software supply chain
Let’s Coordinate Before We Raise Another Billion Dollars
Alan Shimel | | cybersecurity coordination, cybersecurity funding, frontier AI, Jen Easterly, Open Source Security, open source sustainability, software supply chain, tech governance
The conversation around open source cybersecurity is rapidly shifting from raising awareness to managing an explosion of fragmented solutions. Jen Easterly’s proposal for a billion-dollar public-interest fund highlights the undeniable reality that ...
Security Boulevard
How to Build a Software Supply Chain Security Playbook
Aaron Linskens | | AI, Analyst Report, delivery pipeline, Gartner, Report, secure software supply chain, software supply chain
In the first post in this series, we looked at why software supply chain risk has become a growing security challenge. Modern applications depend on sprawling ecosystems of open source packages, automated ...
Why Developer Experience Is the Foundation of DevSecOps Success
Aaron Linskens | | AI, Analyst Report, Application Security, Artificial Intelligence, developer, developers, DevSecOps, Gartner, Report, software supply chain
Application security is evolving. But for many organizations, execution still lags behind intent ...
Vibe Coding vs. SBOM: One Builds Fast. The Other Tells You What You Just Built
Mark Rasch | | AI Generated Code, CISA 2025 guidance, CycloneDX, EU Cyber Resilience Act, SBOM, Simon Willison, software supply chain, SPDX, Vibe Coding
Explore the clash between "Vibe Coding" and modern software governance. Learn why high-speed AI generation demands stronger SBOM transparency and accountability in 2026 ...
Security Boulevard
Why Software Supply Chain Security Requires a New Playbook
Aaron Linskens | | Analyst Report, CI-CD, Gartner, Report, secure software supply chain, Software Composition Analysis, software supply chain
Software is being built faster than ever, but application security has not kept up ...
The Hidden Security Risks in Open-Source Dependencies Nobody Talks About
Oluwakorede Akinsete | | Application Security, Dependency Management, DevSecOps, Open Source Security, software supply chain, Vulnerabilities
Open-source dependencies introduce hidden risks, from transitive vulnerabilities to supply chain attacks. Learn how to reduce exposure ...
Security Boulevard
RSAC 2026 Innovation Sandbox | Crash Override: From Passive Scanning to Active Traceability, Reshaping the Software Supply Chain Security Foundation
Industry Macro Background and the Software Supply Chain Crisis By 2026, the deepening of global digital transformation, coupled with the proliferation of Generative AI and large models, is reshaping software development. The ...
The White House Got the Cyber Strategy Right — By Knowing What Not to Do
Jack Poller | | AI Governance, AI Security, compliance theater, critical infrastructure resilience, Cyber Governance, cyber talent, Cybersecurity Strategy, deregulation, Government Policy, Incident Response, innovation policy, national security, private sector, Procurement, public private partnership, regulatory harmonization, software supply chain, Threat Intelligence, Trump cyber strategy, zero trust
Analysis of the Trump administration’s concise 2024 cybersecurity strategy arguing for policy-led government, private-sector implementation, deregulation to spur innovation, and elevation of AI security as a national priority ...
Security Boulevard
Europe’s Sovereign Search Plan is Really a Security Strategy
Alan Shimel | | access to information, adversarial manipulation, AI retrieval, auditability, censorship risk, centralized control, crawling infrastructure, cyberdefense, Data Governance, data provenance, digital policy, digital sovereignty, economic strategy, fragmentation, GDPR, hidden dependencies, information dependency, knowledge bases, legal clarity, Log4j, multi-cloud, national critical infrastructure, operational intelligence, parallel ecosystems, ranking algorithms, Resilience, search infrastructure, security strategy, software supply chain, sovereign search, Threat intelligence sharing, trusted data, vendor lock-in
Europe’s plan to build sovereign search infrastructure highlights a growing security concern: dependence on foreign platforms for access to information and AI knowledge may represent a systemic vulnerability ...
Security Boulevard
Securing the Software Supply Chain: A Federal Imperative for 2026
Tom Tapley | | Best Practices, Compliance, Federal, government, secure software supply chain, software supply chain, visibility
As federal systems continue to underpin mission execution, software supply chain security has moved from a technical concern to a leadership responsibility. In 2026, the ability to understand, manage, and defend software ...

