Software Supply Chain Security: Securing the End-to-end Supply Chain for Software, Firmware, and Hardware

Software Supply Chain Security: Securing the End-to-end Supply Chain for Software, Firmware, and Hardware
by: Cassie Crossley(Author),Emily Heath(Foreword)
Publisher: Oreilly & Associates Inc
Publication Date: 12 Mar. 2024
Language: English
Print Length: 219 pages
ISBN-10: 1098133706
ISBN-13: 9781098133702


Book Description
Trillions of lines of code help us in our lives, companies, and organizations. But just a single software cybersecurity vulnerability can stop entire companies from doing business and cause billions of dollars in revenue loss and business recovery. Securing the creation and deployment of software, also known as software supply chain security, goes well beyond the software development process. This practical book gives you a comprehensive look at security risks and identifies the practical controls you need to incorporate into your end-to-end software supply chain. Author Cassie Crossley demonstrates how and why everyone involved in the supply chain needs to participate if your organization is to improve the security posture of its software, firmware, and hardware. With this book, you'll learn how to: Pinpoint the cybersecurity risks in each part of your organization's software supply chainIdentify the roles that participate in the supply chain—including IT, development, operations, manufacturing, and procurementDesign initiatives and controls for each part of the supply chain using existing frameworks and referencesImplement secure development lifecycle, source code security, software build management, and software transparency practicesEvaluate third-party risk in your supply chain


About the Author


About the Author Cassie Crossley is an experienced cybersecurity technology executive in Information Technology and Product Development. She has many years of business and technical leadership experience in secure software supply chain, cybersecurity, product/application security, software/firmware development, program management, and data privacy. Cassie has designed frameworks and operating models for end-to-end security in software development lifecycles, third-party risk management, cybersecurity governance, and cybersecurity initiatives. She is a member of the CISA SBOM working groups and presents frequently on the topic of SBOMs and Software Supply Chain Security. Cassie has held positions at Schneider Electric, Ceridian, Hewlett-Packard, McAfee, Lotus, and IBM. She has an M.B.A. from California State University, Fresno, and her Bachelor of Science degree in Technical and Professional Communication with a specialization in Computer Science from Southern Polytechnic State University (now consolidated into Kennesaw State University).

资源下载资源下载价格10立即购买
1111

未经允许不得转载:电子书百科大全 » Software Supply Chain Security: Securing the End-to-end Supply Chain for Software, Firmware, and Hardware

评论 0

评论前必须登录!

登陆 注册