OWASP BeNeLux days is an annual conference organised by OWASP Chapters. This year, Olle E. Johansson will participate with a conference talk and a half day training:
Conference: Are you ready to be regulated? How the EU Cyber Resilience Act will change the software industry forever by Olle E. Johansson
The cost for the cybersecurity incidents all over the EU is too high. The EU believes that by regulating the cyber security of software, the total cost will go down as we get a more secure infrastructure in the home, in the office and everywhere we have networked systems. The regulation affects everything from embedded systems to servers, laptops and mobile apps. Development teams will have to focus on cybersecurity, companies will get responsibility for protecting their users and the software has to be secure by design from installation and during the lifetime of the product.
This will not only affect how we develop software, but also affects the business model for software. Olle introduces the new regulation – how it affects both commercial vendors and Open Source projects.
Training: The SBOM lifestyle – Managing your software in the light of the new regulation by Olle E. Johansson
The Software Bill of Materials is at the heart of software quality. It’s not only used for license compliance, but also vulnerability management and much more. Many international regulations now point to the SBOM as a critical piece of the puzzle. Attend this training with Olle E. Johansson, active in the CycloneDX project, to get an insight into SBOMs and how they are used in the software quality management process. Olle is an experienced teacher, storyteller and speaker at many conferences. He co-founded SBOMeurope.eu – a european forum for software transparency with SBOMs.
What you’ll learn:
- Open Source SBOM tools
- Introduction to the SBOM, Software bill of materials
- SBOM and Open Source license compliance
- CISA SBOM minimal requirements
- SBOM in the Software Component Verification Standard (OWASP SCVS)
- Creating the SBOM with scanners
- The good, the bad and the ugly – where SBOMs fail
- Vulnerability handling automation with SBOMs
- SBOM and the EU Cyber Resilience Act