Products Intelligence Pricing Methodology Contact
FINANCIAL & CAPITAL MARKETS

Software Bill of Materials requirements

Software Bill of Materials requirements are arriving in Financial & Capital Markets through multiple regulatory vectors simultaneously. The U.S. Securities and Exchange Commission's cybersecurity disclosure rules, finalized in 2023, create direct pressure on publicly traded financial institutions to document and disclose material software supply chain risks, and the European Banking Authority has signaled SBOM-adjacent expectations through its ICT risk management guidelines under DORA. Compliance teams are not waiting: they are mapping third-party software inventories against vendor contracts now, before examiners start asking.

Watch

  • SEC cybersecurity disclosure rules: what counts as a 'material' SBOM gap
  • DORA ICT third-party risk provisions taking effect January 2025 for EU-regulated entities
  • CISA cross-sector SBOM guidance and whether financial regulators adopt it by reference
  • OCC and Federal Reserve exam posture on software supply chain documentation in IT audits

Recent material activity in Financial & Capital Markets

  • Apr 14, 2026 MATERIAL

    SEC proposes amendments to Exchange Act Rule 3b-16 expanding ATS definition to include DeFi protocols

    The SEC has proposed rule changes that would bring decentralized finance protocols under the regulatory umbrella of Alternative Trading Systems. The amendment targets platforms facilitating token swaps exceeding $50M dai…

    Read a full sample brief →
  • Apr 13, 2026 MATERIAL

    SEC enforcement action against crypto lending platform for unregistered securities offering

    The Commission filed charges against a major crypto lending platform alleging the firm offered and sold crypto asset lending products that constituted unregistered securities. The complaint seeks disgorgement of $340M in…

    Read a full sample brief →
  • Apr 12, 2026 MATERIAL

    CFTC and SEC release joint statement on digital asset classification framework

    The two primary federal financial regulators issued a joint interpretive statement providing guidance on when digital assets fall under securities law versus commodities law. The framework introduces a functional test ba…

    Read a full sample brief →
  • Apr 11, 2026 MATERIAL

    Federal Reserve announces enhanced supervisory expectations for banks with crypto asset exposure

    The Board of Governors issued SR 26-4 establishing new supervisory expectations for state member banks engaging in crypto-related activities. Banks must now maintain dedicated risk management frameworks, capital reserves…

    Read a full sample brief →
  • Apr 10, 2026 MATERIAL

    SEC approves spot Ethereum ETF amendments allowing staking yield pass-through

    The Commission approved amendments to existing spot Ethereum ETF registration statements permitting the pass-through of staking rewards to fund shareholders. The approval includes enhanced disclosure requirements and a 3…

    Read a full sample brief →
  • Apr 9, 2026 MATERIAL

    SEC Division of Examinations publishes 2026 priorities: crypto compliance tops the list

    The SEC's examination division released its annual priorities letter placing crypto asset compliance, stablecoin reserves, and DeFi protocol governance as the top three examination focus areas for 2026. Registered invest…

    Read a full sample brief →
  • Apr 8, 2026 MATERIAL

    FINRA proposes new rules for broker-dealer crypto custody and customer protection

    FINRA filed a proposed rule change establishing custody requirements for broker-dealers holding crypto assets on behalf of customers. The proposal requires segregated wallets, proof-of-reserves attestations, and $10M min…

    Read a full sample brief →
  • Apr 7, 2026 MATERIAL

    Federal Reserve Board publishes research paper on CBDC impact on commercial bank deposits

    The Board published a staff research paper modeling the potential displacement of commercial bank deposits by a retail CBDC. The paper estimates 8-12% deposit migration in the first two years, with disproportionate impac…

    Read a full sample brief →