
What's in the SOSS? An OpenSSF Podcast
What's in the SOSS? features the sharpest minds in security as they dig into the challenges and opportunities that create a recipe for success in making software more secure.
Get a taste of all the ingredients that make up secure open source software (SOSS) and explore the latest trends at the intersection of AI and security, vulnerability management, and threat assessments.
Each episode of What's in the SOSS? is packed with valuable insight designed to foster collaboration and promote stronger security practices for the open source software community.
About Christopher Robinson (aka CRob), host
CRob is a 43rd level Dungeon Master and a 26th level Securityologist. He is a leader within several Open Source Security Foundation (OpenSSF) efforts and is a frequent speaker on cyber, application, and open source security. He enjoys hats, herding cats, and moonlit walks on the beach.
Episodes
Secure Software Starts with Awareness: Education & Open Source with the Council of Daves

Enterprise to Open Source: Steve Fernandez’s Journey to the OpenSSF

JavaScript's Big Footprint: Robin Bender Ginn on Leading OpenJS and Open Source at Scale

Empowering Security: Yesenia Yser on Open Source, AI, and Personal Branding

OpenSSF 2025 MVVSR Overview

Kusari’s Michael Lieberman Talks GUAC, SLSA and Securing the Open Source Supply Chain

Sovereign Tech Agency’s Tara Tarakiyee and Funding Important Open Source Projects

Alpha-Omega’s Michael Winser and Catalyzing Sustainable Improvements in Open Source Security

Jack Cable of CISA and Zach Steindler of GitHub Dig Into Package Repository Security

Red Hat's Rodrigo Freire and the Impact of High-Profile Security Incidents

Canonical’s Stephanie Domas and Security Insight from a Self-Described “Tinkerer”

Intel’s Katherine Druckman and the Impact of Developer Relations

Dell's Sarah Evans and Lisa Bradley and Ensuring Secure Open Source Software at the Enterprise Level

Bidding Adieu to Omkhar Arasaratnam

CoSAI, OpenSSF and the Interesting Intersection of Secure AI and Open Source

GitHub’s Mike Hanley and Transforming the “Dept. of No” Into the "Dept. of Yes, And…”

CISA's Aeva Black and the Public Sector View of Open Source Security

Google’s Andrew Pollock and Addressing Open Source Vulnerabilities

Rust Foundation’s Bec Rumbul and Succeeding as a “Non-Techie” in a Tech-Heavy Industry

Sonatype’s Brian Fox and the Perplexing Phenomenon of Downloading Known Vulnerabilities

Arun Gupta and Giving Back to Security Communities

Stacklok's Adolfo García Veytia Digs Into SBOMs and VEX

A Man Called CRob: Introducing the Newest Co-host of What’s in the SOSS?

OpenAI’s Matt Knight and Exploring the Intersection of AI and Open Source Security

Eric Brewer and the Future of Open Source Security
