Your Open Source Is Vulnerable. How Do You Fix It? | Red Hat Lightwell ft. Cedric & Richard

Red Hat
September 14, 2026

Host: Cedric Clyburn Guest: Richard Naszcyniec Producer: Rohan Venkatram Cedric is in conversation with Richard Naszcyniec, AI Technical Architect and AI Futurist at Red Hat, to take a closer look at Red Hat Lightwell — and a new approach to securing the open source dependencies enterprises rely on every day. With more than 30 years in the software industry across companies including Sybase, Siebel Systems, Oracle, IBM, and Red Hat, Richard brings deep experience across enterprise technology, competitive strategy, application services, and AI. Today, his focus is on demystifying AI architecture and helping organizations turn emerging technologies into practical business value. 🎥 Interactive Demo Featured — follow along live: Lightwell – Lightweight Technical Demo https://www.redhat.com/en/interactive-demo/lightwell-lightweight-technical-demo 🔴 Learn more about Red Hat Lightwell: https://www.redhat.com/en/lightwell 👉 What you'll see in this episode: 🔐 Fix vulnerabilities without disruptive upgrades See how Lightwell helps organizations address vulnerable third-party open source dependencies while avoiding the compatibility and production risks that can come with major version upgrades. 📦 Bring trusted packages into existing workflows Richard walks through connecting to Lightwell from the Red Hat console, creating access, browsing the curated package catalog, and integrating Lightwell repositories with the artifact management tools teams already use. 🛡️ Understand what makes an artifact trustworthy Explore how Lightwell provides signed and attested Java and Python packages with software bills of materials (SBOMs), verified provenance, and SLSA Level 3 build standards. ⚡ Move from vulnerability to remediation at scale See how Red Hat's proven approach to backporting security fixes is being extended beyond the operating system to help secure application-layer open source dependencies. As AI accelerates both software development and vulnerability discovery, securing the open source supply chain is becoming an increasingly difficult challenge. This episode shows how Lightwell combines Red Hat's open source expertise, trusted software supply chain practices, and AI-driven remediation to help enterprises respond without disrupting the applications they depend on. Join Cedric and Richard for a hands-on look at what Lightwell is, how it works, and why it matters for the future of enterprise open source security. #RedHat #RedHatLightwell #Lightwell #OpenSourceSecurity #SoftwareSupplyChain #Cybersecurity #ApplicationSecurity #DevSecOps #SBOM #EnterpriseSecurity

Keyboard shortcuts

On. Switch them off if they collide with your assistive tools; ? still opens this sheet.

Go to

Press g then the letter.

  • gh Latest
  • gs Sources
  • gm Media
  • gv Videos
  • gp Podcasts
  • gc Calendar
  • gd Decoder
  • gz Dataviz
  • ga Datasets
  • gb Blog
  • gk Markets
  • gj Careers
  • gn Prompt Notebook

On this page

  • / Focus search, where there is one
  • t Back to top
  • ? This list
  • Esc Close