2026年 第4回 OSSセキュリティMeetup ー 10月26日 サイボウズ (日本橋)+オンライン
Linux Foundation Japan | 2026年09月18日 (PDT)
業界で最も重要なオープンソースセキュリティの取り組みと、それをサポートする個人および企業をつなぎ合わせる業界横断的なプロジェクトOpen Source Security Foundation (OpenSSF) のJapan Working Groupが、10月26日 (月) サイボウズ株式会社 東京 (日本橋) オフィスでOSSセキュリティMeetupを開催します。
今回のMeetupでは、10月にプラハで開催されるOSSEU2026 (Open Source Summit Europe 2026) および併設イベントOpenSSF Community Day Europe 2026のイベントレポートに加え、OpenSSF Community Day 2026に登壇するホンダ 清海氏、富士通 高橋氏による同セッションを日本語特別版、OpenBaoを用いたKubernetesシークレット管理基盤の改善、Gitリポジトリのサプライチェーン保護と改ざん防止プラットフォームgittufの解説をお届けします。
本Meetupは、OpenSSFメンバーに限らず、OSSセキュリティに興味がある方はどなたでも歓迎します。本Meetupは、OSSセキュリティに関する同じ問題意識や課題を持つ仲間が集まり、主に日本語で情報を共有して、一緒に前進していける場を目指します。
イベント概要
・日時 : 10月26日 (月) 17:30 〜 19:30 (17:00開場)
・会場 : 〒103-6027 東京都中央区日本橋2-7-1 東京日本橋タワー + オンライン
・定員 : 80名 (現地参加) + オンライン
・参加登録 (無料) 登録期限 (10月26日午後12時) まで : 登録はこちらから
・19:30 から同会場で懇親会を開催します。(参加費 1,000円)
懇親会に参加ご希望の方は、登録フォームにその旨ご記入ください。
アジェンダ
・Open Source Summit Europe 2026/OpenSSF Community Day Europe 2026イベントレポート
サイバートラスト 池田 宗広 氏
ルネサスエレクトロニクス 余保 束 氏
日立 下沢 拓 氏
日立 川名 のん 氏
ホンダ 清海 佑太 氏
富士通 高橋 明彦 氏
・Applying VEX To Vulnerability Information Sharing in Multi-tier Automotive Supply Chains
ホンダ 清海 佑太 氏
富士通 高橋 明彦 氏
・OpenBao による Kubernetes シークレット管理基盤の改善と検証
サイボウズ 後藤 健太 氏
・gittufの概要とローカルリポジトリでの試用
サイバートラスト 河原 颯太 氏
OSSセキュリティMeetupについて ー OSSセキュリティの重要性
現代社会を支えるITシステムは、OSSに広く依存しています。企業の製品やサービスに含まれているソフトウェアのうち70%〜90%はOSSであると言われています。企業は多くの場合、OSSの活用を通して開発スピードと品質を高め、技術革新を目指します。OSS採用により、産業全体でOSSのメリットを共有する一方で、脆弱性が見つかればその影響は広範囲に及びます。このためOSSセキュリティを確保することは非常に重要であり、国や組織を超えた協力的な取り組みが求められています。
Join Us at the OSS Security Meetup in Tokyo, Japan
We are thrilled to announce that the Japan Working Group of the Open Source Security Foundation (OpenSSF), a cross-industry initiative that brings together the industry's most important open source security initiatives and the individuals and companies that support them, will hold the OSS Security Meetup on Monday, October 26th at Cybozu Inc. Tokyo Office (Nihonbashi)
This meetup will feature:
An event report from Open Source Summit Europe 2026 (OSS EU 2026) and the co-located OpenSSF Community Day Europe 2026, both taking place in Prague in October.
A special Japanese edition of the session “Applying VEX To Vulnerability Information Sharing in Multi-tier Automotive Supply Chains”, which will be presented at OpenSSF Community Day Europe 2026 by Yuta Kiyomi (Honda) and Akihiko Takahashi (Fujitsu).
A presentation on improving Kubernetes secret management infrastructure using OpenBao.
An introduction to gittuf, a platform for protecting the Git repository supply chain and preventing tampering.
We aim to create a place where people with the same awareness and challenges related to OSS security can gather, share information mainly in Japanese, and move forward together. We welcome anyone interested in OSS security, not only OpenSSF members.
Event Details
・Date: October 26th (Monday)
・Time: 17:30 to 19:30, Japanese Standard Time (JST)
・Venue: Cybozu Inc. Tokyo Nihonbashi Tower 2-7-1 Nihonbashi, Chuo-ku, Tokyo 103-6027, Japan + ONLINE
・Registration: Register here until October 26th 12:00PM
・Networking Reception: A reception will be held at the same venue from 19:30. Participation fee: ¥1,000. If you would like to attend, please indicate so on the registration form.
Agenda
(Note: All sessions will be presented in Japanese)
・Open Source Summit Europe 2026 / OpenSSF Community Day Europe 2026 Event Report
Munehiro Ikeda (Cybertrust Japan)
Tsukasa Yobo (Renesas Electronics)
Taku Shimozawa (Hitachi)
Non Kawana (Hitachi)
Yuta Kiyomi (Honda)
Akihiko Takahashi (Fujitsu)
・Applying VEX To Vulnerability Information Sharing in Multi-tier Automotive Supply Chains
Yuta Kiyomi (Honda)
Akihiko Takahashi (Fujitsu)
・Improving and Validating Kubernetes Secret Management Infrastructure with OpenBao
Kenta Goto (Cybozu)
・Introduction to gittuf and Hands-on Evaluation with a Local Repository
Sota Kawahara (Cybertrust Japan)
About OSS Security Meetup – Importance of OSS Security
The IT systems that support modern society are widely dependent on OSS. It is estimated that 70% to 90% of the software included in a company’s products and services is OSS.Organizations often use OSS to improve development speed and quality and aim for technological innovation. By adopting OSS, the benefits of OSS
can be shared across industries, but if vulnerabilities are found, the impact will be widespread. Ensuring OSS security is of the utmost importance, and for that purpose, cooperative efforts across countries and organizations are required.
Linux Foundation について
Linux Foundationは、オープンソースソフトウェア、オープンハードウェア、オープンスタンダード、オープンデータに関するコラボレーションのための世界有数の拠点です。Linux Foundationのプロジェクトは、Linux、Kubernetes、Model Context Protocol (MCP)、OpenChain、OpenSearch、OpenSSF、OpenStack、PyTorch、Ray、RISC-V、SPDX、Zephyrなど、世界のインフラストラクチャにとって重要なものです。Linux Foundationは、ベストプラクティスを活用し、貢献者、ユーザー、ソリューション プロバイダーのニーズに対応し、オープンコラボレーションの持続可能なモデルを構築することに重点を置いています。詳細については、linuxfoundation.org をご覧ください。
Linux Foundationはさまざまな登録商標および商標を使用しています。Linux Foundationの商標の一覧については、linuxfoundation.org/trademark-usageをご覧ください。
Linuxは、Linus Torvaldsの登録商標です。