logo

Definitive timeline: Federal guidance on software supply chain security

ID: 5c75f279-772c-5098-9a6e-33a3a1853270

STIX ID: report--5c75f279-772c-5098-9a6e-33a3a1853270

Feed Name: ReversingLabs Blog

Date Published: 2023-12-24

Date Updated: 2026-04-29

Author: [email protected] (Carolynn van Arsdale)

...
...

This report provides a concise timeline of U.S. federal actions to strengthen software supply chain security from 2021–2023, highlighting executive orders, SBOM requirements, NIST’s SSDF, ESF best-practice guides, OMB attestation mandates, CISA’s Secure by Design initiative, CI/CD defense guidance, SEC incident disclosure rules, FDA medical device cybersecurity guidance, CISA’s Software Identification Ecosystem work, and recommended practices for SBOM consumption. It contextualizes these efforts against rising software supply chain threats and underscores the shift toward producer accountability and standardized risk management across government and industry.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.