Software Supply Chain Incident Response Cheat Sheet

This actionable guide equips cybersecurity professionals to rapidly address software supply chain security incidents. Aligned with the SANS PICERL methodology, it focuses on identifying affected areas, assessing impact, and containing threats. It includes practical commands for profiling software, analyzing SBOMs, and leveraging vulnerability databases.

This cheat sheet supports the content taught in SEC547 Defending Product Supply Chains and was created by Tony Turner.

November 26, 2024
Software Supply Chain Incident Response Cheat Sheet