Continuous Deployment of Capability) directorate in May of 2022. Previously he worked as a CS/IT instructor at Kutztown University of PA for three years teaching undergraduate information technology/programming courses. Topics included C++, Python, Linux Systems Administration, and Computer Networking.Patrick mainly focuses on working with Kubernetes in limited connectivity environments on-prem (RKE2, K3S, OpenShift... Read More →
avatar for Jeffrey Hamed

Jeffrey Hamed

Senior DevOps Software Engineer, Carnegie Mellon University Software Engineering Institute
Jeffrey Hamed is a member of the technical staff at the Software Engineering Institute. In his time here he has worked as a Forensic Video Analyst and Software Engineer. In his current role as a DevSecOps Engineer he provides SEI customers with technical expertise by delivering custom... Read More →
Tuesday July 21, 2026 11:30am - 12:00pm EDT
Software Engineering Institute 4301 Wilson Boulevard, Arlington, VA 22203

1:30pm EDT

Prevent-Govern-Prove: On Time, On Budget Mission Software Development
Tuesday July 21, 2026 1:30pm - 2:00pm EDT
  1. Software supply chain risk is no longer a periodic audit exercise—it is a primary driver of rework, schedule slips, and degraded mission readiness. As government organizations and their industry partners strive to deliver software faster while navigating increasingly complex threats and software ecosystems, teams need practical controls that improve delivery predictability without slowing development.

In this session, Thomas Tapley, Product Manager at Sonatype, explains how leading organizations are moving from disconnected point solutions to an integrated software supply chain management approach that spans the full software development lifecycle.

Attendees will learn a practical operating model to:
Prevent malicious or high-risk components from entering development environments through controlled intake and pre-use protections.
Govern component selection with automated, policy-driven enforcement across developer workflows, CI/CD pipelines, and release processes.
Prove software readiness through continuously updated SBOMs and real-time visibility into software supply chain risk.

Using real-world examples and lessons learned, this session demonstrates how organizations can reduce costly rework, respond more quickly to newly disclosed vulnerabilities, and deliver mission software on time and on budget—without sacrificing security, developer productivity, or operational resilience.
Speaker
avatar for Tom Tapley

Tom Tapley

Product Manager, Federal Programs, Sonatype
Tom Tapley specializes in securing software supply chains for Federal environments, bringing deep expertise in aligning agency security, compliance, and operational requirements with modern technology solutions. With a proven track record in supporting mission-critical systems, he... Read More →
Tuesday July 21, 2026 1:30pm - 2:00pm EDT
Software Engineering Institute 4301 Wilson Boulevard, Arlington, VA 22203

2:15pm EDT

Presentation
Tuesday July 21, 2026 2:15pm - 2:45pm EDT
Coming soon!
Tuesday July 21, 2026 2:15pm - 2:45pm EDT
Software Engineering Institute 4301 Wilson Boulevard, Arlington, VA 22203
 
Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.