Loading...
Please wait a moment
Founded by passionate advocates of learning and innovation, Learni set out to make professional training accessible to everyone, everywhere in the world. Our team works in the largest cities such as Paris, Lyon, Marseille, and internationally, to support talents and organizations in their skills development.
Which format do you prefer?
30 free minutes with a training advisor — no commitment.
Loading available slots...
Comprehensive guide to Figma training in 2025, covering essentials to sophisticated prototyping. Ideal for designers preparing for professional growth.
No-Code / Low-Code training in Leeds in November 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Explore the future of asynchronous communication training for distributed teams. Discover strategies, tools, and trends shaping effective collaboration across time zones by May 2026.
Artificial Intelligence training in Mesa in September 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
The Training SLSA Framework - Securing Professional Supply Chains training is delivered in-person or remotely (blended-learning, e-learning, virtual classroom, remote in-person). At Learni, a Qualiopi-certified training organization, each program is designed to maximize skills acquisition, regardless of the training mode chosen.
The trainer alternates between demonstrative, interrogative, and active methods (through practical exercises and/or real-world scenarios). This pedagogical approach ensures concrete and directly applicable learning in the workplace.
To ensure the quality of the Training SLSA Framework - Securing Professional Supply Chains training, Learni provides the following teaching resources:
For in-house training at a location external to Learni, the client ensures and commits to having all necessary teaching materials (IT equipment, internet connection...) for the proper conduct of the training action in accordance with the prerequisites indicated in the communicated training program.
The assessment of skills acquired during the Training SLSA Framework - Securing Professional Supply Chains training is carried out through:
Learni is committed to the accessibility of its professional training programs. All our training programs are accessible to people with disabilities. Our teams are available to adapt teaching methods to your specific needs. Do not hesitate to contact us for any accommodation request.
Learni training programs are available for inter-company and intra-company settings, both in-person and remote. Registration is possible up to 48 business hours before the start of training. Our programs are eligible for OPCO, Pôle emploi, and FNE-Formation funding. Contact us to discuss your training project and funding possibilities.
Dive into the principles of the SLSA framework through analyses of famous breaches like SolarWinds and Log4j, identify concrete risks in your current pipelines, set up a test environment with GitHub Actions and Rekor to verify provenance, perform an initial audit of your Git repo, produce an SLSA maturity report with actionable recommendations to immediately boost professional security.
Apply SLSA Level 1 to real workflows by signing Git commits and tags with GPG and Cosign, integrate automated checks in GitHub Actions to validate source integrity, test on an enterprise red thread project, generate verifiable SLSA attestations, optimize existing pipelines for quick compliance, deliver a ready-to-deploy workflow with code review by the expert trainer.
Advance to Level 2 by instrumenting pipelines with In-Toto and GitHub SLSA to attest build provenance, deploy secure ephemeral runners via Docker and Kubernetes, simulate injection attacks to validate controls, integrate Syft and Grype to scan dependencies, build a complete SBOM linked to SLSA, export auditable evidence for enterprise compliance teams.
Design Level 3 SLSA architectures with verifiers like SLSA Verifier and Fulcio for a complete chain of trust, migrate Jenkins or GitLab pipelines to SLSA compliance, manage hybrid cloud/on-prem environments, perform exercises on critical enterprise cases, automate continuous audits with OPA/Gatekeeper, produce a deployable blueprint to accelerate organizational security at scale.
Finalize your expertise by auditing a complete pipeline with advanced SLSA tools like Sigstore and Tensor, optimize for performance without compromising security, analyze real enterprise incidents to extract lessons learned, prepare for SLSA certification through simulations, deploy your red thread project in a simulated production environment, receive a personalized action plan for sustainable SLSA integration and to leverage your certified skills.
Target audience
DevSecOps engineers, security architects, CI/CD managers in companies for certified skills development
Prerequisites
Expertise in CI/CD (GitHub Actions, Jenkins, GitLab CI), mastery of SBOMs, provenance, and advanced supply chain threats
Loading...
Please wait a moment





























