cover of episode MLOps at JFrog with Bill Manning

MLOps at JFrog with Bill Manning

2024/12/17
logo of podcast Software Engineering Daily

Software Engineering Daily

People
B
Bill Manning
Topics
Bill Manning: 本人拥有近八年的 JFrog 工作经验,以及在创业公司和风投领域的丰富背景。在 JFrog,我担任过多个角色,包括解决方案工程师、解决方案架构师和团队管理者,目前正专注于机器学习领域。我能够在技术领域取得成功,是因为我能够提前发现新兴技术,并始终保持学习和适应变化的能力。在 JFrog,我热爱团队文化、与大型科技公司合作的机会以及公司对员工发展的支持。JFrog 的发展非常迅速,员工数量和客户数量都大幅增长,收入也显著提升。JFrog 致力于成为软件开发的基石,提供一致的工具和平台,以提高效率、安全性及合规性,并正在将这一理念扩展到 ML 和 MLOps 领域。DevSecOps 的核心是将安全集成到软件开发生命周期的各个阶段,以实现更快速、更安全和更合规的软件交付。DevOps 和安全不应该分开,安全应该集成到 DevOps 的每个阶段,成为 DevOps 的一个组成部分。将安全责任转移给开发团队不会造成过度负担,关键在于以智能的方式集成安全实践,使其成为开发流程的自然组成部分。JFrog 为银行等受监管机构提供全面的安全解决方案,包括持续扫描、漏洞分析、许可证合规性检查以及运行时安全监控等功能。JFrog 通过将机器学习集成到其安全工具中,实现更主动的安全防护,例如自动检测和修复安全问题。 Sean Falconer: 作为节目的主持人,Sean Falconer 主要负责引导访谈,提出问题,并与 Bill Manning 就 JFrog 的 MLOps 实践、DevSecOps 方法以及相关技术发展趋势进行深入探讨。他引导 Bill Manning 分享了其职业生涯经历、技术选择策略以及对行业发展趋势的见解。Sean Falconer 还与 Bill Manning 讨论了 DevSecOps 的定义、实施挑战以及 JFrog 如何帮助企业解决这些挑战。此外,他还探讨了生成式 AI 和智能系统对未来安全工具发展的影响。

Deep Dive

Key Insights

Why has Bill Manning stayed at JFrog for eight years?

He values the people, the technology, and the opportunity to work with large companies. The company's culture and commitment to innovation align with his personal mantra of constant evolution and learning.

What is JFrog's role in the MLOps space?

JFrog is focused on providing a consistent base layer for ML and MLOps, ensuring tools are secure, compliant, and efficient. They aim to address the challenge that 85% of ML technologies never make it to production.

How does JFrog differentiate itself in the DevSecOps space?

JFrog offers a holistic security solution that integrates security into every phase of the software development lifecycle, from development to runtime. Their tools provide proactive security measures, reducing the cognitive load on developers.

What challenges do companies face with security despite better tools and practices?

The sheer volume of CVEs (Common Vulnerabilities and Exposures) creates a deluge of security alerts, making it difficult to prioritize and address real threats. JFrog's contextual analysis helps reduce this noise by focusing on threats that actually affect the organization.

How does JFrog's approach to security differ from traditional point solutions?

JFrog integrates security into the entire software development lifecycle, not just as a point solution. Their tools provide continuous scanning and proactive measures, ensuring security is embedded at every stage, from development to runtime.

What is JFrog's stance on the relationship between DevOps and security?

JFrog believes DevOps and security should be inseparable. Security should be integrated into every phase of the software development lifecycle, from the developer's IDE to runtime, ensuring a consistent and secure workflow.

How does JFrog help companies in regulated industries like banking?

JFrog provides a comprehensive security suite that includes continuous scanning, advanced security features, and runtime protection. Their tools help banks ensure compliance, reduce tool sprawl, and maintain a consistent security posture across the SDLC.

What is JFrog's strategy for addressing the challenges in the ML space?

JFrog is building proactive tools for MLOps, including a machine learning repository for versioning models and security scanning for data sets. They aim to reduce the 85% failure rate of ML technologies not making it to production.

How does JFrog's contextual analysis help with security threats?

Contextual analysis evaluates whether the conditions for a potential exploit are met, reducing the number of CVEs that need attention. This helps companies focus on real threats rather than being overwhelmed by the sheer volume of alerts.

What is JFrog's vision for the future of MLOps and security?

JFrog envisions a future where accountability and transparency in ML models are critical. They are building tools to ensure that ML models are secure, compliant, and traceable, addressing the Wild West nature of the current ML landscape.

Shownotes Transcript

JFrog) is a DevOps platform that specializes in managing software packages and automating software delivery. One of its best known services is the JFrog Artifactory which is a universal artifact repository. JFrog is also focused on rapidly emerging needs in the MLOps space.

Bill Manning) is a Senior Solution Architect at JFrog. He joins the podcast to talk about his background in startups and venture capital, and his current work in ML at JFrog.

)Sean’s been an academic, startup founder, and Googler. He has published works covering a wide range of topics from AI to quantum computing. Currently, Sean is an AI Entrepreneur in Residence at Confluent where he works on AI strategy and thought leadership. You can connect with Sean on LinkedIn.

 

Please click here to see the transcript of this episode.)

Sponsorship inquiries: [email protected])

The post MLOps at JFrog with Bill Manning) appeared first on Software Engineering Daily).