Security Insights

Supply Chain Security

Thinking on cybersecurity, compliance, and managed defence - from the CyberCheck team.

Supply Chain Security: What SBOMs Actually Tell You and What They Do Not

Continuous Compliance Monitoring: Moving Beyond the Annual Audit

Software Bills of Materials have gone from a niche compliance artifact to something regulators and enterprise customers increasingly require by name, and that rapid mandate-driven adoption has outpaced a clear, shared understanding of what an SBOM actually tells you — and, just as importantly, what it structurally can’t. What an SBOM Genuinely Solves An SBOM’s … Read more

Understanding SBOM: Software Bill of Materials Explained

How to Prepare for a SOC 2 Audit Without the Panic

Software Bill of Materials requirements have moved from a niche security practice to an increasingly common regulatory and contractual requirement, particularly for organizations selling software to government agencies or operating in regulated industries. Understanding what a SBOM is, and what value it provides, matters for organizations navigating these emerging, increasingly common requirements. What a SBOM … Read more

Supply Chain Attacks: Securing Your Software Dependencies

OWASP Top 10 Explained for Non-Security Teams

Software supply chain attacks – where attackers compromise a widely-used dependency to indirectly reach a much larger number of downstream targets – have grown into one of the more significant security concerns in recent years, and understanding the real risk helps organizations build appropriately proportionate, effective defenses against this specific, growing threat category. Why Supply … Read more