Home Industry News Technology Government-mandated SBOMs to throw light on software supply chain...

Government-mandated SBOMs to throw light on software supply chain security

-

An SBOM is effectively an ingredient list or a nested inventory, a “formal record containing the details and supply chain relationships of various components used in building software,” the EO states. The EO requires NTIA to produce three proposed minimum elements that should go into any SBOM

Data fields such as supplier name, component name, version of the component, and more. Operational considerations such as frequency of SBOM generation, depth of the dependency tree, access to SBOM data, and more

Support for automation making sure the data can be produced at scale and consumed at scale using three different data formats already standardized, including three leading file formats known as SPDX, CycloneDX, and SWID.

For some security professionals, SBOMs in a private sector organization could be a sign of the organization’s overall caliber.

Sourcecsonline

Related Posts

Latest Updates

Police Arrest 7 People in Oil Theft Syndicate in...

The Jambi Regional Police's Directorate of General Criminal Investigation has unveiled a theft syndicate involving stolen oil condensate from an Indonesian state-owned oil and...

Health Concerns Arise After Toxic Train Derailment

In February of this year, a train operated by Norfolk Southern derailed in the small village of East Palestine, Ohio, while transporting hazardous chemicals. Following...

Delhi Crime Branch Cracks Down on Counterfeit Spare Parts...

The Delhi Police's Crime Branch has initiated legal action after receiving a complaint from automobile companies regarding producing and selling counterfeit spare parts bearing...
X