37 min

Developing and Using a Software Bill of Materials Framework Software Engineering Institute (SEI) Podcast Series

    • Technology

With the increasing complexity of software systems, the use of third-party components has become a widespread practice. Cyber disruptions, such as SolarWinds and Log4j, demonstrate the harm that can occur when organizations fail to manage third-party components in their software systems. In this podcast from the Carnegie Mellon University Software Engineering Institute, Carol Woody, principal researcher, and Michael Bandor, a senior software engineer, discuss a Software Bill of Materials (SBOMs) framework to help promote the use of SBOMs and establish a more comprehensive set of practices and processes that organizations can leverage as they build their programs. They also offer guidance for government agencies who are interested in incorporating SBOMs into their work. 

With the increasing complexity of software systems, the use of third-party components has become a widespread practice. Cyber disruptions, such as SolarWinds and Log4j, demonstrate the harm that can occur when organizations fail to manage third-party components in their software systems. In this podcast from the Carnegie Mellon University Software Engineering Institute, Carol Woody, principal researcher, and Michael Bandor, a senior software engineer, discuss a Software Bill of Materials (SBOMs) framework to help promote the use of SBOMs and establish a more comprehensive set of practices and processes that organizations can leverage as they build their programs. They also offer guidance for government agencies who are interested in incorporating SBOMs into their work. 

37 min

Top Podcasts In Technology

Darknet Diaries
Jack Rhysider
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
Johannes B. Ullrich
Apple Events (video)
Apple
Waveform: The MKBHD Podcast
Vox Media Podcast Network
The Gatekeepers
BBC Radio 4
TikTok
Catarina Vieira

More by Carnegie Mellon University

Software Engineering Institute (SEI) Podcast Series
Members of Technical Staff at the Software Engineering Institute
SEI Cyber Talks
Members of Technical Staff
SEI Shorts
Members of Technical Staff at the Software Engineering Institute
Make It Real
CMU Engineering
Software Engineering Institute (SEI) Webcast Series
SEI Members of Technical Staff