G7 Countries Release Guidance on AI Software Bill of Materials to Enhance Cybersecurity
Government agencies from the Group of Seven (G7) countries have released joint guidance to assist organizations in creating a software bill of materials (SBOM) specifically for artificial intelligence (AI) systems. An SBOM is a comprehensive, machine-readable list that details every component, library, dependency, and module within a software product, providing transparency into its composition. The guidance, titled 'Software Bill of Materials for AI – Minimum Elements,' aims to improve transparency in AI systems and supply chains for both public and private sectors. It outlines seven key clusters that should be included in an AI SBOM: metadata, models, key performance indicators (KPI), infrastructure, security properties (SP), system level properties (SLP), and dataset properties (DP). These elements are designed to help track vulnerabilities and reduce risks associated with AI systems. The document is not mandatory and does not create requirements or standards, but it is open to further refinements as te...