Responding to Customer Demands for SBOMs 

Case Study

Challenge

This leading solution provider for the food and beverage industry provides a complete range of solutions, from standalone equipment to complete connected production lines. They rely on software, products, and industrial automation systems from multiple sources, including open source, 3rd-party proprietary, and internally-developed software.

Internal policies and industry-recognized standards (IEC-62443) were driving a need for a more secure OT software supply chain. In addition, the company’s customers were requesting SBOMs to guarantee the integrity of their software supply chain to mitigate risk exposure to vulnerabilities.

Solution

The Exiger Cyber solution ensured the client could achieve their own software supply chain security objectives and satisfy their customer demands. Our solution:

  • Provides a comprehensive view of their customers installed software base
  • Continuously monitors vulnerabilities within deployed software
  • Generates and provides SBOMs and accompanying VEX documents at any point in the development process and postdelivery
  • Integrates with existing enterprise platforms, processes, and workflows
  • Provides tools for customer to build a proactive cybersecurity services offering

Additional Benefits Delivered

Cyber Risk Insights

  • Malware scan results
  • Vulnerability matching
  • Certificate quality for executable components
  • Risk scores on all components and packages

Light Footprint

  • Easy, secure integration via RESTful API
  • Web portal access for analysis, continuous monitoring, and SBOM creation

Attestation

  • SBOM export
  • Trust score reports shareable with all clients, suppliers, and regulators

How SBOMs Fit Into the Enterprise

SBOM enterprise integration

Impact

With the ability to generate and deliver SBOMs, the solution provider was able to satisfy the cybersecurity requirements of their customers and demonstrate their own proactive security posture.

IMPROVED CUSTOMER SATISFACTION

Brand and reputation protection iconBRAND AND REPUTATION PROTECTION

REGULATORY COMPLIANCE

Get Started

Request a demo to see how Exiger can help keep your software supply chain security resilient.

Perspectives

Demo The
Exiger Platform