Inside CISA’s ‘Secure by Design’ Framework
CISA’s “secure by design” framework is helping software manufacturers bake cybersecurity into products as part of an effort to implement the National Cyber Strategy that the White House released earlier this year. Cybersecurity has traditionally been treated as an afterthought in technology. CISA wants to change that.
CISA Senior Advisor Lauren Zabierek discusses what it means to be secure by design, what the new framework outlines and what it means for vendors and the development community. You’ll hear more about the framework’s three principles:
- Take ownership of customer security outcomes.
- Embrace radical transparency and accountability.
- Lead from the top.
For more secure by design resources:
-
Lauren Zabierek Senior Advisor CISA
-
DOT Advisor: Federal Contracting Must Adapt to Keep Pace With AI
AI is advancing faster than federal procurement cycles, making modular contracts, AI disclosure and new pricing models increasingly critical.
11m watch -
NIST Explores AI’s Role in DevSecOps
Michael Ogata discusses NIST’s latest DevSecOps research, the growing role of AI agents and the need for new approaches to identity and authorization.
4m watch -
Technology Modernization Fund Awaits Congress’ Next Move
The program has helped agencies replace aging systems and improve cybersecurity, but its authority soon expires without congressional action.
3m read -
Gold Eagle Aims to Bring ‘Machine Speed’ to Cyber Defense
The federal AI cybersecurity clearinghouse aims to accelerate vulnerability sharing and remediation as AI increases the pace of discovery.
3m read