Remove topic supply-chain
article thumbnail

NIST Cybersecurity Framework 2.0

Schneier on Security

New adopters can learn from other users’ successes and select their topic of interest from a new set of implementation examples and quick-start guides designed for specific types of users, such as small businesses, enterprise risk managers, and organizations seeking to secure their supply chains. This is a big deal.

article thumbnail

What’s hot at RSAC 2024: 8 SSCS talks you don’t want to miss

Security Boulevard

In the span of just a few years, software supply chain security has evolved from being a niche security topic to a top priority for development organizations, security practitioners and CISOs alike. The post What’s hot at RSAC 2024: 8 SSCS talks you don’t want to miss appeared first on Security Boulevard.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Black Hat USA 2021 and DEF CON 29: What to expect from the security events

Tech Republic Security

Key topics analysts anticipate for these security conferences include supply chain attacks, Microsoft Exchange vulnerabilities and the iPhone/Pegasus spyware incident.

Spyware 180
article thumbnail

Why SCA is Critical for Securing the Software Supply Chain

Veracode Security

Weaknesses within software supply chains create a foothold for exploitation from cyberattacks. The problem is so significant that even the White House released an Executive Order that speaks directly on this topic. Now, you may be wondering what your organization can do to mitigate this risk.

article thumbnail

IDC Analyst Report: The Open Source Blind Spot Putting Businesses at Risk

This IDC report addresses several key topics: Risks involved with using open-source software (OSS) How to manage these risks, including OSS license compliance Business benefits to the organization beyond risk mitigation Software supply chain best practices Key trends in industry and government regulation

article thumbnail

Supply Chain Security: Secrets and Modern Security Frameworks (Part III)

Security Boulevard

In this final part, we'll discuss more software supply chain security frameworks and the critical role of secrets detection in them. We'll explore the NIST SSDF, SLSA, and OSC&R frameworks and how they cover the topic of secrets in software supply chain security.

article thumbnail

Breaking down CIS's new software supply chain security guidance

CSO Magazine

Securing the software supply chain continues to be one of the most discussed topics currently among IT and cybersecurity leaders. A study by In-Q-Tel researchers shows a rapid rise in software supply chain attacks starting around 2016, going from almost none in 2015 to about 1,500 in 2020.

Software 118