SW 공급망 보안 가이드라인
| 작성일 | 2025년 01월 09일 |
|---|---|
| 수정일 | 2025년 12월 30일 |
| 카테고리 | 기술 |
| 태그 | |
| 원본 | https://croot.notion.site/1766063e659080fdacf0d24657e196f7 |
[240513-%28%EC%9A%94%EC%95%BD%EB%B3%B8%29SW%EA%B3%B5%EA%B8%89%EB%A7%9D_%EB%B3%B4%EC%95%88%EA%B0%80%EC%9D%B4%EB%93%9C%EB%9D%BC%EC%9D%B8.pdf](https://prod-files-secure.s3.us-west-2.amazonaws.com/8daffe33-d95b-4c96-91e6-1b899bcdb2d7/0f5f0886-db60-4a61-8e90-912aeea997fd/240513-%28%EC%9A%94%EC%95%BD%EB%B3%B8%29_SW%EA%B3%B5%EA%B8%89%EB%A7%9D_%EB%B3%B4%EC%95%88_%EA%B0%80%EC%9D%B4%EB%93%9C%EB%9D%BC%EC%9D%B8.pdf?X-Amz-Algorithm=AWS4-HMAC-SHA256&X-Amz-Content-Sha256=UNSIGNED-PAYLOAD&X-Amz-Credential=ASIAZI2LB466XH6BPTOF%2F20260512%2Fus-west-2%2Fs3%2Faws4_request&X-Amz-Date=20260512T055937Z&X-Amz-Expires=3600&X-Amz-Security-Token=IQoJb3JpZ2luX2VjEFsaCXVzLXdlc3QtMiJIMEYCIQCaCOybCtj4MIfCzmwmfSrpg6MDaEl4RhaA5D6Q5KkKhAIhAPnsa8MYuCyIZQEczhoqH%2BTFkLMxnOJqQPPlSq6TIUHkKv8DCCQQABoMNjM3NDIzMTgzODA1IgyG0fItNwXYxghYLggq3APqcr59mkv4%2FLIVDSxWQd1kjkgl8ATZNXXQPktdpNN4TYKU7OoRC38L4%2F3Ma36O%2FLiDP8jrVOgjFCqT6rKCHLijPadkRURCeKaoCFvGCWxwCcQV221TYphO61Ueicw7kLjvuc6PMdKgCZBD5kuQmktxVjur%2FSYAexIKwUDKkg1hZXHVHtm%2FyU6P3ytR9T2pfjVEG4Ps4iMHzCnV0RvBnNmYLuUfVHJZwuwoRPPNTtp25QErGK0Zz271sK7FTEaJDCyZoUpXeLMHZfk9c2teNQO2RbsB9Owr9HoFRKPMxYitvZkCC2vVx18ULC%2BK1YFGCdke%2B%2BwpeDYWZiJpd5c02VXCy0m8ngrnToVeWDrc52A0HGjbJx4R68DG0n3HApI8djjUOCLegukrCNYVGWSaoGGYaeB%2Fk4AsgzmHJ0X%2BbC3h02q7M1F8XuBbGAnMrev3JNeNkj3gcry0UfLITURG%2FX30Dq9Fvn9a7adl%2F1vzp1My3HzS1vFPKIGmM22hFmCKi1MepSuuV1tPfVWH2XYC5dPW2HcLHnoFCDl1e9CxQU1iFVE8h3HCuN0bcCub57CX7p8ciUdIQvbsSSp4QRngti4O0MaFhzD21xw6m%2FXZpvpjuvG5kX%2F1Z45RL6DWHTDipIrQBjqkATAe8cst2r7NJYPdkipsK5MyoqXN6%2BDjDzs2NKZOeKQorH3qNSss0qBk6FwsCcz0CsXg4n6bZeQKYI8XhqiCQKIRatRQ9Vi68%2BIp6SRqXdPs4xe1jDd01XbE6WESYYtdSC1KBB0IQJ%2F7vVaIO%2BEuu8jnTfy02Rdnb6Uwm2LgXZGU6dJJ1inNHB%2FgzbmGTO%2BK5mPlnynxLniR7GVDyiVuF%2BAij%2BI7&X-Amz-Signature=f67ac484e4043142768195acaaa6a70ca8c3ba298ed84233da7e47d0b8eadbf9&X-Amz-SignedHeaders=host&x-amz-checksum-mode=ENABLED&x-id=GetObject)
C-SCRM
- 전사 : 상위 수준의 전략, 실행계획 및 정책
- 프로세스 : 하위 수준의 전략, 실행계획 및 정책
- 운영 : 계획
구축방안
- SSDF
신뢰성 확보 방안
- SBOM
« Gartner 2025
국가망보안체계(N²SF) 가이드라인 »