Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Going Beyond SBOM Generation - Ensuring Quality, Compliance, and Real Security Readiness

OpenSSF via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore advanced SBOM (Software Bill of Materials) management in this 20-minute conference talk that addresses critical challenges beyond basic SBOM generation. Learn why the Log4Shell vulnerability highlighted the urgent need for comprehensive software component visibility and discover how low-quality, incomplete, or inaccurate SBOMs can pose significant security risks and compliance violations under regulations like the Cyber Resilience Act (CRA). Master techniques for assessing SBOM quality, enriching them with missing or corrected data, and ensuring compliance with standards including NTIA, BSI, CRA, and OCT. Gain hands-on experience with open source tools such as sbomqs for quality assessment, sbomasm for SBOM assembly and enrichment, parlay for dependency analysis, sbommv for SBOM validation, and Dependency-Track for comprehensive SBOM management. Transform raw SBOMs into actionable, deployment-ready documents suitable for SBOM management platforms, consumer sharing, and government reporting requirements.

Syllabus

Going Beyond SBOM Generation: Ensuring Quality, Compliance, and Real Security Re... Vivek Kumar Sahu

Taught by

OpenSSF

Reviews

Start your review of Going Beyond SBOM Generation - Ensuring Quality, Compliance, and Real Security Readiness

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.