Relating to DevSecOps

Episode: #070: Putting da BOM in SBOM and SCA


Listen Later

Send us a text

Ken and Mike discuss supply chain security, including software composition analysis (SCA) and software bill of materials (SBOM). They highlight the importance of understanding the components that make up your software and the risks associated with using third-party libraries. They also discuss recent supply chain failures, such as the XZ library hack and the SolarWinds attack. The hosts emphasize the need for organizations to stay up to date with software patches and to consider the security of commercial off-the-shelf software. They caution against placing too much focus on any one security tool or approach, including SBOM, and instead advocate for a well-rounded approach to security.

...more
View all episodesView all episodes
Download on the App Store

Relating to DevSecOpsBy Ken Toler and Mike McCabe

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

8 ratings


More shows like Relating to DevSecOps

View all
Darknet Diaries by Jack Rhysider

Darknet Diaries

7,909 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

74 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

127 Listeners