What you’ll learn:
1. Generate and read SBOMs to map every dependency in your apps
2. Use CSAF and VEX to cut through noise and focus on exploitable vulnerabilities
3. Automate SCA with tools like CycloneDX, OWASP Dependency-Track, and OWASP Depscan
4. Reduce false positives and tighten supply chain security
SBOMs don’t lie, and after this session, neither will your dependency reports.