Inside Cybersecurity

December 14, 2024

Daily News

NIST updates software supply chain guidance required under Biden cyber executive order

By Sara Friedman / November 4, 2024

The National Institute of Standards and Technology has made updates to its foundational supply chain risk management publication, including changes to software supply chain guidance required under the 2021 cyber executive order.

“Following the initial publication of this guidance, OMB released M-22-18, which outlines additional guidance for federal departments and agencies seeking to obtain attestations of secure software development practices from their third-party suppliers. The section on Attesting to Conformity With Secure Software Development Practices has been revised to reflect...


Log in to access this content.


Not a subscriber? Sign up for 30 days free access to exclusive news and analysis on cybersecurity regulations and more.