
Steve Lipner
@lipner




The National Institute of Standards and Technology white paper on secure software development framework is going to be a very important contribution. We're proud to have worked with NIST on its development.

SAFECode is pleased to see National Institute of Standards and Technology recommend and explain a process-based approach to secure software development in its latest white paper. Learn more about why it matters on our blog and don't miss this must-read for anyone interested in software security. bit.ly/35js6NT




New on the Blog! #SAFECode Executive Director, Steve Steve Lipner discusses how to untangle the role of #secure #software development in supply chain security. Read more here. bit.ly/3iBMAqd #supplychainsecurity


I agree with Phil Venables. National Institute of Standards and Technology has done a great job on the subject of inclusive language and a real public service.

This slide showed the different teams we had and how they worked together to address SDL issues across the product lifecycle with teams. This blueprint was from @MattT_Cyber and Steve Lipner.


The video for the NIST panel on Software Cybersecurity Labeling I participated on with David A. Wheeler Steve Lipner Brian Glas and Tony Rice is now available cdnapisec.kaltura.com/index.php/extw…




First up at #RSAC: Is a Secure Software Supply Chain Even Possible, Let Alone Feasible? Happening on 6/06 at 14:20 with Steve Lipner of SAFECode & Tony Sager of Center for Internet Security (CIS) rsaconference.com/usa/agenda/ses…


Everyone (incl USNationalCybersecurityStrategy bit.ly/3ECkxVb) agrees that vulnerability-free software isn't practical. We appreciate Jeff Williams take on software liability (bit.ly/468m0hy). Developer transparency helps customers make informed choices.

