Sushi Bytes

Sushi Bytes

Modern Software Bigger SCA Expectations

9 min · 19 de mar de 2026
Portada del episodio Modern Software Bigger SCA Expectations

Descripción

For years, Software Composition Analysis focused on managing open source consumption and the related legal and security risks – and that was enough. Today, it isn’t. In this episode of Sushi Bytes, Shinobi and Gen sit down with Aaron Branson to unpack why SCA must evolve to meet modern software realities: AI-generated code with unclear provenance, developers contributing back to open source without leaking IP, and regulations like the EU CRA that demand trustworthy, scalable SBOMs. The takeaway? SCA delivers far more ROI when it’s used to manage today’s risks – not yesterday’s assumptions.

Comentarios

0

Sé la primera persona en comentar

¡Regístrate ahora y únete a la comunidad de Sushi Bytes!

Empezar

2 meses por 1 €

Después 4,99 € / mes · Cancela cuando quieras.

  • Podcasts solo en Podimo
  • 20 horas de audiolibros / mes
  • Podcast gratuitos

Todos los episodios

14 episodios

Portada del episodio Agentic SCA is the Next Evolution in Software Supply Chain Integrity

Agentic SCA is the Next Evolution in Software Supply Chain Integrity

AI didn’t just change how you build software, it broke your process for inspecting it for open source license compliance and security vulnerabilities. In this episode of Sushi Bytes, Shinobi and Gen reconnect with Aaron Branson to unpack FossID’s newly announced Agentic SCA strategy – and why the timing couldn’t be better after our last conversation on SCA in the AI Era. As code generation accelerates and the sheer volume of code explodes, software risk leaders are facing a new reality: more code, more complexity, and less time to react. Aaron breaks down how Agentic SCA shifts the process from passive scanning to active participation – embedding intelligence, automation, and policy enforcement directly into the development workflow. If you’re dealing with AI-generated code, SBOM pressure, or stepping up compliance rigor without slowing developers down – this is the conversation you need right now.

16 de abr de 202613 min