SEP 01, 2022 | US
Software Industry Leader BSA Raises Cautionary Notes on Codifying Use of SBOMs
Inside Cybersecurity, September 1, 2022
By Charlie Mitchell
Policymakers should slow the “rush to codify” a requirement for vendors to produce a Software Bill of Materials, according to BSA | The Software Alliance, which says SBOMs can be a useful tool for improving supply chain cybersecurity but won’t provide “a silver bullet” and still need more work before they are mandated in contracts.
“Too many policymakers incorrectly assume that 1) SBOMs and supporting materials are ready for use, if policymakers incentivize a vendor to provide one; 2) organizations, including US Government agencies, are prepared to effectively use SBOMs they receive from vendors; and 3) an SBOM would solve a majority, if not all, of today’s cybersecurity challenges,” BSA policy director Henry Young said in a blog post on Wednesday.
Original Posting: https://insidecybersecurity.com/share/13845
BSA 소개
소프트웨어 연합(Business Software Alliance, 이하 BSA)(www.bsa.org)은 각국 정부를 대상으로 세계 시장에서 전 세계 소프트웨어 업계를 대변하고 옹호하는 선도적 연합체입니다. 세계의 가장 혁신적 기업들이 회원사로 참여하며 경제에 활기를 불어 넣고 현대의 생활을 향상시키는 소프트웨어 솔루션을 만들어 내고 있습니다.