DefSec Wire
  • Home
  • Defense
    • Army
    • Marine Corps
    • Navy
    • Air Force
    • Space Force
  • Air
  • Land
  • Sea
  • Space
  • Cyber
  • Industry
  • Security
No Result
View All Result
  • United States flag United States
  • Australia flag Australia
  • United Kingdom flag United Kingdom
  • Europe flag Europe
  • New Zealand flag New Zealand
  • Canada flag Canada
DefSec Wire
  • Home
  • Defense
    • Army
    • Marine Corps
    • Navy
    • Air Force
    • Space Force
  • Air
  • Land
  • Sea
  • Space
  • Cyber
  • Industry
  • Security
No Result
View All Result
DefSec Wire
No Result
View All Result
Home Security

NSA, CISA and others unveil shared vision for SBOMs

Lila Carvello by Lila Carvello
October 12 2025
in Security
0
172
SHARES
2.5k
VIEWS
Share on LinkedInFacebookTwitter

The National Security Agency has joined the Cybersecurity and Infrastructure Security Agency and international partners to publish joint guidance promoting a unified approach to software bills of materials, aiming to strengthen software supply-chain security and streamline adoption across industry. The Cybersecurity Information Sheet, titled “A Shared Vision of Software Bill of Materials (SBOM) for Cybersecurity,” encourages software makers, buyers, and operators to build SBOM generation, analysis, and sharing into existing security programs.

SBOMs provide an inventory of a product’s components and dependencies, giving organizations clearer visibility into what they run and rely on. The new guidance highlights how improved component transparency can help identify and mitigate supply-chain risks, and it offers risk-management practices and use cases for reducing exposure to known vulnerabilities. The document also ties SBOM adoption to CISA’s Secure by Design initiative, which promotes security features built into products by default.

You Might Also Like

NSA and allies warn of Russian state-backed cyber campaign targeting Western logistics and tech firms

NSA’s AISC issues joint guidance on AI data security risks and best practices

The authoring agencies call for alignment on a common vision to avoid fragmented implementations that add cost and complexity and could impede broad, sustainable use. The report arrives amid continued pressure on vendors and critical-infrastructure operators to manage software supply-chain risk more systematically following high-profile incidents and the increased focus from governments and regulators on secure development practices.

The report is available at: https://media.defense.gov/2025/Sep/03/2003791481/-1/-1/0/JOINT-GUIDANCE-A-SHARED-VISION-OF-SOFTWARE-BILL-OF-MATERIALS-FOR-CYBERSECURITY.PDF. Additional resources can be found at NSA’s cybersecurity guidance library (https://www.nsa.gov/Press-Room/Cybersecurity-Advisories-Guidance/) and CISA’s Secure by Design page (https://www.cisa.gov/securebydesign).

Tags: Cybersecurity and Infrastructure Security AgencyNational Security AgencyShared Vision of Software Bill of Materials
Previous Post

NSA launches 12th annual Codebreaker Challenge for 2025

Next Post

NSA and allies issue guidance to counter Chinese state‑sponsored hackers targeting critical infrastructure

Lila Carvello

Lila Carvello

Lila Carvello is a journalist reporting on security and intelligence in the United States and abroad. She focuses on global defence, espionage and national security developments shaping international relations.

Related News

NSA and allies warn of Russian state-backed cyber campaign targeting Western logistics and tech firms

by Lila Carvello
October 12 2025
0

The National Security Agency and a group of U.S. and foreign partners issued a cybersecurity advisory warning that Russia’s military...

NSA’s AISC issues joint guidance on AI data security risks and best practices

by Lila Carvello
October 12 2025
0

Fort Meade, Md. — The National Security Agency’s Artificial Intelligence Security Center has issued a joint cybersecurity information sheet aimed...

NSA and Australia’s ACSC, with partner agencies, issue three cybersecurity information sheets on SIEM and SOAR

by Lila Carvello
October 12 2025
0

FORT MEADE, Md. — The National Security Agency has teamed with Australia’s cyber authority and a broad coalition of allied...

NSA and CISA release guidance urging memory-safe languages to strengthen software security

by Lila Carvello
October 12 2025
0

The National Security Agency and the Cybersecurity and Infrastructure Security Agency are urging software makers to adopt memory-safe programming languages,...

Next Post

NSA and allies issue guidance to counter Chinese state‑sponsored hackers targeting critical infrastructure

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Trending News

Army broadens eligibility for combat patches

Army broadens eligibility for combat patches

October 1 2025

DCSA director touts DOD, industry, academia and government partnership with America’s Gatekeeper to protect the nation’s trusted workforce, spaces and secrets

October 12 2025
Army cuts training mandates to boost combat readiness

Army cuts training mandates to boost combat readiness

October 1 2025

About

DefSec Wire reports on the news that matters in the Defence, Security and Intelligence industries across the United States and the world.

Our Network

  • DefSec Wire
  • DefSec Wire Australia
  • DefSec Wire UK
  • DefSec Wire Europe
  • DefSec Wire New Zealand
  • DefSec Wire Canada

Categories

  • Air Force
  • Army
  • Defense
  • Marine Corps
  • Navy
  • Security
  • Space Force
  • Uncategorized

Tags

Air Air Combat Command Air Force AN/SPY-6(V)1 Air and Missile Defense Radar Army B-21 Carrier Strike Groups Chance Saltzman Congress Cybersecurity and Infrastructure Security Agency David Allvin Defense Counterintelligence and Security Agency Defense Intelligence Agency Department-Level Exercise Department of Defense Department of the Air Force Eric M. Smith FBI Flashpoint Fleet Marine Force Force Design GEOINT Indo-Pacific John Bentivegna Kevin Schneider Marine Corps National Background Investigation Services National Geospatial-Intelligence Agency National Security Agency National Security Systems Navy Off Duty Pacific Air Forces Pentagon Space and Cyber Conference Space Delta Space Training and Readiness Command Special Forces STARCOM Submarine Troy Meink U.S. Air Force U.S. Army U.S. Fleet Forces Command U.S. Navy

Recent Posts

  • NSA and allies warn of Russian state-backed cyber campaign targeting Western logistics and tech firms
  • NSA’s AISC issues joint guidance on AI data security risks and best practices
  • NSA and Australia’s ACSC, with partner agencies, issue three cybersecurity information sheets on SIEM and SOAR
  • NSA and CISA release guidance urging memory-safe languages to strengthen software security
  • NSA, CISA, FBI and DC3 warn Iranian hackers may target vulnerable U.S. networks and high-value entities
  • About Us
  • Terms of Service
  • Privacy Policy
  • Advertise
  • Contact

© 2025 DefSec Wire – part of the DefSec Wire Group.

No Result
View All Result
  • Home
  • Defense
    • Army
    • Marine Corps
    • Navy
    • Air Force
    • Space Force
  • Air
  • Land
  • Sea
  • Space
  • Cyber
  • Industry
  • Security

© 2025 DefSec Wire – part of the DefSec Wire Group.