Safe Software Deployment: How Software Manufacturers Can Ensure Reliability for Customers


Many software manufacturers and service providers deploy software and configuration updates as part of their service offerings. These updates may enhance features and/or address security vulnerabilities to provide benefits and security to customers.

However, software and the systems that deploy software are highly complex and continually evolving, making it challenging to deploy secure updates. It is critical for all software manufacturers to implement a safe software deployment program supported by verified processes, including robust testing and measurements. The program should support and enhance both the security and quality of the product and deployment environment. This guide, authored by the Cybersecurity and Infrastructure Security Agency (CISA) and partners, encourages software manufacturers to establish a safe software deployment program as part of their software development lifecycle (SDLC).

Read more…
Source: U.S. Federal Bureau of Investigation Cyber Division


Sign up for our Newsletter


Related:

  • Pentagon Creates Office of the Assistant Secretary of Defense for Cyber Policy

    April 1, 2024

    On March 21, President Joe Biden nominated Michael Sulmeyer, principal cyber adviser to the secretary of the Army, to serve as assistant secretary of defense for cyber policy, or ASD(CP). Ashley Manning, a career member of the Senior Executive Service, is currently performing the duties of ASD(CP). According to the department, the ASD(CP) will oversee and certify ...

  • Funding delivered to upgrade Fort Eisenhower’s Cyber Center of Excellence

    April 1, 2024

    U.S. Senator Jon Ossoff is delivering $163 million in funding to upgrade Fort Eisenhower’s Cyber Center of Excellence. The funding comes after the Ft. Eisenhower Cyber Center Enhancement Act through the FY24 National Defense Authorization Act was passed, which authorized the construction of new classrooms at the Cyber Center of Excellence. Ossoff’s team says the funding ...

  • AT&T data breach: Millions of customers’ data found on dark web

    March 30, 2024

    AT&T announced on Saturday it is investigating a data breach involving the personal information of more than 70 million current and former customers leaked on the dark web. According to information about the breach on the company’s website, 7.6 million current account holders and 65.4 million former account holders have been impacted. An AT&T press release ...

  • HPSCI: Bill Seeks to Expand Surveillance Powers to Combat International Drug Trafficking

    March 30, 2024

    In a significant move on Capitol Hill, Representatives Chrissy Houlahan (D-PA) and Dan Crenshaw (R-TX), both serving on the House Permanent Select Committee on Intelligence, this week introduced a groundbreaking bipartisan bill aimed at bolstering the United States’ efforts against international drug trafficking networks. The Enhancing Intelligence Collection on Foreign Drug Traffickers Act of 2024 proposes ...

  • Massachusetts healthcare provider warns patients of data breach

    March 29, 2024

    A Massachusetts healthcare provider is warning patients of a recently discovered data breach that compromised some personal information. Brigham and Women’s Physician Organization, a Mass General Brigham Incorporated member, is notifying individuals of an incident it became aware of on Jan. 29, 2024, involving some patients’ personal information. Read more… Source: MSN News  

  • Illinois Tollway warns I-PASS customers of text message phishing scam

    March 26, 2024

    The Illinois Tollway is warning customers of an ongoing phishing scam that is targeting drivers by saying that they have outstanding tolls owed to the agency. According to a press release, the Tollway says that some customers have been receiving text messages from the “Illinois toll way,” detailing outstanding toll amounts that the customers owed. Those ...