Training > Cybersecurity > SBOMs in Action: Security & Compliance (LFWS302)
INSTRUCTOR-LED COURSE

SBOMs in Action: Security & Compliance (LFWS302)

Advancing in today’s interconnected tech landscape means mastering security and compliance. With the EU Cyber Resilience Act (CRA) demanding greater transparency, SBOM expertise helps you strengthen visibility and reduce supply chain risk.

Who Is It For

Ideal for DevSecOps specialists, developers, engineers, compliance professionals, and team leads seeking to deepen their security expertise, ensure compliance, and demonstrate leadership in software supply chain integrity.
read less read more
What You’ll Learn

Learn to generate and validate SBOMs using SPDX and CycloneDX formats. Integrate SBOMs into CI/CD pipelines to enhance visibility and automation. Develop the skills to interpret dependencies, licenses, and vulnerabilities, and communicate your findings through clear, compliance-ready reports.
read less read more
What It Prepares You For

Advance your career with practical SBOM expertise that strengthens secure development, improves visibility across the software lifecycle, and positions you for leadership in software delivery and compliance under new requirements such as the EU Cyber Resilience Act (CRA).
read less read more
Course Outline
Expand All
Collapse All
Introduction
Foundations of SBOMs
Lab: Interpreting a Sample SBOM
SBOMs Fundamentals and Lifecycle
Lab: Analyzing and Extracting Insights from an SBOM
Environment-Aware SBOM Generation & Analysis
Lab: Comparing SBOM Accuracy Across Different Build Environments
The SPDX Format
Lab: Generating and Validating an SPDX SBOM
The CycloneDX Format
Lab: Generating and Comparing CycloneDX SBOMs
Top Tools for SBOM Generation & Advanced SBOM Management
Lab: Automating SBOM Generation and Remediation in a CI Pipeline
Achieving Compliance with the EU Cyber Resilience Act (CRA)
Communicating SBOM Insights to Management and Stakeholders
Lab: Creating and Presenting a Simple SBOM Compliance Report

Prerequisites
To make the best of this course, learners should have the following:

  • Basic understanding of software development
  • Familiarity with command-line interfaces (CLI)
  • Basic DevOps or CI/CD knowledge
  • General awareness of software security concepts