THE EUROPEAN PARLIAMENT AND THE COUNCIL OF THE EUROPEAN UNION,| eur-lex.europa.eu
ISC and NLnet Labs today sent a joint letter to the European Parliament committee working on the EU Cyber Resilience Act.| ISC
The NIS2 Directive establishes a unified legal framework to uphold cybersecurity in 18 critical sectors across the EU. It also calls on Member States to define national cybersecurity strategies and collaborate with the EU for cross-border reaction and enforcement.| Shaping Europe’s digital future
Few software development life cycle (SDLC) models explicitly address software security in detail, so secure software development practices usually need to be added to each SDLC model to ensure that the software being developed is well-secured. This document recommends the Secure Software Development Framework (SSDF) – a core set of high-level secure software development practices that can be integrated into each SDLC implementation. Following these practices should help software producers r...| csrc.nist.gov
Zero trust provides a collection of concepts and ideas designed to minimize uncertainty in enforcing accurate, least privilege per-request access decisions in information systems and services in the face of a network viewed as compromised. The goal is to prevent unauthorized access to data and services and make access control enforcement as granular as possible. Zero trust presents a shift from a location-centric model to a more data-centric approach for fine-grained security controls between...| Cybersecurity and Infrastructure Security Agency CISA
Abstract| csrc.nist.gov
Updates Since the open source community started mobilizing to respond to the Cyber Resilience Act, there have been a number of excellent blogs on the topic.| www.isc.org