This document is a technical report that outlines how Sonatype's solutions align with the New Zealand Information Security Manual (NZISM) guidelines. It describes the NZISM as a framework that assists organizations in managing cybersecurity risks, providing best practices for software security, data transfers, and secure software development. The report details specific NZISM control requirements and how Sonatype's products, including Nexus Repository, Lifecycle, Repository Firewall, and SBOM Manager, help organizations achieve compliance. For instance, it explains how Nexus Repository ensures system integrity by securely storing software artifacts, while the Repository Firewall enforces security policies for hardened environments. Additionally, it discusses the importance of continuous monitoring and vulnerability scanning in maintaining security standards. The report concludes by emphasizing the role of Sonatype's platform in automating governance and managing artifacts, thereby supporting organizations in building a secure software supply chain and adhering to New Zealand's cybersecurity framework.