Re: Congress is considering removing the SBOM provision from the NDAA Bill now before Congress


Eliot Lear
 

Why?  GSA is already specifying SBOMs.  And is the list to encourage congressional lobbying?

On 16.12.22 20:38, Dick Brooks wrote:

FYI:

 

Please get the word out to restore the SBOM provision in the NDAA.

 

“I don't see why any member of Congress would want to hamstring their own cybersecurity professionals from monitoring and mitigating software vulnerabilities that are detectable using an SBOM. Members of Congress please help your own cybersecurity professionals that work so hard to keep you and your districts safe from hacker attacks. Restore the SBOM provision in the NDAA.”

 

https://energycentral.com/c/pip/industry-objections-spur-changes-cybersecurity-provisions-defense-bill%C2%A0%C2%A0

 

 

Thanks,

 

Dick Brooks

 

Active Member of the CISA Critical Manufacturing Sector,

Sector Coordinating Council – A Public-Private Partnership

 

Never trust software, always verify and report!

http://www.reliableenergyanalytics.com

Email: dick@...

Tel: +1 978-696-1788

 

Join {spdx@lists.spdx.org to automatically receive all group messages.