DiscoverWhat's in the SOSS? An OpenSSF PodcastFrom Compliance to Community: Meeting CRA Requirements Together
From Compliance to Community: Meeting CRA Requirements Together

From Compliance to Community: Meeting CRA Requirements Together

Update: 2025-07-29
Share

Description

In this episode of 'What's in the SOSS” CRob dives deep into the Erlang ecosystem with Jonatan Männchen (CISO, Erlang Ecosystem Foundation), Ulf (Product Owner, Herrmann Ultraschall), and Michael Winser (Alpha Omega). This episode explores the critical importance of security in open source, particularly in light of regulations like the CRA. Hear how the Erlang community is proactively addressing security concerns by bringing in experts, fostering collaboration, and building trust. Discover why manufacturers are investing in upstream projects and how other ecosystems can learn from their approach. This conversation highlights the value of community, transparency, and the essential role of 'stewards' in the open source world.


Chapters:

00:17 - Welcome

00:57 - Meet the Guests

02:56 - Jonatan’s Journey into Erlang

06:16 - The Alpha Omega Connection

09:07 - Ulf’s Perspective as a Product Manager

13:09 - Funding Security in Open Source

18:58 - Challenges in Implementing Security

24:54 - Becoming a CNA and Normalizing Security

28:18 - Jonatan’s role as CISO

32:01 - Calls to Action & Advice

36:49 - Wrap Up


Episode links:

Comments 
In Channel
loading
00:00
00:00
1.0x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

From Compliance to Community: Meeting CRA Requirements Together

From Compliance to Community: Meeting CRA Requirements Together

OpenSSF