04 March 2011

Software Assurance Pocket Guides

The series of pocket guides by the US Department of Homeland Security National Cyber Security Division's Software Assurance (SwA) community has been extended by the addition of three updated documents.

Front covers from the three updated software assurance pocket guides from the Department of Homeland Security (DHS) National Cyber Security Division about Architecture and Design Considerations for Secure Software, Secure Coding and Software Assurance in Education, Training and Certification

Secure Coding (v1.1) and Software Assurance in Education, Training and Certification (v2.1) and Architecture and Design Considerations for Secure Software (v1.3) have been added to the range which now includes:

  • SwA in Acquisition and Outsourcing
    • Software Assurance in Acquisition and Contract Language
    • Software Supply Chain Risk Management and Due Diligence
  • SwA in Development
    • Key Practices for Mitigating the Most Egregious Exploitable Software Weaknesses
    • Software Security Testing
    • Requirements and Analysis for Secure Software
    • Architecture and Design Considerations for Secure Software
    • Secure Coding
  • SwA Life Cycle
    • Software Assurance in Education, Training & Certification

I must admit I had to check the precise meaning of "egregious" (outstandingly bad, flagrant; or distinguished, eminent). There are almost a dozen more guides in the pipeline. These are indespensable references, and free to download. If you have comments or suggestions, please provide feedback to the SwA forum.

Posted on: 04 March 2011 at 07:24 hrs

Comments Comments (0) | Permalink | Send Send | Post to Twitter

Comments

Comments are filtered automatically and should appear shortly after they been checked.

Post a comment
Confirm acceptance and understanding of the terms of use
New posts to this thread will be sent to your email address
Software Assurance Pocket Guides
http://www.clerkendweller.com/2011/3/4/Software-Assurance-Pocket-Guides
ISO/IEC 18004:2006 QR code for http://clerkendweller.com

Page http://www.clerkendweller.com/2011/3/4/Software-Assurance-Pocket-Guides
Requested by 38.107.179.223 on Thursday, 17 May 2012 at 22:54 hrs (London date/time)

Please read our terms of use and obtain professional advice before undertaking any actions based on the opinions, suggestions and generic guidance presented here. Your organisation's situation will be unique and all practices and controls need to be assessed with consideration of your own business context.

Terms of use http://www.clerkendweller.com/page/terms
Privacy statement http://www.clerkendweller.com/page/privacy
© 2011-2012 clerkendweller.com