Updating Risk Assessment in the CERT Secure Coding Standard episode artwork

EPISODE · Apr 17, 2025 · 26 MIN

Updating Risk Assessment in the CERT Secure Coding Standard

from Software Engineering Institute (SEI) Podcast Series · host David Svoboda, Joseph Sible

Evaluating source code to ensure secure coding qualities costs time and effort and often involves static analysis. But those who are familiar with static analysis tools know that the alerts are not always reliable and produce false positives that must be detected and disregarded. This year, we plan on making some exciting updates to the SEI CERT C Coding Standard to better harmonize with the current state of the art for static analysis tools as well as simplify the process of source code security auditing. In this SEI podcast, David Svobodaand Joseph Sible, both engineers in CERT's Applied Systems Group and primary developers and maintainers of the standard, sit down with Robert Schiela, deputy technical director of the Cybersecurity Foundations Directorate in CERT, to discuss the proposed changes, specifically in the area of risk assessment.    

Episode metadata supplied by the publisher feed · Published Apr 17, 2025

Embed this episode

NOW PLAYING

Updating Risk Assessment in the CERT Secure Coding Standard

0:00 26:04

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Software Engineering Institute (SEI) Podcast Series?

This episode is 26 minutes long.

When was this Software Engineering Institute (SEI) Podcast Series episode published?

This episode was published on April 17, 2025.

Can I download this Software Engineering Institute (SEI) Podcast Series episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!