{"ok":true,"entity":{"id":"software-supply-chain-security","name":"Software Supply Chain Security","entityType":"concept","officialName":"Software Supply Chain Security","canonicalName":"Software Supply Chain Security","displayName":"ソフトウェアサプライチェーンセキュリティ","category":"セキュリティ概念（ソフトウェア開発・配布過程の保護）","shortDescription":"ソフトウェアの開発・ビルド・配布過程に混入する脆弱性・悪意あるコードからシステムを保護する概念。米CISA・NISTがSecure Software Development Framework（SSDF、NIST SP 800-218）やSoftware Bill of Materials（SBOM）を通じて標準化を推進している。","primaryCluster":"network-security","parentEntity":null,"verificationStatus":"draft","website":null,"updatedAt":"2026-07-28T03:03:26.398Z","secondaryClusters":[],"alias":["ソフトウェアサプライチェーンセキュリティ","SSDF","SBOM"],"searchKeywords":["Software Supply Chain Security","SSDF","SBOM","NIST SP 800-218","ソフトウェアサプライチェーン"]},"referenceIndex":["P-01-001","P-04-001","P-06-001","P-02-001","P-04-002"]}