Carahsoft, in conjunction with its vendor partners, sponsors hundreds of events each year, ranging from webcasts and tradeshows to executive roundtables and technology forums.

Government Events and Resources

Events

CodeLock-Microsite-Logo.png
CodeLock

Secure Software Development Vendor Attestation Requirements


Event Date: July 10, 2024
Hosted By: CodeLock & Carahsoft

Registrants joined CodeLock for webinar to learn more about how Government software vendors struggle to comply with new secure software development attestation requirements, such as NIST 800-218 and Executive Order 14028. These mandates necessitate extensive documentation and stringent security controls. Vendors face an overwhelming administrative burden and risk losing contracts and reputational damage if they fail to comply.

CodeLock offers a solution by automating the compliance process, generating detailed Software Bills of Materials (SBOMs), integrating with tools for vulnerability assessments, and providing real-time monitoring and alerts. This ensures compliance, enhances security transparency, and helps vendors protect their contracts and reputations.

During the webinar, attendees learned information such as:

  • Understanding Compliance Requirements: Gain a comprehensive overview of new secure software development attestation requirements, including NIST 800-218 and Executive Order 14028, and their implications for government software vendors.
     
  • Navigating Common Pain Points: Learn about the common challenges and pain points faced by software vendors in meeting stringent security and compliance standards, including documentation burdens and vulnerability management.
     
  • Leveraging CodeLock for Compliance: Discover how CodeLock's features, such as compliance tracking, real-time monitoring, Software Bill of Materials (SBOM) generation, and automated vulnerability scanning, can simplify the compliance process and enhance security posture.
     
  • Practical Implementation Strategies: Explore practical strategies for integrating CodeLock into your software development workflow to ensure continuous compliance and secure software development practices.
     
  • Case Studies and Success Stories: Review real-world examples and case studies of how other government software vendors have successfully implemented CodeLock to meet attestation requirements, reduce risk, and maintain contract eligibility.

Resources


GovLoop Guide: Tackling Professional Development Taboos in Government
Guide

GovLoop Guide: Tackling Professional Development Taboos in Government

Have you ever pitched a bad idea? Or become frustrated with a colleague? Or had a looming feeling you’re not qualified to be where you are?

Have you ever struggled with any of these things and felt like there was no one to turn to?

Although countless professionals face the same career woes, they don’t always share them with one another. Maybe it could detract from your reputation and authority. Or you don’t know where to start. Whatever the reason, certain career topics end up on the sidelines undiscussed and unacknowledged. In this professional development guide featuring BetterUp, we highlight common professional development taboos and practical tips to overcome them. With insights from fellow public servants and career coaches, we hope you can bridge your knowledge gaps, get answers to your burning career questions and find out that you’re not the only one asking them.


Fill out the form below to view this Resource.