This content is restricted.
Brief
Summary:
In April 2024, the Cybersecurity and Infrastructure Security Agency (CISA) published a report on its Secure by Design initiative, which aims to shift the responsibility of security from end users to technology manufacturers. The report reflects on the progress made over the last year and looks ahead to goals for the year ahead. Key highlights include:
CISA's efforts to drive adoption of Secure by Design principles and approaches to prevent software insecurity
The agency's collaboration with domestic and international partners to release white papers and guidance on memory safety roadmaps and Secure by Design alerts
The focus on eliminating entire classes of vulnerability rather than just patching defects
Feedback from the public and security community sought through "red pen"" sessions and requests for information
Progress in driving adoption of Secure by Design software through federal procurement and the release of a secure software development attestation form
Plans to educate the public
Highlights content goes here...
This content is restricted.