The government agency charged with leading a review of guidance and standards for federal agencies to employ to strengthen the security of their software supply chains will initially focus on existing guidance and then identify gaps where new practices are needed, an official for the National Institute of Standards and Technology (NIST) said on Tuesday. “So, first and foremost we want to identify and cite work that exists rather than create new work,” Matthew Scholl, chief of the Computer Security…
By