SAFECODE.ORG: security fundamentals for developers
If you don’t know safecode.org, then stop reading this article and click here: https://safecode.org/about-safecode/ SAFECode – short for the Software Assurance Forum for Excellence in Code – spearheads a global, industry-wide effort to identify and promote best practices for developing and delivering more secure and reliable software, hardware and services. Here is a short film about it: Safecode published the third edition of “Fundamental Practices for Secure Software Development – Essential Elements of a Secure Development Lifecycle Program” (the link goes to the whitepaper, 38 pages). The focus is on software development. and the guide is intended to help others in the industry initiate or improve their own software security programs and encourage the industry-wide adoption of fundamental secure development methods. Much of this document is built from the experience of large companies that build software that is used by many millions and in some cases billions of users. Small software companies should also be able to benefit from many of these recommendations. Check here additional publications: https://safecode.org/publications/ PUBLICATIONS Fundamental Practices for Secure Software Development, Third Edition SAFECode Perspective on Cybersecurity Certification Tactical Threat Modeling Managing Security Risks Inherent in the Use of Third-party Components Principles for Software Assurance Assessment Practices for Secure…
Read More