Check out the SAFECode Blog
SAFECode has released, “Fundamental Practices for Secure Software Development 2nd Edition: A Guide to the Most Effective Secure Development Practices in Use Today.” The report is intended to help others in the industry initiate or improve their own software security programs and encourage the industry-wide adoption of fundamental secure development methods.
Download "Fundamental Practices for Secure Software Development 2nd Edition: A Guide to the Most Effective Secure Development Practices in Use Today." (pdf) 1.9M
SAFECode has released, “Software Integrity Controls: An Assurance-Based Approach to Minimizing Risks in the Software Supply Chain.” As the first industry-developed guidance on software integrity practices, this paper builds upon the Software Supply Chain Integrity Framework released in July 2009 and provides actionable recommendations for minimizing the risk that vulnerabilities could be inserted into a software product during its sourcing, development and distribution.
Download "Software Integrity Controls: An Assurance-Based Approach to Minimizing Risks in the Software Supply Chain." (pdf) 2.3M
SAFECode.org is a comprehensive online resource for news and information about software assurance. SAFECode members include Adobe, EMC Corporation, Juniper Networks, Inc., Microsoft Corp., Nokia, Siemens AG, SAP AG, and Symantec Corp.
The inaugural Security Development Conference 2012 (SDC 2012) will bring together industry professionals to network and learn from security experts about secure development practices.
May 15-16, 2012
Washington, DC
More
Siemens, a Global Powerhouse in Electronics and Electric Engineering, joins SAFECode. “As one of the world’s largest and most diverse corporations, Siemens brings unique expertise and perspective to SAFECode’s efforts.” More
SAFECode releases "Interpreting the BSIMM: A SAFECode Perspective on Leveraging Descriptive Software Security Initiatives" Download pdf
SAFECode Releases Updated Guidance on Secure Development Practices
The new report provides foundational set of secure development practices based on an analysis of the real-world actions of SAFECode members More
SAFECode Releases "Software Integrity Controls: An Assurance-Based Approach to Minimizing Risks in the Software Supply Chain.”
The new report provides actionable recommendations for minimizing the risk of vulnerabilities being inserted into a software product during its sourcing, development and distribution. More