Federal Push for Secure-by-Design: What It Means for Developers

November 7, 2023 at 07:00AM Secure-by-design is becoming a regulatory requirement for critical infrastructure, as outlined in the March 2023 National Cybersecurity Strategy. The concept is important to the federal government, and it is expected to be enforced through an Executive Order. However, there is currently no universally agreed-upon definition or way to measure secure-by-design. … Read more

Microsoft pins hopes on AI once again – this time to patch up Swiss cheese security

November 3, 2023 at 12:11PM Microsoft is launching a new initiative called the Secure Future Initiative (SFI) to enhance the security of its software and cloud services. The SFI focuses on three key pillars, including the increased use of AI in security operations and products, an update of software engineering practices leveraging AI, and ensuring … Read more

Do Small Companies Need Fractional AppSec Teams Akin to vCISOs?

October 24, 2023 at 01:54PM Zatik, a consulting firm founded by Kymberlee Price and Jon Callas, aims to address the lack of application security expertise available to small companies. They provide fractional security consulting services, helping startups and smaller businesses incorporate secure-by-design principles into their software development process. Their goal is to establish a security-focused … Read more

Do Small Companies Need Fractional AppSec Teams Akin to vCISOs?

October 24, 2023 at 01:47PM Secure-by-design software development emphasizes the need to incorporate security considerations from the beginning. Small companies often struggle to access and afford application security expertise, resulting in insecure software. Zatik, a consulting firm founded by Kymberlee Price and Jon Callas, aims to provide fractional security consulting services to help startups and … Read more