SOFTWARE BILL OF MATERIALS: A CATALYST TO A MORE SECURE SOFTWARE SUPPLY CHAIN

dc.contributor.advisorFinkenstadt, Daniel J.
dc.contributor.advisorPorchia, Jamie M.
dc.contributor.authorNguyen, Phillip Q.
dc.contributor.authorTikalsky, Madison A.
dc.contributor.authorDurlauf, Samantha M.
dc.contributor.corporateHuman Systems Integration (HSI) Certificate Program
dc.contributor.departmentDepartment of Defense Management (DDM)
dc.date.accessioned2024-02-19T22:56:57Z
dc.date.available2024-02-19T22:56:57Z
dc.date.issued2023-12
dc.description.abstractThis MBA innovation capstone project investigates cyber supply chain security, emphasizing targeted incidents within the United States. It encompasses Hacking for Defense (H4D), innovation capstone initiatives, and system dynamics modeling, culminating in Minimum Viable Product (MVP) development. Aligned with the "Back-to-Basics" restructuring initiative and Executive Order 14028, the research aims to enhance cyber supply chain security in line with three core objectives: validating the EITaaS Program Office's problem statement, identifying potential solutions, and offering informed recommendations. Methodologies include the Lean Launchpad, working groups, the goals-decisions-signals-data model, and system dynamics. Findings present advanced tools for EITaaS Supply Chain Risk Management, with implications for national security. The study underscores the importance of Software Bills of Materials (SBOMs) in DOD's software supply chain risk management. Effective SBOM implementation is crucial for strengthening the nation's cyber defense infrastructure. The research outlines a roadmap for improving cyber supply chain security, reducing cyberattacks, and minimizing economic losses, advocating for the implementation of an SBOM policy. It concludes with actionable recommendations for SBOM implementation, covering education, collaboration, best practices, process framework development, and DOD-specific SBOM standards.en_US
dc.description.distributionstatementApproved for public release. Distribution is unlimited.en_US
dc.description.serviceCaptain, United States Air Forceen_US
dc.description.serviceCaptain, United States Air Forceen_US
dc.description.serviceCaptain, United States Air Forceen_US
dc.identifier.curriculumcode815, Defense Contract Management
dc.identifier.curriculumcode815, Defense Contract Management
dc.identifier.curriculumcode815, Defense Contract Management
dc.identifier.thesisid39434
dc.identifier.urihttps://hdl.handle.net/10945/72582
dc.publisherMonterey, CA; Naval Postgraduate Schoolen_US
dc.relation.ispartofseriesCapstone Applied Project Reports
dc.relation.ispartofseriesJoint Applied Projects
dc.rightsThis publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. Copyright protection is not available for this work in the United States.en_US
dc.subject.authorSBOMen_US
dc.subject.authorcyber supply chainen_US
dc.subject.authorcyber risk managementen_US
dc.subject.authorCDRLen_US
dc.subject.authorDIDen_US
dc.subject.authordata visualizationen_US
dc.subject.authorvisualization toolsen_US
dc.subject.authorH4Den_US
dc.subject.authorsoftware supply chainen_US
dc.subject.authorsoftware risken_US
dc.subject.authorsystem dynamics modelen_US
dc.subject.authorcyberattacksen_US
dc.titleSOFTWARE BILL OF MATERIALS: A CATALYST TO A MORE SECURE SOFTWARE SUPPLY CHAINen_US
dc.typeThesisen_US
dspace.entity.typePublication
etd.thesisdegree.disciplineMaster of Business Administrationen_US
etd.thesisdegree.disciplineMaster of Business Administrationen_US
etd.thesisdegree.disciplineMaster of Business Administrationen_US
etd.thesisdegree.grantorNaval Postgraduate Schoolen_US
etd.thesisdegree.levelMastersen_US
etd.thesisdegree.levelMastersen_US
etd.thesisdegree.levelMastersen_US
etd.thesisdegree.nameMaster of Business Administrationen_US
etd.thesisdegree.nameMaster of Business Administrationen_US
etd.thesisdegree.nameMaster of Business Administrationen_US
relation.isDepartmentOfPublicationb8b0094c-45b5-4a6a-8813-f61a5dec4f2a
relation.isDepartmentOfPublication.latestForDiscoveryb8b0094c-45b5-4a6a-8813-f61a5dec4f2a
relation.isOrgUnitOfPublicationb1db68f8-fa8c-4d10-b118-8166cdacdb4c
relation.isOrgUnitOfPublication.latestForDiscoveryb1db68f8-fa8c-4d10-b118-8166cdacdb4c
relation.isSeriesOfPublication409d700c-a0df-4ded-8bb7-9da7660ceddb
relation.isSeriesOfPublication.latestForDiscovery409d700c-a0df-4ded-8bb7-9da7660ceddb
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
23Dec_Nguyen_Tikalsky_Durlauf.pdf
Size:
8.05 MB
Format:
Adobe Portable Document Format
Collections