Unlocking secrets in software supply chains: Sonatype’s new SBOM management approach
More than mere buzzwords, terms such as software lifecycle and bill of materials are crucial to understanding, curating and optimizing the enterprise software supply chain. To that end, the recently unveiled SBOM Manager by Sonatype Inc. aims to streamline the end-to-end management of an organization’s software bill of materials.
“It’s a really exciting introduction to the market to have a purpose-built solution to help you manage, ingest, create, audit, and get that value that you want out of your SBOMs,” said Tyler Warden (pictured, left), senior vice president of product at Sonatype. “There’s a lot of value, there’s a lot of acceleration and there’s a lot of optimization that can come from managing those effectively.”
Warden and Brian Fox (right), co-founder and chief technology officer of Sonatype and OpenSSF governing board member, spoke with theCUBE Research analysts Rob Strechay and Dustin Kirkland at KubeCon + CloudNativeCon Europe, during an exclusive broadcast on theCUBE, SiliconANGLE Media’s livestreaming studio. They discussed the company’s effort to help enterprises ensure the integrity and security of software components. (* Disclosure below.)
Digging deeper into the SBOM Manager
Organizations today face a myriad of software supply chain pain points, from grappling with SBOM consumption to staying on top of security and compliance concerns. Sonatype’s SBOM manager streamlines the company-wide process of extracting value from their software components, Fox added.
“It’s been interesting that, even within customers who have our traditional platform, it’s helping with the software they’re building, and there are other groups inside those same companies now who are focused on the distribution part … and also the procurement part,” Fox said. “We’re seeing that evolution of the market expanding and that’s why there’s that real need for purpose-built solutions with extra capabilities to help manage all of that.”
Another key pain point is the evolving landscape of regulations and compliance. With agencies such as the Securities and Exchange Commission taking a proactive stance on software security, organizations face mounting pressure to adhere to regulatory standards. The SBOM Manager helps organizations meet these obligations by providing transparency and accountability in the software supply chain, Fox added.
Here’s the complete video interview, part of SiliconANGLE’s and theCUBE Research’s coverage of KubeCon + CloudNativeCon Europe:
(* Disclosure: Sonatype Inc. sponsored this segment of theCUBE. Neither Sonatype nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)
Photo: SiliconANGLE
A message from John Furrier, co-founder of SiliconANGLE:
Your vote of support is important to us and it helps us keep the content FREE.
One click below supports our mission to provide free, deep, and relevant content.
Join our community on YouTube
Join the community that includes more than 15,000 #CubeAlumni experts, including Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger, and many more luminaries and experts.
THANK YOU