Tech Companies Promise 'Secure by Design' Products
ID: 7ff9e4e3-0cea-5b90-b9c2-8e493210331b
STIX ID: report--7ff9e4e3-0cea-5b90-b9c2-8e493210331b
Feed Name: Dark Reading
Date Published: 2024-05-09
Date Updated: 2026-04-21
Author: Fahmida Y. Rashid, Managing Editor, Features, Dark Reading
At RSA Conference 2024, CISA advanced its Secure by Design initiative with over 60 vendors pledging to prioritize security throughout the product lifecycle, focusing on goals like multifactor authentication, eliminating default passwords, reducing vulnerability classes, boosting patch adoption, formal VDPs, timely CVE transparency, and enabling customer intrusion evidence collection. CISA provided a self-attestation framework and repository to support secure development practices, with signatories including major vendors such as AWS, Cisco, Google, Microsoft, and Palo Alto Networks. The effort aims to shift security responsibility from end users to manufacturers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
