Video description
What is an SBOM (Software Bill Of Materials) and why should you care? An SBOM is a critical cybersecurity component to keep track and catalog what is installed (and at what versions) in production environments. With recent cybersecurity threats, SBOMs play an important role to implement a remediation strategy when threats and vulnerabilities are reported. Without an SBOM, it is borderline impossible to detect what exactly is released into production, and what may be vulnerable today.
Topics include:
* Understand the concepts behind an SBOM
* Create an SBOM and use different output formats like CycloneDX to import into other systems
* Use an SBOM to detect CVE and other vulnerabilities associated with installed software
* Capture information about pre-installed system dependencies and nested dependencies
* Use CycloneDX and other machine-readable formats like JSON to import outputs into other systems
A few resources that are helpful if you are trying to get started with SBOMs, generating them and using them to capture vulnerabilities:
* A simple, user-friendly SBOM generator: Syft
* A fast vulnerability matcher that uses SBOMs as input: Grype
* The CycloneDX format
Table of contents
Product information
- Title: Introduction to Software Bill of Materials
- Author(s):
- Release date: May 2021
- Publisher(s): Pragmatic AI Labs
- ISBN: 50115VIDEOPAIML
You might also like
book
A Guide to the Project Management Body of Knowledge (PMBOK® Guide) – Seventh Edition and The Standard for Project Management (ENGLISH)
PMBOK® Guide is the go-to resource for project management practitioners. The project management profession has significantly …
book
Solutions Architect's Handbook - Second Edition
Third edition out now with coverage on Generative AI, clean architecture, edge computing, and more Key …
book
Technology Strategy Patterns
Technologists who want their ideas heard, understood, and funded are often told to speak the language …
book
Software Architect's Handbook
A comprehensive guide to exploring software architecture concepts and implementing best practices Key Features Enhance your …