Why you need an SBOM

news

Comply with the Executive Order, and Stay Ahead

In September 2022, the White House Office of Management and Budget (OMB) released memo M-22-18, instructing federal agencies to adopt guidelines developed by NIST in line with Executive Order 14028 on Improving the Nation’s Cybersecurity. The memo clarifies that SBOMs (Software Bill of Materials) stand as the favored approach to showcase compliance with NIST’s secure software development standards. Furthermore, an increasing number of private sector companies are likely to mandate them.

Learn More About SBOMs

title

Deepbits White Paper — Evaluating and Benchmarking SBOM Generators: A Systematic Approach

Read the White Paper
title

Executive Order on Improving the Nation’s Cybersecurity

Read Article
title

SBOM FAQ

Read Article
title

How Do You Upgrade OpenSSL in Your Software Stack? — SBOM and OBOM assisted software upgrade

Read Article
title

Building SBOMs for COTS Android Apps

Read Article
title

How Deepbits Fulfills the Latest FDA Cybersecurity Guidelines for Medical Devices

Read Article

What Is an SBOM? A List of Ingredients

A Software Bill of Materials (SBOM) is a formal, machine-readable inventory of software components and dependencies that includes information about those components and their hierarchical relationships. It can be shared and exchanged automatically among stakeholders (e.g., software vendors, consumers) to enhance software development, software supply chain management, vulnerability management, asset management, and procurement. This results in reduced costs, security risks, license risks, and compliance risks.

news

End-to-End SBOM Management

title

Generate

Leveraging AI, we generate highly accurate SBOMs for your software assets, including source code repositories, memory dumps, binary files, Java APK, and more, irrespective of the availability of source code.
title

Distribute

Securely and selectively share SBOMs and their risk assessment results with your customers and third parties through URLs or emails. Ensure timely communication of threats to your customers and third parties.
title

Monitor

We continuously track and analyze SBOMs to identify potential vulnerabilities, security risks, and changes within the software supply chain. This ensures timely awareness of emerging threats and enables swift corrective actions to uphold software security and compliance standards.

Pricing Plan

FreeBasic (Monthly)Pro (Monthly)Premium
Features$0$200$1,000Contact Us
# of Assets101001000TBD
SBOM Registry1050500TBD
# SBOM subscriberunlimitedunlimitedunlimitedunlimited
Continuous MonitorYYYY
Smart QueryYYYY
Integrations (webhook, jira, github..)YYYY
Vulnerability AssessmentYYYY
Malware DetectionYYYY
License CheckYYYY
On-premise deploymentNNNY
Tech Support (business days)N531

Add-on Service

Red Team: Software Supply Chain Security Assessment
Initial assessment$20K
Routine assessment$5K