PODCAST · education
Ctrl Alt Defend
by Better Informed Network
Casual yet insightful conversations on the latest in cybersecurity and weekly updates on vulnerabilities and solutions.
-
4
Secure by Design
This episode outlines three core principles: manufacturers taking ownership of customer security outcomes, embracing radical transparency and accountability, and establishing strong leadership commitment to security. The episode provides detailed recommendations for manufacturers to integrate security throughout the software development lifecycle (SDLC), focusing on practices like eliminating default passwords, mandating multi-factor authentication, and utilizing secure coding techniques.
-
3
Securing SMB Supply Chains
This episode highlights six key risk categories—cyber expertise, executive commitment, ICT supply chain risk management, single-source suppliers, supplier disruption, and supplier visibility— impacting IT and communications SMBs. The episode provides use cases illustrating these risks and offers practical mitigation strategies, referencing various government and industry resources. The episode is to empower SMBs to proactively address these vulnerabilities and enhance their cybersecurity posture.
-
2
Securing the Software Supply Chain: Recommended Practices for Developers
This episode offers a guide to securing software supply chains, focusing on recommended practices for developers, suppliers, and customers. with detailed best practices for developers, emphasizing secure coding, build environment hardening, third-party component verification, and vulnerability response. The episode stresses the importance of secure development lifecycle (SDLC) processes, threat modeling, and artifact creation for auditing and verification. We discuss relevant frameworks like NIST SP 800-218 (SSDF) and SLSA, providing a crosswalk between its recommendations and these standards.
-
1
Securing the Software Supply Chain
The episode focuses on the Enterprise Software Framework (ESF), a collaborative group tackling cybersecurity threats to US national security systems. The ESF unites public and private sector experts to address shared challenges. A key area of focus is mitigating software vulnerabilities, referencing the NIST SP 800-218 Secure Software Development Framework (SSDF) as a recommended approach. We also discuss the SLSA framework and various threat mitigation strategies.
We're indexing this podcast's transcripts for the first time — this can take a minute or two. We'll show results as soon as they're ready.
No matches for "" in this podcast's transcripts.
No topics indexed yet for this podcast.
Loading reviews...
ABOUT THIS SHOW
Casual yet insightful conversations on the latest in cybersecurity and weekly updates on vulnerabilities and solutions.
HOSTED BY
Better Informed Network
CATEGORIES
Loading similar podcasts...