Cybersecurity in Sweden
The NCSC report on threats, vulnerabilities and security measures
The report Cybersecurity in Sweden 2024 comes from the Swedish National Cyber Security Centre (NCSC). It does not mention SBOM, but several of the areas it covers are ones where an SBOM is used:
- The supply chain. Attackers exploit vulnerabilities at third-party suppliers. The report recommends that organisations set security requirements for their suppliers and follow them up.
- Dependencies. Cloud services and external systems require clear requirements and ongoing risk management.
- Vulnerabilities. Common problems are a lack of systematic security work and insufficient requirements in procurement.
SBOM in public procurement describes how SBOM requirements can be put to suppliers. The full report, in Swedish, is listed under References.
References
- Cybersäkerhet i Sverige 2024PDF, ncsc.se
Läs hela rapporten från Nationellt centrum för cybersäkerhet (NCSC) om hot, sårbarheter och säkerhetsåtgärder i Sverige.