Relating to DevSecOps

Episode: #070: Putting da BOM in SBOM and SCA


Listen Later

Send us a text

Ken and Mike discuss supply chain security, including software composition analysis (SCA) and software bill of materials (SBOM). They highlight the importance of understanding the components that make up your software and the risks associated with using third-party libraries. They also discuss recent supply chain failures, such as the XZ library hack and the SolarWinds attack. The hosts emphasize the need for organizations to stay up to date with software patches and to consider the security of commercial off-the-shelf software. They caution against placing too much focus on any one security tool or approach, including SBOM, and instead advocate for a well-rounded approach to security.

...more
View all episodesView all episodes
Download on the App Store

Relating to DevSecOpsBy Ken Toler and Mike McCabe

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

8 ratings


More shows like Relating to DevSecOps

View all
Risky Business by Patrick Gray

Risky Business

360 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

628 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

367 Listeners

The Defender's Advantage Podcast by Mandiant

The Defender's Advantage Podcast

33 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,851 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

78 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

118 Listeners

AI CyberSecurity Podcast by Kaizenteq Team

AI CyberSecurity Podcast

4 Listeners