IT Brief UK - Technology news for CIOs & IT decision-makers
Story image

CAST launches automated SBOM management tool for compliance

Tue, 6th Aug 2024

CAST has announced the launch of its new product, CAST SBOM Manager, a freemium solution intended for product owners, release managers, and compliance specialists. This new tool aims to automate and simplify the creation and handling of Software Bill of Materials (SBOMs). Such documentation is increasingly being mandated by North American and European governments from their software providers.

With supply chains under escalating threat levels, maintaining precise SBOMs has emerged as a crucial component for organisations that supply software. This is particularly relevant for regulated device manufacturers with embedded software, government vendors, and independent software vendors. CAST SBOM Manager endeavours to support software product owners, IP compliance managers, and other stakeholders who handle detailed SBOMs, transitioning the process from a traditionally manual and error-prone task to a more efficient and streamlined operation.

CAST Vice President Greg Rivera highlights the product's capabilities: "The product leverages advanced software intelligence to provide an automated, customisable, and user-friendly approach to SBOM management. This product is intended for organisations that need to generate and maintain accurate SBOMs without the complexity and high costs associated with traditional solutions."

The operational use of CAST SBOM Manager begins with users directing the software at their code repository or importing an existing SBOM file for an automatic scan and analysis. Subsequently, users can examine SBOM details, which include automatically created inventories of components, vulnerabilities, and licenses. The product also allows for the export of SBOMs in various formats, such as Excel, Word, PPT, and CycloneDX.

Key capabilities of CAST SBOM Manager extend to:

  • Automated SBOM creation: Automate the analysis of source code or import existing SBOM files for swift evaluation.
  • Instant SBOM insights: Provides a dashboard view with summary statistics and insights, including component categories, vulnerabilities, licenses, and more.
  • Component management: Retrieve and edit component details, add custom metadata, and catalogue components for reuse across other SBOMs.
  • License management: View and define custom licenses and manage open-source software (OSS) license risks, obsolescence, and copyrights.
  • Multi-format sharing: Export SBOMs in various formats such as Excel, Word, and CycloneDX and import SBOMs from multiple formats, customising them for different audiences.

CAST SBOM Manager offers a diverse and automated solution to the complex task of SBOM management, addressing the needs of various stakeholders who require precise and accessible software component documentation.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X