Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Cybersecurity

US, International Partners Publish Joint SBOM Guidance

by Kristen Smith
September 5, 2025
in Cybersecurity, DHS, Intelligence, News
Software development. NSA, CISA and global partners release SBOM guidance to improve software supply chain transparency.

NSA, CISA and global partners release SBOM guidance to improve software supply chain transparency, reduce risks, and support secure by design practices.

The National Security Agency and the Cybersecurity and Infrastructure Security Agency, in collaboration with cybersecurity agencies from more than a dozen countries, have released a joint guidance highlighting the importance of a software bill of materials. The publication, titled “A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity,” urges software producers, procurers and operators to adopt SBOM practices to strengthen visibility into supply chains and reduce risks, NSA said Wednesday.US, International Partners Publish Joint SBOM Guidance

Table of Contents

    • You might also like
    • Gen. Michael Guetlein: Golden Dome SBI Contenders Pass 1st Test
    • Presidential Memo Seeks to Expand Private Sector’s Role in Fighting Transnational Cybercrime
    • DEA Appoints Marc Kuzmicki as Deputy Chief of Intelligence
  • Enhancing Supply Chain Security
  • Driving SBOM Adoption

You might also like

Gen. Michael Guetlein: Golden Dome SBI Contenders Pass 1st Test

Presidential Memo Seeks to Expand Private Sector’s Role in Fighting Transnational Cybercrime

DEA Appoints Marc Kuzmicki as Deputy Chief of Intelligence

Potomac Officers Club will host the 2025 Intel Summit on Oct. 2. The event brings together senior leaders from across the intelligence community to explore emerging threats, technological advances and strategic opportunities shaping national security today. Register today to secure your spot and engage with decision-makers and thought leaders driving the future of the IC.

Enhancing Supply Chain Security

An SBOM is described as a “list of ingredients” for software, documenting the components, modules and libraries used to build an application. The guidance notes that most modern software is built on open-source and proprietary elements, making it critical to increase transparency around software dependencies. By generating, analyzing and sharing SBOMs, organizations can improve vulnerability management, supply chain risk assessments, license compliance and software development practices, the guidance stated.

The document highlights how SBOMs helped organizations respond more efficiently to the 2021 Log4j vulnerability. Those with SBOM data were able to identify affected components faster, while those without had to rely on time-consuming manual checks.

Driving SBOM Adoption

The guidance aligns SBOM implementation with the Secure by Design initiative, which encourages technology manufacturers to normalize the development of products that are secure out of the box. It calls for automation in SBOM generation and integration into existing security and asset management tools to ensure effectiveness and scalability.

“Widespread adoption of SBOM will strengthen security, reduce risk, and decrease costs,” the authoring agencies said. They also warned that diverging implementations could hinder progress, stressing the need for a coordinated international approach.

The effort was developed in partnership with the Australian Cyber Security Centre; the Canadian Centre for Cyber Security; the French Cybersecurity Agency; Germany’s Federal Office for Information Security; Japan’s Ministry of Economy, Trade and Industry; Singapore’s Cyber Security Agency; South Korea’s National Intelligence Service; and more than 10 other national authorities. The European Commission’s Directorate-General for Communications Networks, Content and Technology also contributed to the guidance.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

Trump Moves US Space Command HQ to Redstone Arsenal in Alabama

Next Post

NSF Seeks to Advance AI Research Through New Operations Center

Recommended For You

DSA Names Gibson Le Boeuf to Federal Advisory Board of Directors

by Sarah Sybert
February 8, 2021
John Somplasky Named

Data Systems Analysts (DSA) has appointed Gibson Le Boeuf to the company’s Federal Advisory Board of Directors (FAB). Le Boeuf currently serves as president of GGL International, where...

Read moreDetails

DoD Sends FY 2017 Supplemental Budget Plan for OMB Review

by Scott Nicholas
March 13, 2017
DoD Sends FY 2017 Supplemental Budget Plan for OMB Review

The Defense Department has submitted for review by the Office of Management and Budget a supplemental DoD budget request for fiscal 2017, Defense News reported Friday. Lt. Col. Eric Badger, a DoD...

Read moreDetails

Fortress Information Security Names John Cofrancesco VP of BD

by Sarah Sybert
June 24, 2024
Fortress

Fortress Information Security has appointed John Cofrancesco as vice president of Business Development. He will bring a demonstrated history of working across the Department of Defense (DoD), federal...

Read moreDetails

DISA to Decommission Enterprise Defense Collaboration Tool as Pentagon Adopts Office 365 Cloud Service

by Carol Collins
June 13, 2024
Joint All-Domain

The Defense Information Systems Agency (DISA) is set to terminate an enterprise collaboration tool on the Department of Defense's non-secure internet protocol router network starting Sept. 1st, in...

Read moreDetails

GAO: Commercial Product Development Principles Could Improve Execution of DOD’s Middle-Tier Acquisition Pathway

by Jamie Bennet
June 28, 2024
GAO: Commercial Product Development Principles Could Improve Execution of DOD's Middle-Tier Acquisition Pathway

The Department of Defense should follow the key principles of commercial product development to accelerate the invention and deployment of weapon systems under the middle tier of acquisitions...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • Department of War
  • DHS
  • Digital Assets
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Intelligence Community
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Technology
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!