2

The Software Supply Chain and the SDLC

Software development and manufacturing have an unsurprising trend in common. In modern manufacturing, companies rarely make all their parts in-house. The automotive industry, for example, relies on a broad and complex network of vendors. This also means a defective vendor component can disrupt the entire supply chain. Consider how one vendor’s faulty airbag inflators caused the largest recall in American automotive history, impacting over half a dozen automakers who used those parts and tens of millions of vehicles. Modern software development faces similar issues.

In modern software development, too, it is increasingly rare for companies to create everything completely in-house. Like automakers, software ...

Get Crafting Secure Software now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.