Manifest Partners with the Department of Defense on SBOM Solutions
Manifest, a frontrunner in cybersecurity for software supply chains, has recently secured a significant contract with the United States Department of Defense (DOD). This contract focuses on piloting Software Bill of Materials (SBOM) management across various DOD components.
Understanding SBOM Management
As cybersecurity becomes increasingly vital in military operations, Manifest's cutting-edge SBOM management solution aims to enhance the DOD's ability to effectively oversee its software supply chain. This award is crucial for helping military branches recognize and mitigate the cybersecurity risks tied to their software.
The Project Scope
Manifest will carry out pilots that involve deploying their top-tier SBOM management solution across four distinct components within the DOD, encompassing multiple branches of the military. This initiative builds on previous successes, strengthening the infrastructure necessary for managing software supply chains.
CEO Insights
Marc Frankel, the CEO of Manifest, highlighted the essential role of software in military operations, stating, "Software runs the military; it's fundamental to security and operational success. This project will enable the components to effectively utilize the SBOMs they create for their internal applications and vendor-based solutions."
Importance of Executive Order 14028
The pilots are particularly noteworthy in the context of Executive Order 14028, which requires the use of SBOMs across government agencies. This mandate is vital for allowing security and supply chain risk management teams at the DOD to swiftly identify and address vulnerabilities, ensuring that operational software remains secure against threats like Log4Shell.
Meeting Federal Standards
As federal agencies work to comply with SBOM requirements and best practices outlined in guidelines such as the Federal Acquisition Regulation (FAR) and directives from various government entities, Manifest's efforts are becoming increasingly relevant. This aligns with the DOD’s commitment to enhancing cybersecurity and innovating software supply chain management.
Pioneering Work into AI Security
Manifest is also broadening its scope beyond traditional SBOM management by investigating AI risk and security. This includes the development of AI Bills of Materials (AIBOMs), an initiative supported by the DOD’s Chief Data and Artificial Intelligence Office, showcasing Manifest's dedication to advancing security technologies.
About Manifest
Founded by a team of experts from Palantir, Palo Alto Networks, and the Defense Digital Service, Manifest's mission is to strengthen the cybersecurity posture of organizations by providing comprehensive insights into the technologies they utilize. Trusted by Fortune 500 companies, Manifest is at the forefront of helping enterprises tackle cybersecurity risks.
Frequently Asked Questions
What is the primary goal of the DOD contracts awarded to Manifest?
The primary goal is to pilot SBOM management solutions across various DOD components to improve cybersecurity and software supply chain management.
Why are Software Bills of Materials significant for the military?
SBOMs provide clarity on software origins, enabling military branches to assess and respond to cybersecurity threats effectively.
How does Executive Order 14028 affect SBOM usage?
This Executive Order mandates that government agencies implement SBOM strategies, enhancing their ability to manage software vulnerabilities.
What expertise does Manifest bring to the DOD?
Manifest's leadership includes veterans from prominent cybersecurity and technology firms, ensuring a deep understanding of both software security and operational needs.
How is Manifest innovating in AI security?
By developing AI Bills of Materials (AIBOMs), Manifest is leading initiatives to assess risks associated with AI technologies, in collaboration with DOD's Chief Data and AI Office.