Unsolicited Response

The OT SBOM Market


Listen Later

Dale Peterson talks with Matt Wyckhouse, Founder and CEO, of Finite State about where the SBOM products and market is today and where it will go in the future. This discussion was informed by the SBOM Challenge at S4x23.

  • Who is the primary buyer of SBOM products and services today? (Hint: Matt thinks that 80% of the code in a product is third party)
  • How accurate are the products, and the Finite State product in particular, in creating a SBOM?
  • How much is the value of a SBOM degraded if it is not perfect? If it is missing software or has inaccuracies?
  • Are the offerings now a product? A semi-custom service that uses a developed product? (with an apt comparison to the detection market)
  • What will the US Government do with all these SBOMs if they actually get them? If they get an exponential increase in software inventory and the patching and cyber maintenance burden.
  • Will there be a separate/distinct OT SBOM market? Will there be a SBOM market in the long run or will it get subsumed in some sort of asset management market?
  • Early thoughts on the SBOM marketplace (a place to collect and distribute and respond to queries on SBOMs)
  • Where is the industry / products now on VEX?
  • Do configuration files belong in a SBOM?
  • Surprise data points from the SBOM Challenge
...more
View all episodesView all episodes
Download on the App Store

Unsolicited ResponseBy Dale Peterson: ICS Security Catalyst and S4 Conference Chair

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

14 ratings


More shows like Unsolicited Response

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,986 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

639 Listeners

The Bill Simmons Podcast by The Ringer

The Bill Simmons Podcast

29,985 Listeners

The Ben Shapiro Show by The Daily Wire

The Ben Shapiro Show

153,262 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,018 Listeners

The Defender's Advantage Podcast by Mandiant

The Defender's Advantage Podcast

31 Listeners

Click Here by Recorded Future News

Click Here

405 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,951 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

173 Listeners

The Industrial Security Podcast by PI Media

The Industrial Security Podcast

21 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

77 Listeners

@BEERISAC: OT/ICS Security Podcast Playlist by Anton Shipulin / Listen Notes

@BEERISAC: OT/ICS Security Podcast Playlist

7 Listeners

Nexus: A Claroty Podcast by Claroty

Nexus: A Claroty Podcast

17 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

43 Listeners

PrOTect It All by Aaron Crow

PrOTect It All

7 Listeners