The Virtual CISO Podcast

Ep 116: What is an SBOM & Why Are My Customers Suddenly Asking for One?


Listen Later

With the release of President Biden’s Executive Order 14028 on “Improving the Nation’s Cybersecurity” from May 2021 the US public and private sectors have been alerted to the significant cybersecurity risks within our software supply chain. As of the March 2023 release of the National Cybersecurity Strategy, which will shift liability for software products and services to promote secure development practices, it’s evident that software security needs to be elevated across all organizations.

In this episode, your host John Verry, Pivot Point Security CISO and Managing Partner, sits down with Tim Mackey, Head of Software Supply Chain Risk Strategy at Synopsys, to explore what better software supply chain security means for software development and more.

In this episode, join us as we discuss:

· Defining an SBOM what it can include depending on stakeholder needs
· The value of SBOMs for both software developers and their clients
· Market drivers for improved software supply chain security
· Software composition analysis and its role in mapping dependencies and identifying vulnerabilities within code
· How the NIST Secure Software Development Framework (SSDF) supports initiatives to improve software supply security

To hear this episode and many more like it, we encourage you to subscribe to the Virtual CISO Podcast.

Just search for The Virtual CISO Podcast in your favorite podcast player or watch the Podcast on YouTube here.

To stay updated with the newest podcast releases, follow us on LinkedIn here.

View all episodesView all episodes
Download on the App Store

The Virtual CISO PodcastBy John Verry

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

18 ratings


More shows like The Virtual CISO Podcast

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,952 Listeners

Risky Business by Patrick Gray

Risky Business

362 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

634 Listeners

The Cloudcast by Massive Studios

The Cloudcast

155 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,010 Listeners

Founders by David Senra

Founders

1,754 Listeners

Smashing Security by Graham Cluley & Carole Theriault

Smashing Security

308 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,822 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

141 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

186 Listeners

Hacking Humans by N2K Networks

Hacking Humans

304 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

70 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

118 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

32 Listeners

The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis

397 Listeners