Skip to main content
Courses

Software Inventory and SBOM Course

Software Security Icon

Bridge Knowledge Gaps in SBOM

As organizations rely more on third-party components, cybersecurity professionals must understand Software Bill of Materials (SBOM) to effectively mitigate vulnerabilities and ensure compliance. This course explores key concepts related to SBOM, including structure, standards and practical applications.

DELIVERY METHOD: ON-DEMAND | TIME: 2 HOURS | CPE CREDITS: 2 | FOCUS AREA: SOFTWARE SECURITY | PROFICIENCY LEVEL: FOUNDATIONAL | LANGUAGE: ENGLISH | KNOWLEDGE AREA: STRATEGY

Product Details

Software Bill of Materials (SBOM) is transforming the ways organizations address software security in an increasingly complex supply chain ecosystem. As businesses rely more on third-party components, cybersecurity professionals must grasp SBOMs to effectively mitigate vulnerabilities and ensure compliance.

Learn key concepts related to SBOM, including structure, standards and practical applications. This course addresses effective vulnerability management, the integration of Vulnerability Exploitability eXchange (VEX) with SBOMs and the implementation of the Supply-Chain Levels for Software Artifacts (SLSA) framework.

Learning Experience:

  • Video, audio and text-based content
  • Instructor insights and learning activities
  • Assessment
  • Validation of Completion
  • 24/7/365 technical support

Who Will Benefit

This course is designed for cybersecurity professionals looking to enhance their understanding of Software Bill of Materials (SBOM) and its critical role in managing software security within the supply chain.


Key Topics

  • Expand your knowledge of how Software Bill of Materials (SBOM) can help cybersecurity professionals effectively mitigate vulnerabilities and ensure compliance.

Learning Outcomes

  • Explain how effective implementation of SBOMs and software inventories improve risk and vulnerability management
  • Outline requirements for SBOMs and use cases of standard SBOM formats
  • Differentiate between types and purposes of SBOMs generated at different stages of the software development lifecycle
  • Identify SBOM tools and their effective uses in identifying vulnerabilities within software components and third-party dependencies
  • Utilize SBOMs and software inventory management to manage software supply chain risks
  • Support the adoption and implementation of SBOM and software inventory management across industries and use cases

Benefits

  • Learn how SBOM helps mitigate vulnerabilities and ensure compliance within the supply chain
  • Understand key concepts related to SBOM, including structure, standards and practical applications
  • Earn CPE credits

Program Completion

Learners have 60 days from the date of purchase to complete the entire course. Those who successfully complete this course will receive a digital Validation of Completion and earn continuing professional education (CPE) credits. We recommend that you download and retain the Validation of Completion for your personal records.

To receive a Validation of Completion and earn CPE credits, learners must:
  • Complete the learning experience
  • Pass the assessment
  • Complete the learning experience evaluation

Credit Info

CPE Credits Group A 2
Field of Study Software Security
Level Foundational
Prerequisites No specific prerequisite knowledge is required, familiarity with software development practices, security concepts and third-party component management is beneficial.
Access Online This is a digital product. The content will be available up to 60 days after purchase date.

For more information, please refer to the ISC2 Certification Maintenance Handbook for additional CPE requirement details.


CPE Credit Reporting

CPE credits earned from this learning experience will automatically be reported for ISC2 credentials on the first day of every month. Please allow up to 10 business days for processing.

CPE credits earned for this learning experience may also be eligible for continuing professional education credits for non-ISC2 certifications. Please visit the continuing education requirements established by the credentialing organization for eligibility.

For questions related to ISC2 CPE credits or the CPE portal not covered in the handbook, please contact us via our online form.

Group Ordering for Your Team

To purchase this course for someone or inquire about team discounts, please contact your regional office:

Americas
+1.866.331.4722
teamtraining@isc2.org
EMEA
+44.203.960.7800
teamtraining@isc2.org
Asia-Pacific
+852.5803.5662
teamtraining@isc2.org

Contact Us

Delivery

A stable internet connection is required. To record your completion of the online learning experience, please ensure you are connected to the internet at all times.


Cancellation Policy

Refunds are not provided for ISC2 learning experiences.