The Fort Worth Press - FossID Announces Workflows to Help Enterprises Operationalize SBOM Lifecycle Management Across Complex Software Supply Chains

USD -
AED 3.672497
AFN 62.999687
ALL 82.32818
AMD 368.449873
ANG 1.79046
AOA 918.000098
ARS 1447.24499
AUD 1.419658
AWG 1.8
AZN 1.699262
BAM 1.690457
BBD 2.013389
BDT 122.882912
BGN 1.66992
BHD 0.377024
BIF 2983.434965
BMD 1
BND 1.28527
BOB 6.907788
BRL 5.189103
BSD 0.999607
BTN 95.321771
BWP 13.521701
BYN 2.761041
BYR 19600
BZD 2.010536
CAD 1.39446
CDF 2285.502368
CHF 0.796655
CLF 0.023306
CLP 917.240172
CNY 6.783704
CNH 6.773225
COP 3591.59
CRC 461.297112
CUC 1
CUP 26.5
CVE 95.30539
CZK 20.89405
DJF 178.010381
DKK 6.462555
DOP 58.221798
DZD 133.578054
EGP 51.715797
ERN 15
ETB 161.164522
EUR 0.864603
FJD 2.217397
FKP 0.749189
GBP 0.746125
GEL 2.659774
GGP 0.749189
GHS 11.800805
GIP 0.749189
GMD 72.505469
GNF 8756.606782
GTQ 7.620003
GYD 209.14383
HKD 7.837015
HNL 26.726872
HRK 6.515694
HTG 130.70517
HUF 307.431977
IDR 17960
ILS 2.94556
IMP 0.749189
INR 95.32485
IQD 1309.55828
IRR 1375049.999934
ISK 124.169983
JEP 0.749189
JMD 157.852658
JOD 0.709036
JPY 160.250499
KES 129.38991
KGS 87.4497
KHR 4015.713662
KMF 426.999991
KPW 899.855249
KRW 1526.325004
KWD 0.30921
KYD 0.833049
KZT 488.143446
LAK 22012.092087
LBP 89518.693467
LKR 337.385637
LRD 182.435791
LSL 16.444633
LTL 2.95274
LVL 0.60489
LYD 6.370979
MAD 9.239519
MDL 17.383563
MGA 4193.76726
MKD 53.309984
MMK 2099.173167
MNT 3578.677969
MOP 8.06868
MRU 39.915986
MUR 47.869938
MVR 15.450404
MWK 1733.429563
MXN 17.400635
MYR 4.061794
MZN 63.909845
NAD 16.441861
NGN 1360.450199
NIO 36.786219
NOK 9.491502
NPR 152.515007
NZD 1.71355
OMR 0.384506
PAB 0.999693
PEN 3.471008
PGK 4.37524
PHP 61.383027
PKR 278.17763
PLN 3.66403
PYG 6156.505207
QAR 3.644363
RON 4.529603
RSD 101.493024
RUB 71.972229
RWF 1463.756153
SAR 3.754398
SBD 8.048583
SCR 13.592904
SDG 600.497181
SEK 9.44111
SGD 1.285797
SHP 0.746601
SLE 24.596482
SLL 20969.502105
SOS 571.32732
SRD 37.349503
STD 20697.981008
STN 21.176277
SVC 8.747099
SYP 110.532098
SZL 16.44057
THB 32.878006
TJS 9.326724
TMT 3.5
TND 2.938291
TOP 2.40776
TRY 46.119399
TTD 6.78073
TWD 31.603897
TZS 2609.997985
UAH 44.90689
UGX 3771.10605
UYU 40.468298
UZS 12018.617837
VES 562.585085
VND 26330
VUV 119.284637
WST 2.746352
XAF 566.968465
XAG 0.015102
XAU 0.000233
XCD 2.70255
XCG 1.801626
XDR 0.708406
XOF 566.963564
XPF 103.080932
YER 238.624975
ZAR 16.441299
ZMK 9001.199517
ZMW 17.754364
ZWL 321.999592
  • RYCEF

    -0.1500

    16.37

    -0.92%

  • RBGPF

    1.4900

    61.5

    +2.42%

  • NGG

    0.7400

    80.91

    +0.91%

  • AZN

    1.8600

    183.41

    +1.01%

  • CMSC

    -0.0500

    22.31

    -0.22%

  • RELX

    0.3850

    34.905

    +1.1%

  • RIO

    -0.3700

    100.56

    -0.37%

  • BTI

    0.2600

    59.95

    +0.43%

  • GSK

    0.6350

    51.275

    +1.24%

  • VOD

    -0.1300

    14.68

    -0.89%

  • JRI

    0.0250

    12.485

    +0.2%

  • BCC

    2.6200

    70.59

    +3.71%

  • BP

    -1.2400

    42.48

    -2.92%

  • BCE

    0.4650

    24.645

    +1.89%

  • CMSD

    -0.1150

    22.295

    -0.52%

FossID Announces Workflows to Help Enterprises Operationalize SBOM Lifecycle Management Across Complex Software Supply Chains
FossID Announces Workflows to Help Enterprises Operationalize SBOM Lifecycle Management Across Complex Software Supply Chains

FossID Announces Workflows to Help Enterprises Operationalize SBOM Lifecycle Management Across Complex Software Supply Chains

New solution helps organizations centrally ingest, normalize, inspect, approve, reject, consolidate, and deliver compliance-ready SBOM evidence as AI-driven development and maturing regulation reshape software supply chain governance

Text size:

STOCKHOLM, SE / ACCESS Newswire / June 9, 2026 / FossID, a leader in software risk management, today announced FossID Workflows, a new solution designed to help enterprises manage the full lifecycle of Software Bills of Materials (SBOMs) across complex software supply chains. The upcoming product will help organizations centrally ingest, normalize, inspect, approve or reject, consolidate, and deliver compliance-ready SBOM evidence across suppliers, products, and releases.

The announcement comes as SBOM adoption accelerates in response to two major shifts in the software industry. First, AI-driven software development is increasing the speed and volume of code creation, including smaller code fragments that can make software inventory, provenance, security, and license compliance more difficult to manage. Second, maturing regulations, including the EU Cyber Resilience Act (CRA), are elevating SBOMs as a fundamental form of compliance evidence for organizations that build, integrate, sell, or distribute software-enabled products.

For enterprises in industries such as automotive, medical devices, consumer electronics, industrial automation, and other supplier-intensive markets, the operational challenge is becoming especially acute. OEMs often develop their own software while also receiving software from Tier-1 suppliers, who in turn receive software from Tier-2 suppliers and additional downstream providers. Each participant may generate, receive, transform, validate, and pass along SBOMs as part of a broader compliance and product assurance process.

This creates a practical breakdown in SBOM operationalization. Organizations may have the ability to generate SBOMs, but they often lack a scalable process for collecting them from suppliers, normalizing different formats, validating quality, resolving issues, approving or rejecting submissions, consolidating multiple SBOMs into product-level evidence, and delivering that evidence to customers, auditors, or regulators.

"SBOMs are no longer just static technical artifacts," said Daniel Forsgren, Chief Technology Officer at FossID. "They are becoming operational records of software supply chain trust. As AI accelerates code creation and regulations mature, enterprises need more than SBOM generation. They need a governed way to manage the SBOM lifecycle across teams, suppliers, products, and releases."

FossID Workflows is being designed to address this operational gap. The solution will provide a centralized workflow layer for managing SBOM processes across complex enterprise environments, helping teams move from fragmented files and manual coordination to repeatable, auditable, and scalable SBOM governance.

With FossID Workflows, organizations will be able to:

  • Centrally ingest SBOMs from suppliers, internal teams, and software sources

  • Normalize SBOM inputs across different formats and supplier maturity levels

  • Inspect SBOM submissions for quality, completeness, and usability

  • Approve or reject supplier submissions through defined review workflows

  • Consolidate multiple SBOMs into product-level and release-level evidence

  • Maintain traceable records of SBOM review, decisions, exceptions, and approvals

  • Deliver compliance-ready evidence to customers, auditors, regulators, and supply chain partners

"Many organizations have made progress with SBOM generation, but generation is only the starting point," said Daniel Forsgren. "The larger challenge is operational. Enterprises need to know whether an SBOM is complete, whether it represents the right software, whether it has been reviewed according to policy, and whether it can be trusted as part of a compliance evidence package. FossID Workflows is being built to make that process manageable at enterprise scale."

The need for SBOM lifecycle management is growing as software supply chains become more distributed and more dynamic. AI-assisted development is increasing the importance of accurate software inventory and provenance, while regulatory frameworks are pushing organizations toward stronger documentation, vulnerability handling, and supply chain transparency. In this environment, SBOMs must be managed as living compliance assets, not one-time files.

FossID Workflows will extend FossID's software risk management portfolio by helping organizations connect and automate the SBOM lifecycle. It is expected to complement FossID's Agentic SCA suite and FossID's professional services by enabling enterprises to operationalize SBOM governance across the full software supply chain.

Pilot Program and Early Access

FossID plans to make FossID Workflows available to select customers and partners prior to general availability.

"Most enterprises approaching SBOM operationalization have established processes; what they lack is tooling flexible enough to support those processes at scale. A one-size-fits-all workflow layer is unlikely to accommodate the variation in supplier maturity, regulatory obligation, and internal review structure that enterprise environments present," said Katie Norton, Senior Research Manager at IDC. "FossID Workflows addresses this through a composable workflow architecture that organizations can configure to fit their specific intake, validation, and approval requirements."

Organizations interested in early access or product briefings can contact FossID for more information. Readers can also join the FossID Workflows waitlist to stay informed about product availability, upcoming features, and pricing details as FossID prepares for broader release.

About FossID

FossID provides software supply chain integrity solutions that enable enterprises to leverage open source, third-party, and AI-generated code with confidence. Powered by FossID Workbench, a Software Composition Analysis (SCA) toolset, FossID also provides open source audit, technical due diligence, and code review services to help clients manage legal, security, and operational software supply chain risk.

For more information, visit www.fossid.com.

Media Contact
Aaron Branson
FossID Media Relations
[email protected]

SOURCE: FossID



View the original press release on ACCESS Newswire

M.Delgado--TFWP