Software Bill of Materials (SBOMs) are a key artefact in helping organisations to mange software risks particularly from the software supply chain. But if the SBOM is not correct, you could make the wrong decision in terms of mitigating the risks related to the software application. How are you ensuring that the SBOMs you are using are accurate and are a true representation of the software application? Share you thoughts and experiences in the comments below. #sbom #softwaretransparency #vulnerabilitymanagement #softwaresupplychain #aph10
APH10
IT Services and IT Consulting
Cheshire, England 610 followers
Helping businesses manage risk effectively using software bill of materials (SBOMs).
About us
Our mission is to be a leading source of expertise in Software Bill of Materials (SBOM). We help reduce your business risk from hidden software weaknesses using our SBOMLens product. Our team of experienced consultants, provide SBOM consultancy, training, and software risk assessments. We will help you understand your security needs and reduce your risk exposure by implementing appropriate security measures.
- Website
-
www.aph10.com
External link for APH10
- Industry
- IT Services and IT Consulting
- Company size
- 1 employee
- Headquarters
- Cheshire, England
- Type
- Privately Held
Locations
-
Primary
Cheshire, England, GB
Updates
-
Sharing for visibility
The Cyber Resilience Act comes into full play 1094 days from today, Wednesday Dec 11th. Today is the first day it's a law across Europe. In our webinar today, we introduced the CRA with these slides. In addition, we launched our training program. Find out more on https://sbomeurope.eu and contact us to help your organisation create awareness across all teams. #CRA #EUCRA #CYBERSECURITY #SBOM
-
Software with no defects. Sounds ideal but does it exist? No but regulators are expecting manufacturers of digital products to deliver and maintain their products free of vulnerabilities. So how can this be achieved? Share your thoughts in the comments below. #sbom #vulnerabilitymanagement #softwaresecurity #aph10
Unmasking the Invisible Threat: The Silent Struggle Against Digital Vulnerabilities
APH10 on LinkedIn
-
APH10 is pleased to support the development of a range of tools to help create and analyse Software Bill of Materials (SBOMs). We are passionate about building #opensource tools that empower developers to support and make software more secure and resilient. Our tools are already helping countless developers and organisations, and we are excited to continue this work. We have many more tools planned for the future. But to accelerate the development and release of these tools, we are seeking sponsors to support our efforts. With your backing, we can then dedicate more time to: 🎯 Feature Development: Implementing new features and improvements based on community feedback. 🎯 Performance Optimisation: Enhancing the speed and efficiency of my tools. 🎯 Bug Fixing: Addressing issues promptly. 🎯 Documentation: Creating more comprehensive and user-friendly documentation. 🎯 Community Engagement: Actively participating in the open-source community. If you share our passion for open-source software and want to help to contribute to the developer community, consider sponsoring our work. Your support will not only benefit your organisation by giving you the tools that you need but you will also help many developers and organisations to make software more secure. Let's work together to build a better future for open-source software! #opensource #sbom #sponsorship #funding #aph10
-
How are you sharing Software Bill of Materials (SBOMs) with your supply chain? The Transparency Exchange API (TEA) is a specification to making sharing of SBOMs and other artefacts to be as simple as possible. More details are available at https://tc54.org/tea/. This must be better than email! Share your thoughts in the comments below. #sbom #sharingsbom #softwaretransparency #softwaresupplychain #aph10
Balancing Compliance and Confidentiality with SBOMs
APH10 on LinkedIn
-
The first part of the journey will be to find out what is in your software. DM us for an initial chat to understand how we can help. #sbom #sbomeurope #cra #softwaretransparency #aph10
The EU Cyber Resilience Act has been published in the EU official journal yesterday and we now have an ID on it - 2024/2847. From December 10 (in Sweden celebrated as the Nobel day) you have three years to get your products - from IoT and embedded systems to server and desktop software all the way to mobile apps - CE marked and ready. That may sound like a lot of time, but if your products are far away from the state where they can be approved you may have to - allocate time to put products out of distribution, get a budget and a team to build a replacement - go through your code and make sure it's secure - verify your software supply chain - build systems, CI/CD, tests - do due diligence with all your components and upstream suppliers - in some cases get certification by a third party. Doing all of that will take time. Better not wait. Are you ready? The clock is ticking now. If you need to get an overview for your team and understand where to start, please don't hesitate to contact me for seminars and trainings. The SBOM Europe team is ready to assist. SBOM EUROPE has a lot of training material and me and Anthony H. are working on additional material. #CRA #EUCRA #SBOM #CEMARK
-
Software Bill of Materials (SBOMs) are going to be required to support the CRA. Para 77 of the https://lnkd.in/e8rCmtru In order to facilitate vulnerability analysis, manufacturers should identify and document components contained in the products with digital elements, including by drawing up an SBOM. An SBOM can provide those who manufacture, purchase, and operate software with information that enhances their understanding of the supply chain, which has multiple benefits, in particular it helps manufacturers and users to track known newly emerged vulnerabilities and cybersecurity risks. It is of particular importance that manufacturers ensure that their products with digital elements do not contain vulnerable components developed by third parties. Manufacturers should not be obliged to make the SBOM public. Want to know more? DM me to arrange for an initial discussion on how APH10 can help you on your journey. #sbom #eucra #sbomeurope #softwaretransparency
Cofounder of Tauri Apps, CEO of CrabNebula, Author of "Manufacturing European Software", DIF Labs Co-chair, European Regulatory Expert, Public Speaker, Coach.
Brussels, November 20th, 2024. The Cyber Resilience Act (CRA) has been published in the Official Journal of the European Union. This means that the CRA is on track to enter force. To celebrate this milestone, I am sharing with you a reading from my book "Manufacturing European Software" in which I help product people of all shapes understand this landmark legislation. Action Items: You can buy my book online: https://lnkd.in/dSDimpCa You can hire CrabNebula to give you support: https://lnkd.in/dJ4GSRKV You can read the EU Journal: https://lnkd.in/d_hnWM5c #cybersecurity #europe #cyberresilienceact #regtech #software #product
-
How are using Software Bill of Materials (SBOMs) to support your software development lifecycle? Share your thoughts in the comments below. #cybersecurity #applicationsecurity #softwaresecurity #OWASP #SAMM #SBOM #vulnerabilitymanagement #riskmanagement
SBOMs supporting a secure SDLC
APH10 on LinkedIn
-
How will you respond to the next software vulnerability? Share your thoughts and comments in the comments below. #sbom #softwaresupplychain #softwaretransparency #aph10
If only I had a SBOM
APH10 on LinkedIn
-
APH10 reposted this
Join us on our first webinar tomorrow! We'll discuss SBOMs, hot topics and how they fit into the coming Cyber Resilience Act. #SBOM #CYCLONEDX #SPDX #CYBERSECURITY #EUCRA #CRA
This content isn’t available here
Access this content and more in the LinkedIn app