[spdx] Completely new to this - link to SBOM data?

2023-08-24 Thread Mark P. Farrell via lists.spdx.org
I'm very new to SBOM - understanding and this website - and arrived here after a redirect URL from Microsoft - Generating Software Bills of Materials (SBOMs) with SPDX at Microsoft - Engineering@Microsoft (

Re: [spdx] Completely new to this - link to SBOM data?

2023-08-24 Thread Brian Fox
Hi Mark, if you happen to be into podcasts, I highly recommend this one. I've been involved in SBOMs and related tech for longer than the term "SBOM" and I still find new information here. The early episodes do a fantastic job at covering a lot of the space from many angles.

Re: [spdx] Completely new to this - link to SBOM data?

2023-08-24 Thread Dick Brooks
Mark, You may want to reach out to the CISA ICT_SCRM Task Force for help. They have lots of materials available to help government entities with regard to SBOM, vulnerability management and implementation guidance.

Re: [spdx] Completely new to this - link to SBOM data?

2023-08-24 Thread Ria Schalnat (HPE)
I’ve been doing this for a while but I wasn’t aware of this podcast and I LOVE them! Great for multi-tasking! Thanks for sharing this, Brian! Best regards, Ria Farrell Schalnat (she/her) Open Source Program Office [Text Description automatically

Re: [spdx] Completely new to this - link to SBOM data?

2023-08-24 Thread Mark P. Farrell via lists.spdx.org
Thanks for sharing the info. Greatly appreciate it. Cordially, Mark P. Farrell, HQ Solutions Architect IV | 3055 Crescentville Rd, Rm 226 | Cincinnati, OH 45235-9998 Work ph: 513-733-7266; Cell: 513-260-2853 From: spdx@lists.spdx.org On Behalf Of Dick Brooks via lists.spdx.org Sent: