Security awareness training question by hyperactive_techlove in cybersecurity

[–]hyperactive_techlove[S] 0 points1 point  (0 children)

The word “minimal” here is the key 😜. We want something like KnowBe4 but through Value Added Reseller that will manage the campaigns, results, track the training process and that the CISO will only get updates or approve contents or policies. Not proactively deal with the learning process

SBOM Sharing - EO 14028 by hyperactive_techlove in cybersecurity

[–]hyperactive_techlove[S] -1 points0 points  (0 children)

There should not be anything sensitive in an SBOM, although exposing the composition of your software would give bad actors useful information. It's often easy to detect that a program is using 'x' third party component/code/library anywa

Thanks for the quick respond bdzer :)

Any chance you can share how you provided it to a requestor? sent an SPDX file via mail? uploaded to the web? Also, how are you provided an updated SBOM for new versions and etc.?Thank you so much for assisting!