Software is now the heart of the vehicle – and at the same time, its biggest entry point for cyberattacks.

Regulations such as UN ECE WP.29, NIS2, and the Cyber Resilience Act make it unmistakably clear: OEMs and suppliers must get a grip on their software supply chains – not sometime in the future, but right now.

In an interview with AutomotiveIT, Mirko Ross explains in concrete terms why SBOMs are becoming a mandatory foundation: transparency across all components, automated vulnerability scans within DevSecOps pipelines, and traceable software versions throughout the entire lifecycle – from the control unit to the OTA update.

At the same time, he openly addresses the downsides: fragmented toolchains, fear of exposing the “blueprint,” and the cultural shift required in collaboration between OEMs and suppliers.

Read now the exciting article from AutomotiveIT – in conversation with cybersecurity expert Mirko Ross.

👉 https://www.automotiveit.eu/technology/augen-auf-in-der-softwarelieferkette/2630120

SBOM - Article in AutomotiveIT with Mirko Ross
Konrad Buck

Konrad Buck

Head of Press and Media Relations

Background & Expert Access for Media

I provide journalists with access to in-depth background information beyond our public materials, including:
  • Product & technology insights – technical context, solution architecture, and real-world use cases for professional and trade media
  • Expert commentary & background talks – our CEO is available as an expert source on current cybersecurity developments, threat landscapes, and the impact of AI on security and regulation
Media contact
I speak openly, fact-based, and without PR spin. I am a former IT journalist with decades of experience in the IT and cybersecurity space, familiar with the highs and lows of the industry. Off-the-record discussions are possible upon request.