Cybersecurity

CISA seeks comment on secure by design principles to boost global software security

Dive Brief: The Cybersecurity and Infrastructure Security Agency is seeking comment on a global effort to improve software security through major changes in development practices. The request for information, released Wednesday, seeks input about how to best incorporate security into the software development life cycle. Specifically, CISA is asking for input on how to tackle […]

Cybersecurity

White House wants to set minimum cyber standards for hospitals, healthcare

Dive Brief: The White House plans to work with the Department of Health and Human Services on a plan to develop minimum standards to protect the healthcare sector from ransomware and other malicious cyber activity, according to Anne Neuberger, deputy national security advisor for cyber and emerging technologies, said Thursday. The administration is working with […]

Cybersecurity

CISA performance goals program trims exploited CVEs

Dive Brief: The Cybersecurity and Infrastructure Security Agency said it is making progress toward reducing security risk since the October 2022 release of its cybersecurity performance goals program, the agency said Tuesday.  Since the release of the CPG program, organizations enrolled in the agency’s vulnerability scanning service have reduced their average number of known exploited […]