DiscoverSoftware Engineering Institute (SEI) Podcast SeriesGetting Your Software Supply Chain In Tune with SBOM Harmonization
Getting Your Software Supply Chain In Tune with SBOM Harmonization

Getting Your Software Supply Chain In Tune with SBOM Harmonization

Update: 2025-10-23
Share

Description

Software bills of materials or SBOMs are critical to software security and supply chain risk management. Ideally, regardless of the SBOM tool, the output should be consistent for a given piece of software. But that is not always the case. The divergence of results can undermine confidence in software quality and security. In our latest podcast from the Carnegie Mellon University Software Engineering Institute (SEI), Jessie Jamieson, a senior cyber risk engineer in the SEI's CERT Division, sits down with Matt technical director of Risk and Resilience in CERT, to talk about how to achieve more accuracy in SBOMs and present and future SEI research on this front.  

Comments 
In Channel
Deploying on the Edge

Deploying on the Edge

2025-05-2801:01:02

loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Getting Your Software Supply Chain In Tune with SBOM Harmonization

Getting Your Software Supply Chain In Tune with SBOM Harmonization

Jessie Jamieson and Matthew Butkovic