Building Bridges of Security, Sovereignty and Trust in Business and Industry 27th Edition | Page 2

LETTER FROM THE THOUGHT LEADERSHIP TASK GROUP Dear Readers,
We are delighted to present the 27th Edition of the Object Management Group ®( OMG ®) Journal of Innovation,“ Building Bridges of Security, Sovereignty and Trust in Business and Industry.”
This issue explores trust as a vital facet in today’ s business environment. In an era of escalating cyberthreats, businesses must adopt robust security strategies and cultivate a culture of trust to protect their reputation, strengthen stakeholder relationships, maintain a competitive edge, and achieve long-term success. This is especially critical in the industrial sector, where interconnected systems and digital technologies heighten vulnerabilities to cyberattacks and data breaches.
This edition features a diverse collection of articles that delve into various aspects of security and trustworthiness, offering actionable insights and thought leadership on the following topics:
Building Trust in the Security of Software by CAST Software This paper outlines a multi-layered approach to software security— trusting the process, the developers, and the code itself— emphasizing the role of ISO / IEC 5055 and maturity models in identifying and mitigating severe software weaknesses.
Threat Modeling Method for Digital Twins: Based on the DTC Platform Stack Architectural Framework by Kaspersky This piece presents a methodical threat modeling framework tailored to digital twin systems, using the DTC Platform Stack to identify assets, assess risks, and improve system trustworthiness across technology readiness levels.
Making the Case for Cybersecurity: Mending the Digital Thread with OMG Standards for Risk- Centric DevSecOps by KDM Analytics and USAF This work introduces a Risk-Centric DevSecOps framework that transforms cybersecurity into a continuous, model-driven reasoning process, leveraging OMG standards like SPECTRA to integrate system knowledge, threat intelligence, and assurance into automated pipelines.
Integrity and Transparency for Trustworthy Supply Chain Insights from Sustainability Regulations by MITRE This submission explores how emerging sustainability and labor regulations are driving the creation of interoperable supply chain data frameworks— like SBOMs, DPPs, and UNTP— with the potential to transform strategic planning through trustworthy, anonymized, and shared supply chain insights.
The Tour d’ Horizon of Data Law Implications of Digital Twins: Industry Implications by Nishith Desai Associates This contribution analyzes the complex legal landscape surrounding digital twins, detailing privacy,
ii