Recently, I chatted with developers from a customer in a heavily regulated industry. They were manually updating their open source dependencies and wanted to find a better solution to save time. Keeping their dependencies up-to-date was very time-consuming but something they identified as crucial for their business.
*** This is a Security Bloggers Network syndicated blog from Sonatype Blog authored by Jamie Coleman. Read the original post at: https://blog.sonatype.com/the-impact-of-automating-open-source-dependency-management