You’ve Created an SBOM- Now What?

Logo
Presented by

Curtis Yanko, Principal Solutions Architect & Chip Epps, Head of Product Marketing

About this talk

Making Sense of SBOMs... SBOMs have been front and center in the national cybersecurity dialogue, particularly in the US, EU, and among key industries where safety and security are priorities. And while SBOMs are not new and have become a best practice those software factories within several industries, we should all expect regulations to become increasingly directive. We’ve seen this with regulatory guidance to self-attest and verify prior to shipping and deploying software. And emerging strategies forecast new levels of accountability and expanded liability for any negative consequences. So, all this raises the question- what are our SBOM obligations, what is our SBOM process, and how can we demonstrate compliance to mitigate our own risks associated with software? In this session we’ll discuss and demo an SBOM, and key factors in managing these artifacts, including: - How to generate both Source and Binary SBOMs - What critical data to look for in your SBOMs - How to automate SBOM creation? - How to manage your SBOMs- store, add, change, etc? - How do you share and communicate your SBOMs?
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (38)
Subscribers (2076)
CodeSecure is a global provider of application security testing solutions including static analysis (SAST) and software composition (SCA) products. Our products, CodeSonar and CodeSentry, help organizations develop and release higher quality and more secure software – free of harmful defects and exploitable weaknesses that cause system failures, enable data breaches, and increase corporate liability.