This report on SBOM readiness from the Linux Foundation, stewards of SPDX SBOM standard, is one of the few approved SBOM formats supported for compliance with Cybersecurity Executive Order 14028. Government preparations for Executive Order 14028 are beginning to appear in the form of RFI's, consider the RFI below as a first shot across the bow, an indication that more government agencies, including the Energy industry, will be pursing help with EO 14028 implementations.
CMS Supply Chain Risk Management (SCRM) including Cyber-SCRM Sources Sought
Notice ID: CMS-221166
Related Notice
Department/Ind. Agency
HEALTH AND HUMAN SERVICES, DEPARTMENT OF
Sub-tier
CENTERS FOR MEDICARE AND MEDICAID SERVICES
Office
CMS OFFICE OF INFORMATION TECHNOLOGY