CBOM: Automating Zero-Defect Compliance at Scale



Register for a Free Lunch & Learn Webinar on CBOM: Automating Zero-Defect Compliance at Scale.

 

In today’s complex digital technology landscape there is an ever-evolving threat that requires securing and protecting critical infrastructure, information, and assets.  Several initiatives are under way throughout the Government to support the presidential Executive Order on Improving the Nation’s Cybersecurity which includes implementing a zero-trust framework and providing greater visibility into application vulnerabilities through the concept of a Software Bill of Materials (SBOM).  It is time to apply the same principles to address a more comprehensive vision for automating cyber compliance - introducing “CBOM” or Compliance Bill of Materials.  

 

Traditionally, enterprises have used generic scanning tools to monitor their environments for compliance.  These tools produce “generalized” results that may or may not need attention. Further filtering and prioritization of results are necessary to provide actionable value.  These “implicit” results lead to significant wasted time and energy.  

 

The concept of a CBOM is a simple and elegant way to provide superior cyber compliance results using considerably less effort.  The CBOM concept would automate the “trapping” of cyber controls/POAMS, ports/protocols, certs, applications, etc. documented in the RMF/ATO process as compliance code.  

 

In this webinar you will learn how to:

  • Reduce false negatives and provide a compliant production environment that continuously matches RMF/ATO documentation.
  • Reduce compliance effort and expense.
  • Shift from scanning & remediating generic implicit to explicit compliance content.

CBOM makes innovation and collaboration between software and policy an automated reality.

 

As thanks for attending this session, enjoy lunch on SteelCloud! Lunch & Learn Session attendees will get an Uber Eats gift card after the session ends.

Speaker and Presenter Information

Don Maclean, Chief Cyber Security Technologist for TD Synnex Public Sector

 

Brian Hajost, Founder and COO for SteelCloud

Brian Hajost is the founder and COO of SteelCloud, a company that develops technology for automated remediation of endpoints to the DISA STIGs and the CIS Security Benchmarks. Mr. Hajost has transformed SteelCloud into a recognized pioneer in delivering new technologies that allow government customers and commercial enterprises to effectively meet the compliance mandates of RMF, DIACAP, NIST 800-53, NIST 800-171, and IRS Pub 1075. Brian’s technical career has spanned over thirty years, primarily with leading-edge technologies in regulated industries. He holds three patents in IT security and two patents in mobile security. Mr. Hajost is an active contributor to the DC Chapter of the Armed Forces Communications and Electronics Association (AFCEA), currently serving as VP and a board member. Brian is also a member of AFCEA International’s Technology Committee.

Relevant Government Agencies

DOD & Military, Federal Government, Fed Civ, FSI


This event has no exhibitor/sponsor opportunities


When
Thu, Nov 17, 2022, 12:00pm - 1:00pm


Cost
Complimentary:    $ 0.00


Website
Click here to visit event website


Organizer
TD Synnex Public Sector


Contact Event Organizer



Return to search results