Demystifying the 18 Checks for Secure Scorecards
What are Secure Scorecards for open source projects? And how they help you produce secure software.Photo by Glenn Carstens-Peters on Unsplash“No need to remake the wheel.” The reason this cliche exists is that it’s true. If something already exists and works, then recreating it from scratch is inefficient. Open-source code is ... Read More
The Software Bill of Materials and Software Development
Building secure software using the Software Bill of MaterialsPhoto by Josue Isai Ramos Figueroa on UnsplashIn May 2021, the President released the Executive Order on Improving the Nation’s Cybersecurity (Executive Order). The Software Bill of Materials (SBOM) directly impacts all developers. The SBOM requires third-party software companies to provide customers with ... Read More
How to Prevent Supply Chain Attacks by Securing DevOps
Best practices for securing the software supply chainPhoto by Andy Li on UnsplashIn the wake of several highly publicized supply chain attacks, regulatory and media focus is shifting to address third-party software risk. The Department of Defense’s Cybersecurity Maturity Model Certification, established on January 31st, 2020, was the first attempt at creating ... Read More

