SBOM: Screw it, We’ll Do it Live!

ShmooCon XVI - 2020

Presented by: Audie, Joshua Corman
Date: Saturday February 01, 2020
Time: 16:00 - 16:20
Location: Belay It!

The concept of Software Bill of Materials (SBOM) isn’t that groundbreaking–we should know as much about the software that literally controls our lives as we do about the ingredients in a Twinkie. Yet changing the world can be hard. We set out not only to encourage others to be more transparent about their software supply chain but to show that it was possible and achievable, as well.

This talk will give an overview of the idea of SBOMs, their potential in the marketplace, and highlight how they can have a huge impact on the security of the critical healthcare sector. We’ll review why it’s needed, why there’s reluctance, and why it’s easier than you think. While the stories we share will be gleaned from the notoriously vulnerable healthcare sector, the lessons will be useful for anyone responsible for making, buying, or operating software and has ever wondered what was under the hood.

We need transparency across the entire software supply chain and for the first time, have a vision of what it can look like and some insight on how to get there. Now we need your help!

Audie

Audie spent the last 15 years in healthcare technology, working alongside clinicians. Through her experiences in hospital environments, she became increasingly concerned with how security lapses can impact patient safety. Her personal commitment and advocacy recently intersected with her professional life, allowing her to focus on the security of medical devices.

Joshua Corman

Josh Corman (@joshcorman)


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats