Discover this podcast and so much more

Podcasts are free to enjoy without a subscription. We also offer ebooks, audiobooks, and so much more for just $11.99/month.

Key Steps to Integrate Secure by Design into Acquisition and Development

Key Steps to Integrate Secure by Design into Acquisition and Development

FromSoftware Engineering Institute (SEI) Podcast Series


Key Steps to Integrate Secure by Design into Acquisition and Development

FromSoftware Engineering Institute (SEI) Podcast Series

ratings:
Length:
49 minutes
Released:
May 2, 2023
Format:
Podcast episode

Description

Secure by design means performing more security and assurance activities earlier in the product and system lifecycles. A secure-by-design mindset addresses the security of systems during the requirements, design, and development phases of lifecycles rather than waiting until the system is ready for implementation. The need for a secure-by-design mindset is exacerbated by the amount of interconnectedness of today’s systems and the increasing amount of automation that characterizes system development. These trends have led to increased levels of risk and made implementation of security controls during test and patching systems after deployment increasingly unsustainable. In this podcast from the Carnegie Mellon University Software Engineering Institute, Robert Schiela, technical manager of the Secure Coding group, and Carol Woody, a principal researcher in the SEI’s CERT Division, talk with Suzanne Miller about the importance of integrating the practices and mindset of secure by design into the acquisition and development of software-reliant systems. 
Released:
May 2, 2023
Format:
Podcast episode

Titles in the series (100)

The SEI Podcast Series presents conversations in software engineering, cybersecurity, and future technologies.