Software Engineering Institute (SEI) Podcast Series

Members of Technical Staff at the Software Engineering Institute

430 episodes listed below

Listen to the show on

PRESS PLAY

Find your next episode

All episodes

In their own words

The SEI Podcast Series presents conversations in software engineering, cybersecurity, and future technologies.

As heard by us

Based on 6 episodes we listened to · September 2026

SEI turns engineering research into concrete discussions of deployment constraints, security failures, organizational authority, and operational tradeoffs.

The Software Engineering Institute (SEI) Podcast Series keeps technical systems tied to the conditions in which they must actually work. Its interviewer-led conversations move from Kubernetes deployments on disconnected edge devices and Docker container security to wireless…

Read our full review in PlayNext →

Why you'd press play

Sneakernet meets Kubernetes here, if you like your infrastructure problems with actual physical logistics.

Press play if you want

  • to understand why a big edge deployment package can leave Zarf spinning its wheels
  • to follow an LLM bias audit into some oddly specific name-and-role associations
Read the full recommendation in PlayNext →

Talks about

Best episodes of Software Engineering Institute (SEI) Podcast Series

Short reviews from the PlayNext desk, based on the episodes we processed.

The Best and Brightest: 6 Years of Supporting the President's Cup Cybersecurity Competition

A practical look at cybersecurity competition as repeatable training built from real-world events.

This SEI podcast episode frames the President's Cup as more than a cybersecurity contest. Its focus is practical engineering: taking real-world incidents, including supply chain attacks, and turning them into scenarios federal professionals can investigate, mitigate, and…

Mitigating Cyber Risk with Secure by Design

A sober, practical episode on turning secure-by-design principles into organizational and software-development habits.

The episode takes a broad warning about cyber risk and brings it down to the level of everyday software practice: how organizations can make security part of the work before anything reaches a customer.

Getting Your Software Supply Chain In Tune with SBOM Harmonization

SBOM comparability can turn on version strings and dependency choices that different tools, producers, and consumers handle differently.

SBOMs come through here as a practical way to understand software supply-chain risk, but the episode is most useful when it shows how fragile comparison can be. Matthew Bukovic of the SEI CERT Division speaks with Dr.

AI for the Warfighter: Acquisition Challenges and Guidance

A measured review of why faster military AI acquisition still needs disciplined engineering and human review.

The episode looks at the pressure point between fast military software buying and the slower discipline that higher-risk AI work still demands.

Improving Machine Learning Test and Evaluation with MLTE

A practical look at how MELT turns ML test and evaluation into a process teams can work with.

Machine learning test and evaluation sits at the center of this episode, and its real value is in making MELT feel usable at design time. Grace Lewis keeps the focus on deployment realities, while Alex Durr, Sebastiana Chavarria, and Kate Maffey turn concerns like CPU, memory,…

DOD Software Modernization: SEI Impact and Innovation

A grounded case for iterative delivery in modernization.

The SEI Podcast Series treats software modernization as an operating problem, not a slogan. Paul Nielsen and Matthew Bukovic spend much of the episode on the move away from years-long requirements studies and toward iterative delivery, and the references to Netflix, Amazon,…

Visibility Through the Clouds with Network Flow Logs

Cloud flow logs are presented as a proactive monitoring habit, not a cleanup step after trouble starts.

The episode treats cloud flow logs as something teams should look at before an incident, not after one. It works best when it moves from the shared security model into the plain question of what to watch and how to begin collecting logs.

Podcasts like Software Engineering Institute (SEI) Podcast Series

  • Software Engineering Dailysoftwareengineeringdaily.com

    Long-form interviews on AI coding agents, infrastructure, and security, plus a recurring SED News roundup.

  • The Changelog: Software Development, Open SourceChangelog Media

    Founders and engineers on AI coding agents like Claude Code, and supply chain security.

  • The Stack Overflow PodcastThe Stack Overflow Podcast

    Stack Overflow's Ryan Donovan interviews founders and engineers on AI agents, protocols, and dev tools.

  • Talk Python To MeMichael Kennedy

    Michael Kennedy interviews Python maintainers on packaging, security, web tools, and AI.

  • Python BytesMichael Kennedy and Brian Okken

    Michael Kennedy and Brian Okken run down the week's Python tooling, typing, and packaging news.

  • Arrested DevOpsMatt Stratton, Trevor Hess, Jessica Kerr, and Bridget Kromhout

    Matt Stratton interviews DevOps practitioners on security, platform engineering, and trusting AI-written code.

Episodes

  1. 1

    The Magic in the Middle: Evolving Scaled Software Solutions for National Defense

    Hidden gem

    Matthew Bukovic interviews Dr.

    ·21m·1 clip
  2. 2

    An Introduction to Software Cost Estimation

    ·23m
  3. 3

    The Benefits of Rust Adoption for Mission-and-Safety-Critical Systems

    An SEI podcast interview where DevOps engineer Vaughn Coates discusses the benefits of adopting the Rust programming language for mission-and-safety-critical systems.

    ·20m·1 clip
  4. 4

    Visibility Through the Clouds with Network Flow Logs

    This episode explores how cloud flow logs enhance cyber situational awareness in cloud infrastructure, featuring SEI experts Tim Schimel and Ikem Mokafo.

    ·36m·3 clips
  5. 5

    Updating Risk Assessment in the CERT Secure Coding StandardUpdating Risk Assessment in the CERT Secure Coding Standard

    David Svoboda and Joseph Seibel discuss proposed updates to the SEI CERT secure coding standard, focusing on revising risk assessment metrics to better prioritize automated detection and repair.

    ·26m·2 clips
  6. 6

    Grace Lewis Outlines Vision for IEEE Computer Society Presidency

    Grace Lewis, principal researcher at the Software Engineering Institute and newly elected president of IEEE Computer Society for 2026, discusses her vision for advancing computer science through volunteer leadership, industry engagement, and emerging technology initiatives.

    ·18m·1 clip
  7. 7

    3 Key Elements for Designing Secure Systems

    Tim Chick discusses key elements for designing secure systems, including the importance of addressing design defects, integrating abuse cases, managing open source risks, using SBOMs, and balancing security with user experience through secure-by-default practices.

    ·36m·3 clips
  8. 8

    Understanding Container Reproducibility Challenges: Stopping the Next Solar Winds

    Hidden gem

    Grace Lewis, a principal researcher at the Carnegie Mellon University Software Engineering Institute, frames the episode around container builds that should match but often do not because of timestamps, random numbers, and external dependencies.

    ·25m·1 clip
  9. 9

    Improving Machine Learning Test and Evaluation with MLTE

    Hidden gem

    The SEI Podcast Series episode "Improving Machine Learning Test and Evaluation with MLTE" brings together Grace Lewis, Sebastiana Chavarria, Alex Durr, and Army data scientist Kate Maffey to discuss a tool that started as a Carnegie Mellon University capstone project.

    ·29m·1 clip
  10. 10

    Getting Your Software Supply Chain In Tune with SBOM Harmonization

    Hidden gem

    SEI’s Matthew Bukovic and cybersecurity engineer Dr.

    ·23m·1 clip
  11. 11

    AI for the Warfighter: Acquisition Challenges and Guidance

    ·25m·25 clips
  12. 12

    Getting the Most Out of Your Insider Risk Data with IIDES

    Hidden gem

    The SEI Podcast Series episode on IDES centers on Austin Wisnant and Dan Costa explaining the Insider Incident Data Expression Standard, which the SEI released on GitHub alongside documentation and a JSON schema.

    ·39m·2 clips
  13. 13

    Mitigating Cyber Risk with Secure by Design

    Hidden gem

    Greg Tuhill and Matthew Pekovic connect ransomware, critical infrastructure, and the January 2024 FBI warning about China exploiting security weaknesses in U.S.

    ·32m·2 clips
  14. 14

    What Could Possibly Go Wrong? Safety Analysis for AI Systems

    A self-hosted LLM shows how a very ordinary-looking workflow can turn unsafe.

    ·36m·20 clips
  15. 15

    With a Little Help from Our Civilian Friends: Cybersecurity Reserve Is Both Feasible and Advisable

    Mike Winter opens by introducing a report to Congress on creating a civilian cybersecurity reserve.

    ·49m·45 clips
  16. 16

    Orchestrating the Chaos: Protecting Wireless Networks from Cyber Attacks

    It opens on a serious wireless-security problem.

    ·37m·25 clips
  17. 17

    DOD Software Modernization: SEI Impact and Innovation

    Hidden gem

    Matthew Bukovic, technical director of cyber risk and resilience in the CERT division at the Software Engineering Institute, speaks with Paul Nielsen, the SEI’s director and CEO and a former U.S.

    ·27m·1 clip
  18. 18

    Securing Docker Containers: Techniques, Challenges, and Tools

    Tim Chick opens the SEI podcast with two colleagues from the Applied Systems Group, Max Chudina and Sasank Vishlabhatla.

    ·39m·7 clips
  19. 19

    Threat Modeling: Protecting Our Nation's Complex Software-Intensive Systems

    Tim Chick frames threat modeling as a cybersecurity way to think about software-intensive systems.

    ·35m·2 clips
  20. 20

    Delivering Next-Generation AI Capabilities

    Matthew Bukovic opens by situating the SEI as a federally funded research and development center sponsored by the U.S.

    ·30m·1 clip
  21. 21

    Making Process Respectable Again: Advancing DevSecOps in the DoD Mission Space

    This episode discusses a SEI study on the state of DevSecOps in the DOD, highlighting success stories like MEPCOM's transformation and key findings on leadership, culture, and process.

    ·44m·4 clips
  22. 22

    Deploying on the Edge

    SEI researchers discuss deploying cloud-native technologies like Kubernetes on resource-constrained edge devices, covering challenges such as air-gapped environments, automation with tools like Harvester and Zarf, and security considerations including DevSecOps practices.

    ·1h 1m·5 clips
  23. 23

    The Best and Brightest: 6 Years of Supporting the President's Cup Cybersecurity Competition

    Hidden gem

    The finals bring the top 10 defensive, top 10 offensive, and top 5 teams to compete in person.

    ·22m·1 clip
  24. 24

    Maturing AI Adoption: From Chaos to Consistency

    Hidden gem

    Matthew Bukovic opens with the 2025 Stanford Artificial Intelligence Index, Gartner’s trough of disillusionment, and an MIT report that says 95% of organizations using generative AI saw zero return on $30 to $40 billion in spending.

    ·26m·1 clip
  25. 25

    From Data to Performance: Understanding and Improving Your AI Model

    Linda Parker-Gates opens the conversation from the SEI's Washington, D.C.

    ·27m·10 clips
  26. 26

    API Security: An Emerging Concern in Zero Trust Implementations

    An expert interview exploring how API security fits into zero trust implementations, covering vulnerabilities, monitoring strategies, and the growing role of machine learning in protecting application interfaces.

    ·18m·1 clip
  27. 27

    Delivering Next Generation Cyber Capabilities to the DoD Warfighter

    Matthew Bukovic interviews General Greg Tuhill, Director of CERT at SEI, about how the institute delivers cyber capabilities to the Department of Defense and beyond.

    ·27m·2 clips
  28. 28

    Temporal Memory Safety in C and C++: An AI-Enhanced Pointer Ownership Model

    ·24m
  29. 29

    Leadership, Legacy, and the Power of Mentors: Insights from Dr. Paul Nielsen

    ·19m
  30. 30

    Using Role-Playing Scenarios to Identify Bias in LLMs

    SEI researchers Katie Robinson and Violet Turi discuss their experiment using role-playing scenarios to uncover bias in large language models like ChatGPT.

    ·45m·4 clips
  31. 31

    Cybersecurity Metrics: Protecting Data and Understanding Threats

    Hidden gem

    Suzanne Miller and Bill Nichols focus on cybersecurity metrics, with Bill tying the topic to his SEI work in software engineering measurement and analysis.

    ·27m·1 clip
  32. 32

    Goal-Line Defense: A Tool to Discover and Mitigate UEFI Vulnerabilities

    Discussion of a newly identified UEFI vulnerability and the CIRC UEFI Parser tool for analyzing firmware vulnerabilities.

    Apr 15, 2026·41m
  33. 33

    Best Practices and Lessons Learned in Standing Up an AISIRT

    An interview with Lauren McIlvaney about the current AI threat landscape and the formation of an AI security incident response team at the SEI.

    Sep 9, 2024·38m
  34. 34

    3 API Security Risks (and How to Protect Against Them)

    A discussion about API vulnerabilities and their impact on zero trust security, featuring a new engineer at the SEI.

    Aug 22, 2024·19m
  35. 35

    Evaluating Large Language Models for Cybersecurity Tasks: Challenges and Best Practices

    Researchers discuss their collaboration with OpenAI to develop 14 recommendations for evaluating large language models for cybersecurity tasks.

    Jul 25, 2024·43m
  36. 36

    Capability-based Planning for Early-Stage Software Development

    A discussion on capability-based planning, its benefits and drawbacks, and how to implement it in software engineering contexts.

    Jul 18, 2024·34m
  37. 37

    Safeguarding Against Recent Vulnerabilities Related to Rust

    Jul 1, 2024·26m
  38. 38

    Developing a Global Network of Computer Security Incident Response Teams (CSIRTs)

    Jun 21, 2024·31m
  39. 39

    Automated Repair of Static Analysis Alerts

    May 31, 2024·27m
  40. 40

    Developing and Using a Software Bill of Materials Framework

    Apr 4, 2024·38m
  41. 41

    Using Large Language Models in the National Security Realm

    Feb 16, 2024·35m
  42. 42

    Atypical Applications of Agile and DevSecOps Principles

    Feb 9, 2024·34m
  43. 43

    When Agile and Earned Value Management Collide: 7 Considerations for Successful Interaction

    Jan 31, 2024·35m
  44. 44

    The Impact of Architecture on Cyber-Physical Systems Safety

    Jan 24, 2024·34m
  45. 45

    ChatGPT and the Evolution of Large Language Models: A Deep Dive into 4 Transformative Case Studies

    Dec 14, 2023·46m
  46. 46

    The Cybersecurity of Quantum Computing: 6 Areas of Research

    Nov 28, 2023·23m
  47. 47

    User-Centric Metrics for Agile

    Nov 16, 2023·32m
  48. 48

    The Product Manager's Evolving Role in Software and Systems Development

    Nov 10, 2023·24m
  49. 49

    Measuring the Trustworthiness of AI Systems

    Oct 12, 2023·19m
  50. 50

    Actionable Data in the DevSecOps Pipeline

    Sep 13, 2023·32m
  51. 51

    Insider Risk Management in the Post-Pandemic Workplace

    Sep 8, 2023·48m
  52. 52

    An Agile Approach to Independent Verification and Validation

    Aug 9, 2023·32m
  53. 53

    Zero Trust Architecture: Best Practices Observed in Industry

    Jul 26, 2023·28m
  54. 54

    Automating Infrastructure as Code with Ansible and Molecule

    Jul 10, 2023·40m
  55. 55

    Identifying and Preventing the Next SolarWinds

    Jun 20, 2023·46m
  56. 56

    A Penetration Testing Findings Repository

    Jun 13, 2023·26m
  57. 57

    Understanding Vulnerabilities in the Rust Programming Language

    Jun 8, 2023·37m
  58. 58

    We Live in Software: Engineering Societal-Scale Systems

    May 18, 2023·40m
  59. 59

    Secure by Design, Secure by Default

    May 10, 2023·54m
  60. 60

    Key Steps to Integrate Secure by Design into Acquisition and Development

    May 2, 2023·49m
  61. 61

    An Exploration of Enterprise Technical Debt

    Apr 18, 2023·26m
  62. 62

    The Messy Middle of Large Language Models

    Mar 29, 2023·34m
  63. 63

    An Infrastructure-Focused Framework for Adopting DevSecOps

    Mar 21, 2023·44m
  64. 64

    Software Security in Rust

    Mar 15, 2023·18m
  65. 65

    Improving Interoperability in Coordinated Vulnerability Disclosure with Vultron

    Feb 24, 2023·51m
  66. 66

    Asking the Right Questions to Coordinate Security in the Supply Chain

    Feb 7, 2023·31m
  67. 67

    Securing Open Source Software in the DoD

    Jan 26, 2023·36m
  68. 68

    A Model-Based Tool for Designing Safety-Critical Systems

    Dec 13, 2022·49m
  69. 69

    Managing Developer Velocity and System Security with DevSecOps

    An interview discussing the deployment of DevSecOps practices to balance developer velocity and cybersecurity enforcement.

    Dec 7, 2022·33m
  70. 70

    A Method for Assessing Cloud Adoption Risks

    Nov 17, 2022·22m
  71. 71

    Software Architecture Patterns for Deployability

    Nov 15, 2022·29m
  72. 72

    ML-Driven Decision Making in Realistic Cyber Exercises

    Oct 13, 2022·49m
  73. 73

    A Roadmap for Creating and Using Virtual Prototyping Software

    Oct 6, 2022·57m
  74. 74

    Software Architecture Patterns for Robustness

    Sep 15, 2022·31m
  75. 75

    A Platform-Independent Model for DevSecOps

    An interview with Tim Chick and Joseph Yankle about their work on a platform-independent model for DevSecOps.

    Sep 8, 2022·24m
  76. 76

    Using the Quantum Approximate Optimization Algorithm (QAOA) to Solve Binary-Variable Optimization Problems

    Aug 18, 2022·28m
  77. 77

    Trust and AI Systems

    Aug 5, 2022·35m
  78. 78

    A Dive into Deepfakes

    Jul 28, 2022·32m
  79. 79

    Challenges and Metrics in Digital Engineering

    Jul 13, 2022·42m
  80. 80

    The 4 Phases of the Zero Trust Journey

    Jul 5, 2022·34m
  81. 81

    DevSecOps for AI Engineering

    Discussion on engineering AI systems with SecDevOps, covering challenges and strategies for organizations.

    Jun 21, 2022·43m
  82. 82

    Undiscovered Vulnerabilities: Not Just for Critical Software

    Jun 2, 2022·35m
  83. 83

    Explainable AI Explained

    May 16, 2022·26m
  84. 84

    Model-Based Systems Engineering Meets DevSecOps

    This episode introduces ModDevOps, an extension of DevSecOps that integrates model-based systems engineering practices, with guests discussing their work at the SEI.

    Apr 5, 2022·34m
  85. 85

    Incorporating Supply-Chain Risk and DevSecOps into a Cybersecurity Strategy

    Dr.

    Mar 22, 2022·32m
  86. 86

    Software and Systems Collaboration in the Era of Smart Systems

    Mar 9, 2022·26m
  87. 87

    Securing the Supply Chain for the Defense Industrial Base

    Feb 22, 2022·19m
  88. 88

    Securing the Supply Chain for the Defense Industrial Base

    Feb 22, 2022·19m
  89. 89

    Building on Ghidra: Tools for Automating Reverse Engineering and Malware Analysis

    Feb 8, 2022·23m
  90. 90

    Envisioning the Future of Software Engineering

    Jan 20, 2022·40m
  91. 91

    Implementing the DoD's Ethical AI Principles

    Jan 11, 2022·23m
  92. 92

    Walking Fast Into the Future: Evolvable Technical Reference Frameworks for Mixed-Criticality Systems

    Dec 3, 2021·40m
  93. 93

    Software Engineering for Machine Learning: Characterizing and Understanding Mismatch in ML Systems

    Nov 18, 2021·30m
  94. 94

    A Discussion on Automation with Watts Humphrey Award Winner Rajendra Prasad

    Nov 11, 2021·37m
  95. 95

    Enabling Transition From Sustainment to Engineering Within the DoD

    Nov 3, 2021·31m
  96. 96

    The Silver Thread of Cyber in the Global Supply Chain

    Oct 25, 2021·27m
  97. 97

    Measuring DevSecOps: The Way Forward

    Oct 15, 2021·40m
  98. 98

    Bias in AI: Impact, Challenges, and Opportunities

    Sep 23, 2021·25m
  99. 99

    Agile Strategic Planning: Concepts and Methods for Success

    Sep 9, 2021·30m
  100. 100

    Applying Scientific Methods in Cybersecurity

    Aug 24, 2021·40m
  101. 101

    Zero Trust Adoption: Benefits, Applications, and Resources

    Aug 13, 2021·30m
  102. 102

    Uncertainty Quantification in Machine Learning: Measuring Confidence in Predictions

    Aug 6, 2021·32m
  103. 103

    11 Rules for Ensuring a Security Model with AADL and Bell–LaPadula

    Jul 29, 2021·48m
  104. 104

    Benefits and Challenges of Model-Based Systems Engineering

    Jul 23, 2021·33m
  105. 105

    Can DevSecOps Make Developers Happier?

    Jun 24, 2021·41m
  106. 106

    Is Your Organization Ready for AI?

    Jun 22, 2021·30m
  107. 107

    Managing Vulnerabilities in Machine Learning and Artificial Intelligence Systems

    Jun 4, 2021·41m
  108. 108

    AI Workforce Development

    May 20, 2021·35m
  109. 109

    Moving from DevOps to DevSecOps

    May 13, 2021·41m
  110. 110

    Mission-Based Prioritization: A New Method for Prioritizing Agile Backlogs

    Apr 23, 2021·13m
  111. 111

    Digital Engineering and DevSecOps

    Mar 16, 2021·31m
  112. 112

    A 10-Step Framework for Managing Risk

    Mar 9, 2021·31m
  113. 113

    7 Steps to Engineer Security into Ongoing and Future Container Adoption Efforts

    Feb 23, 2021·20m
  114. 114

    Ransomware: Evolution, Rise, and Response

    Feb 16, 2021·33m
  115. 115

    VINCE: A Software Vulnerability Coordination Platform

    Jan 21, 2021·38m
  116. 116

    Work From Home: Threats, Vulnerabilities, and Strategies for Protecting Your Network

    Jan 6, 2021·46m
  117. 117

    An Introduction to CMMC Assessment Guides

    Dec 8, 2020·8m
  118. 118

    The CMMC Level 1 Assessment Guide: A Closer Look

    Dec 7, 2020·21m
  119. 119

    The CMMC Level 3 Assessment Guide: A Closer Look

    Dec 7, 2020·14m
  120. 120

    Achieving Continuous Authority to Operate (ATO)

    Nov 24, 2020·33m
  121. 121

    Challenging the Myth of the 10x Programmer

    Nov 9, 2020·17m
  122. 122

    A Stakeholder-Specific Approach to Vulnerability Management

    Oct 27, 2020·37m
  123. 123

    Optimizing Process Maturity in CMMC Level 5

    Oct 13, 2020·9m
  124. 124

    Reviewing and Measuring Activities for Effectiveness in CMMC Level 4

    Oct 7, 2020·13m
  125. 125

    Situational Awareness for Cybersecurity: Beyond the Network

    Sep 30, 2020·26m
  126. 126

    Quantum Computing: The Quantum Advantage

    Sep 17, 2020·31m
  127. 127

    CMMC Scoring 101

    Sep 2, 2020·11m
  128. 128

    Developing an Effective CMMC Policy

    Aug 17, 2020·10m
  129. 129

    The Future of Cyber: Educating the Cybersecurity Workforce

    Aug 10, 2020·28m
  130. 130

    Documenting Process for CMMC

    Jul 30, 2020·10m
  131. 131

    Agile Cybersecurity

    Jul 20, 2020·26m
  132. 132

    CMMC Levels 1-3: Going Beyond NIST SP-171

    Jul 1, 2020·13m
  133. 133

    The Future of Cyber: Secure Coding

    Jun 15, 2020·41m
  134. 134

    Challenges to Implementing DevOps in Highly Regulated Environments

    May 28, 2020·39m
  135. 135

    The Future of Cyber: Cybercrime

    May 7, 2020·35m
  136. 136

    An Ethical AI Framework

    Apr 28, 2020·16m
  137. 137

    The CERT Guide to Coordinated Vulnerability Disclosure

    Mar 26, 2020·35m
  138. 138

    The Future of Cyber: Security and Privacy

    Feb 26, 2020·25m
  139. 139

    The Future of Cyber: Security and Resilience

    Feb 14, 2020·33m
  140. 140

    Reverse Engineering Object-Oriented Code with Ghidra and New Pharos Tools

    Feb 7, 2020·8m
  141. 141

    Benchmarking Organizational Incident Management Practices

    Dec 17, 2019·35m
  142. 142

    Machine Learning in Cybersecurity: 7 Questions for Decision Makers

    Dec 11, 2019·28m
  143. 143

    Human Factors in Software Engineering

    Nov 12, 2019·47m
  144. 144

    Improving the Common Vulnerability Scoring System

    Oct 4, 2019·21m
  145. 145

    Why Software Architects Must Be Involved in the Earliest Systems Engineering Activities

    Oct 1, 2019·22m
  146. 146

    Selecting Metrics for Software Assurance

    Sep 24, 2019·19m
  147. 147

    AI in Humanitarian Assistance and Disaster Response

    Sep 18, 2019·22m
  148. 148

    The AADL Error Library: 4 Families of Systems Errors

    Aug 30, 2019·24m
  149. 149

    Privacy in the Blockchain Era

    Jul 29, 2019·28m
  150. 150

    Cyber Intelligence: Best Practices and Biggest Challenges

    Jul 25, 2019·36m
  151. 151

    Assessing Cybersecurity Training

    Jul 12, 2019·14m
  152. 152

    DevOps in Highly Regulated Environments

    Jun 27, 2019·41m
  153. 153

    The Role of the Software Factory in Acquisition and Sustainment

    Jun 11, 2019·25m
  154. 154

    Defending Your Organization Against Business Email Compromise

    May 30, 2019·44m
  155. 155

    Managing Technical Debt: A Focus on Automation, Design, and Architecture

    Mar 21, 2019·35m
  156. 156

    Leading in the Age of Artificial Intelligence

    Mar 1, 2019·22m
  157. 157

    Applying Best Practices in Network Traffic Analysis

    Feb 27, 2019·22m
  158. 158

    10 Types of Application Security Testing Tools and How to Use Them

    Feb 25, 2019·20m
  159. 159

    Blockchain at CMU and Beyond

    Feb 18, 2019·46m
  160. 160

    Using Test Suites for Static Analysis Alert Classifiers

    Feb 18, 2019·30m
  161. 161

    Leading in the Age of Artificial Intelligence

    Feb 15, 2019·22m
  162. 162

    System Architecture Virtual Integration: ROI on Early Discovery of Defects

    Nov 15, 2018·29m
  163. 163

    A Technical Strategy for Cybersecurity

    Nov 4, 2018·15m
  164. 164

    Best Practices for Security in Cloud Computing

    Oct 26, 2018·19m
  165. 165

    Risks, Threats, and Vulnerabilities in Moving to the Cloud

    Oct 22, 2018·18m
  166. 166

    How to Be a Network Traffic Analyst

    Sep 14, 2018·21m
  167. 167

    Workplace Violence and Insider Threat

    Aug 28, 2018·15m
  168. 168

    Why Does Software Cost So Much?

    Aug 2, 2018·31m
  169. 169

    Cybersecurity Engineering & Software Assurance: Opportunities & Risks

    Jul 26, 2018·9m
  170. 170

    Software Sustainment and Product Lines

    Jul 10, 2018·28m
  171. 171

    Best Practices in Cyber Intelligence

    Jun 25, 2018·19m
  172. 172

    The Evolving Role of the Chief Risk Officer

    May 24, 2018·28m
  173. 173

    Obsidian: A Safer Blockchain Programming Language

    May 10, 2018·32m
  174. 174

    Agile DevOps

    Apr 19, 2018·33m
  175. 175

    Is Software Spoiling Us? Technical Innovations in the Department of Defense

    Mar 15, 2018·21m
  176. 176

    Is Software Spoiling Us? Innovations in Daily Life from Software

    Feb 8, 2018·17m
  177. 177

    How Risk Management Fits into Agile & DevOps in Government

    Feb 1, 2018·34m
  178. 178

    5 Best Practices for Preventing and Responding to Insider Threat

    Dec 28, 2017·11m
  179. 179

    Pharos Binary Static Analysis: An Update

    Dec 12, 2017·10m
  180. 180

    Positive Incentives for Reducing Insider Threat

    Nov 30, 2017·24m
  181. 181

    Mission-Practical Biometrics

    Nov 16, 2017·21m
  182. 182

    At Risk Emerging Technology Domains

    Oct 24, 2017·11m
  183. 183

    DNS Blocking to Disrupt Malware

    Oct 12, 2017·15m
  184. 184

    Best Practices: Network Border Protection

    Sep 21, 2017·24m
  185. 185

    Verifying Software Assurance with IBM's Watson

    Sep 7, 2017·20m
  186. 186

    The CERT Software Assurance Framework

    Aug 31, 2017·19m
  187. 187

    Scaling Agile Methods

    Aug 3, 2017·24m
  188. 188

    Ransomware: Best Practices for Prevention and Response

    Jul 14, 2017·30m
  189. 189

    Integrating Security in DevOps

    Jun 29, 2017·29m
  190. 190

    SEI Fellows Series: Peter Feiler

    Jun 15, 2017·41m
  191. 191

    NTP Best Practices

    May 25, 2017·12m
  192. 192

    Establishing Trust in Disconnected Environments

    May 18, 2017·18m
  193. 193

    Distributed Artificial Intelligence in Space

    Apr 20, 2017·18m
  194. 194

    Verifying Distributed Adaptive Real-Time Systems

    Mar 27, 2017·47m
  195. 195

    10 At-Risk Emerging Technologies

    Mar 23, 2017·17m
  196. 196

    Technical Debt as a Core Software Engineering Practice

    Feb 27, 2017·23m
  197. 197

    DNS Best Practices

    Feb 23, 2017·27m
  198. 198

    Three Roles and Three Failure Patterns of Software Architects

    Jan 26, 2017·14m
  199. 199

    Security Modeling Tools

    Jan 12, 2017·24m
  200. 200

    Best Practices for Preventing and Responding to Distributed Denial of Service (DDoS) Attacks

    Dec 19, 2016·33m
  201. 201

    Cyber Security Engineering for Software and Systems Assurance

    Dec 8, 2016·18m
  202. 202

    Moving Target Defense

    Nov 30, 2016·13m
  203. 203

    Improving Cybersecurity Through Cyber Intelligence

    Nov 10, 2016·19m
  204. 204

    A Requirement Specification Language for AADL

    Oct 27, 2016·31m
  205. 205

    Becoming a CISO: Formal and Informal Requirements

    Oct 19, 2016·24m
  206. 206

    Predicting Quality Assurance with Software Metrics and Security Methods

    Oct 13, 2016·11m
  207. 207

    Network Flow and Beyond

    Sep 29, 2016·25m
  208. 208

    A Community College Curriculum for Secure Software Development

    Sep 15, 2016·20m
  209. 209

    Security and the Internet of Things

    Aug 25, 2016·17m
  210. 210

    The SEI Fellow Series: Nancy Mead

    Aug 10, 2016·29m
  211. 211

    An Open Source Tool for Fault Tree Analysis

    Jul 28, 2016·14m
  212. 212

    Global Value Chain – An Expanded View of the ICT Supply Chain

    Jul 18, 2016·30m
  213. 213

    Intelligence Preparation for Operational Resilience

    Jun 21, 2016·27m
  214. 214

    Evolving Air Force Intelligence with Agile Techniques

    May 26, 2016·17m
  215. 215

    Threat Modeling and the Internet of Things

    May 12, 2016·18m
  216. 216

    Open Systems Architectures: When & Where to Be Closed

    Apr 14, 2016·20m
  217. 217

    Toward Efficient and Effective Software Sustainment

    Mar 18, 2016·23m
  218. 218

    Effective Reduction of Avoidable Complexity in Embedded Systems

    Mar 18, 2016·19m
  219. 219

    Quality Attribute Refinement and Allocation

    Mar 8, 2016·24m
  220. 220

    Is Java More Secure Than C?

    Feb 19, 2016·18m
  221. 221

    Identifying the Architectural Roots of Vulnerabilities

    Feb 4, 2016·24m
  222. 222

    Build Security In Maturity Model (BSIMM) – Practices from Seventy Eight Organizations

    Feb 3, 2016·31m
  223. 223

    An Interview with Grady Booch

    Jan 12, 2016·18m
  224. 224

    Structuring the Chief Information Security Officer Organization

    Dec 23, 2015·31m
  225. 225

    How Cyber Insurance Is Driving Risk and Technology Management

    Nov 9, 2015·21m
  226. 226

    A Field Study of Technical Debt

    Oct 15, 2015·20m
  227. 227

    How the University of Pittsburgh Is Using the NIST Cybersecurity Framework

    Oct 1, 2015·24m
  228. 228

    A Software Assurance Curriculum for Future Engineers

    Sep 24, 2015·20m
  229. 229

    Four Types of Shift Left Testing

    Sep 10, 2015·27m
  230. 230

    Toward Speed and Simplicity: Creating a Software Library for Graph Analytics

    Aug 27, 2015·16m
  231. 231

    Capturing the Expertise of Cybersecurity Incident Handlers

    Aug 27, 2015·26m
  232. 232

    Improving Quality Using Architecture Fault Analysis with Confidence Arguments

    Aug 13, 2015·18m
  233. 233

    A Taxonomy of Testing Types

    Jul 30, 2015·17m
  234. 234

    Reducing Complexity in Software & Systems

    Jul 16, 2015·19m
  235. 235

    Designing Security Into Software-Reliant Systems

    Jun 25, 2015·12m
  236. 236

    Agile Methods in Air Force Sustainment

    Jun 11, 2015·12m
  237. 237

    Defect Prioritization With the Risk Priority Number

    May 28, 2015·18m
  238. 238

    SEI-HCII Collaboration Explores Context-Aware Computing for Soldiers

    May 14, 2015·20m
  239. 239

    An Introduction to Context-Aware Computing

    Apr 23, 2015·19m
  240. 240

    Data Driven Software Assurance

    Apr 9, 2015·30m
  241. 241

    Applying Agile in the DoD: Twelfth Principle

    Mar 26, 2015·12m
  242. 242

    Supply Chain Risk Management: Managing Third Party and External Dependency Risk

    Mar 26, 2015·28m
  243. 243

    Introduction to the Mission Thread Workshop

    Mar 12, 2015·24m
  244. 244

    Applying Agile in the DoD: Eleventh Principle

    Feb 26, 2015·14m
  245. 245

    A Workshop on Measuring What Matters

    Feb 20, 2015·31m
  246. 246

    Applying Agile in the DoD: Tenth Principle

    Feb 12, 2015·14m
  247. 247

    Predicting Software Assurance Using Quality and Reliability Measures

    Jan 29, 2015·19m
  248. 248

    Applying Agile in the DoD: Ninth Principle

    Jan 16, 2015·18m
  249. 249

    Cyber Insurance and Its Role in Mitigating Cybersecurity Risk

    Jan 8, 2015·37m
  250. 250

    AADL and Dassault Aviation

    Dec 18, 2014·9m
  251. 251

    Tactical Cloudlets

    Dec 4, 2014·32m
  252. 252

    Agile Software Teams and How They Engage with Systems Engineering on DoD Acquisition Programs

    Nov 27, 2014·12m
  253. 253

    Coding with AADL

    Nov 13, 2014·20m
  254. 254

    The State of Agile

    Oct 30, 2014·28m
  255. 255

    Applying Agile in the DoD: Eighth Principle

    Oct 9, 2014·13m
  256. 256

    A Taxonomy of Operational Risks for Cyber Security

    Oct 7, 2014·33m
  257. 257

    Agile Metrics

    Sep 25, 2014·24m
  258. 258

    Four Principles for Engineering Scalable, Big Data Systems

    Sep 11, 2014·20m
  259. 259

    An Appraisal of Systems Engineering: Defense v. Non-Defense

    Aug 28, 2014·14m
  260. 260

    HTML5 for Mobile Apps at the Edge

    Aug 14, 2014·21m
  261. 261

    Applying Agile in the DoD: Seventh Principle

    Jul 24, 2014·18m
  262. 262

    AADL and Edgewater

    Jul 10, 2014·9m
  263. 263

    Security and Wireless Emergency Alerts

    Jun 26, 2014·13m
  264. 264

    Safety and Behavior Specification Using the Architecture Analysis and Design Language

    Jun 12, 2014·21m
  265. 265

    Characterizing and Prioritizing Malicious Code

    May 29, 2014·27m
  266. 266

    Applying Agile in the DoD: Sixth Principle

    May 29, 2014·15m
  267. 267

    Using Quality Attributes to Improve Acquisition

    May 15, 2014·18m
  268. 268

    Best Practices for Trust in the Wireless Emergency Alerts Service

    Apr 29, 2014·22m
  269. 269

    Three Variations on the V Model for System and Software Testing

    Apr 10, 2014·21m
  270. 270

    Adapting the PSP to Incorporate Verified Design by Contract

    Mar 27, 2014·18m
  271. 271

    Comparing IT Risk Assessment and Analysis Methods

    Mar 25, 2014·37m
  272. 272

    AADL and Aerospace

    Mar 13, 2014·15m
  273. 273

    Assuring Open Source Software

    Feb 27, 2014·14m
  274. 274

    Security Pattern Assurance through Roundtrip Engineering

    Feb 13, 2014·16m
  275. 275

    The Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2)

    Feb 11, 2014·29m
  276. 276

    Applying Agile in the DoD: Fifth Principle

    Jan 30, 2014·21m
  277. 277

    Software Assurance Cases

    Jan 16, 2014·20m
  278. 278

    Raising the Bar - Mainstreaming CERT C Secure Coding Rules

    Jan 7, 2014·25m
  279. 279

    AADL and Télécom Paris Tech

    Dec 26, 2013·11m
  280. 280

    From Process to Performance-Based Improvement

    Dec 12, 2013·24m
  281. 281

    An Approach to Managing the Software Engineering Challenges of Big Data

    Nov 27, 2013·20m
  282. 282

    Using the Cyber Resilience Review to Help Critical Infrastructures Better Manage Operational Resilience

    Nov 26, 2013·28m
  283. 283

    Situational Awareness Mashups

    Nov 14, 2013·17m
  284. 284

    Applying Agile in the DoD: Fourth Principle

    Oct 31, 2013·18m
  285. 285

    Architecting Systems of the Future

    Oct 17, 2013·13m
  286. 286

    Acquisition Archetypes

    Sep 26, 2013·18m
  287. 287

    Human-in-the-Loop Autonomy

    Sep 12, 2013·23m
  288. 288

    Mobile Applications for Emergency Managers

    Aug 29, 2013·10m
  289. 289

    Why Use Maturity Models to Improve Cybersecurity: Key Concepts, Principles, and Definitions

    Aug 27, 2013·33m
  290. 290

    Applying Agile in the DoD: Third Principle

    Aug 15, 2013·16m
  291. 291

    DevOps - Transform Development and Operations for Fast, Secure Deployments

    Jul 30, 2013·34m
  292. 292

    Application Virtualization as a Strategy for Cyber Foraging

    Jul 25, 2013·21m
  293. 293

    Common Testing Problems: Pitfalls to Prevent and Mitigate

    Jul 11, 2013·17m
  294. 294

    Joint Programs and Social Dilemmas

    Jun 27, 2013·13m
  295. 295

    Applying Agile in the DoD: Second Principle

    Jun 13, 2013·13m
  296. 296

    Managing Disruptive Events - CERT-RMM Experience Reports

    Jun 11, 2013·36m
  297. 297

    Reliability Validation and Improvement Framework

    May 23, 2013·14m
  298. 298

    The Business Case for Systems Engineering

    May 9, 2013·25m
  299. 299

    Using a Malware Ontology to Make Progress Towards a Science of Cybersecurity

    May 9, 2013·21m
  300. 300

    Applying Agile in the DoD: First Principle

    Apr 18, 2013·19m
  301. 301

    The Evolution of a Science Project

    Apr 4, 2013·20m
  302. 302

    Securing Mobile Devices aka BYOD

    Mar 26, 2013·24m
  303. 303

    What's New With Version 2 of the AADL Standard?

    Mar 21, 2013·14m
  304. 304

    The State of the Practice of Cyber Intelligence

    Mar 7, 2013·17m
  305. 305

    Mitigating Insider Threat - New and Improved Practices Fourth Edition

    Feb 28, 2013·35m
  306. 306

    Technology Readiness Assessments

    Feb 21, 2013·16m
  307. 307

    Standards in Cloud Computing Interoperability

    Feb 7, 2013·8m
  308. 308

    Managing Disruptive Events: Demand for an Integrated Approach to Better Manage Risk

    Jan 31, 2013·27m
  309. 309

    The Latest Developments in AADL

    Jan 17, 2013·15m
  310. 310

    The Fundamentals of Agile

    Jan 3, 2013·18m
  311. 311

    Software for Soldiers who use Smartphones

    Dec 20, 2012·17m
  312. 312

    Managing Disruptive Events: Making the Case for Operational Resilience

    Dec 19, 2012·24m
  313. 313

    Architecting Service-Oriented Systems

    Dec 6, 2012·9m
  314. 314

    The SEI Strategic Plan

    Nov 15, 2012·21m
  315. 315

    Quantifying Uncertainty in Early Lifecycle Cost Estimation

    Nov 1, 2012·10m
  316. 316

    Using Network Flow Data to Profile Your Network and Reduce Vulnerabilities

    Oct 23, 2012·29m
  317. 317

    Architecting a Financial System with TSP

    Oct 18, 2012·28m
  318. 318

    The Importance of Data Quality

    Oct 4, 2012·21m
  319. 319

    How to More Effectively Manage Vulnerabilities and the Attacks that Exploit Them

    Sep 25, 2012·38m
  320. 320

    Misaligned Incentives

    Sep 20, 2012·15m
  321. 321

    Cloud Computing for the Battlefield

    Sep 4, 2012·10m
  322. 322

    How a Disciplined Process Enhances & Enables Agility

    Sep 4, 2012·21m
  323. 323

    Agile Acquisition

    Sep 4, 2012·9m
  324. 324

    An Architecture-Focused Measurement Framework for Managing Technical Debt

    Sep 4, 2012·16m
  325. 325

    U.S. Postal Inspection Service Use of the CERT Resilience Management Model

    Aug 21, 2012·24m
  326. 326

    Insights from the First CERT Resilience Management Model Users Group

    Jul 17, 2012·27m
  327. 327

    NIST Catalog of Security and Privacy Controls, Including Insider Threat

    Apr 24, 2012·28m
  328. 328

    Cisco's Adoption of CERT Secure Coding Standards

    Feb 28, 2012·25m
  329. 329

    How to Become a Cyber Warrior

    Jan 31, 2012·26m
  330. 330

    Considering Security and Privacy in the Move to Electronic Health Records

    Dec 20, 2011·28m
  331. 331

    Measuring Operational Resilience

    Oct 4, 2011·26m
  332. 332

    Why Organizations Need a Secure Domain Name System

    Sep 6, 2011·21m
  333. 333

    Controls for Monitoring the Security of Cloud Services

    Aug 2, 2011·19m
  334. 334

    Building a Malware Analysis Capability

    Jul 12, 2011·25m
  335. 335

    Using the Smart Grid Maturity Model (SGMM)

    May 5, 2011·30m
  336. 336

    Integrated, Enterprise-Wide Risk Management: NIST 800-39 and CERT-RMM

    Mar 29, 2011·28m
  337. 337

    Conducting Cyber Exercises at the National Level

    Feb 22, 2011·3m
  338. 338

    Indicators and Controls for Mitigating Insider Threat

    Jan 25, 2011·23m
  339. 339

    How Resilient Is My Organization?

    Dec 9, 2010·39m
  340. 340

    Public-Private Partnerships: Essential for National Cyber Security

    Nov 30, 2010·31m
  341. 341

    Software Assurance: A Master's Level Curriculum

    Oct 26, 2010·35m
  342. 342

    How to Develop More Secure Software - Practices from Thirty Organizations

    Sep 28, 2010·29m
  343. 343

    Mobile Device Security: Threats, Risks, and Actions to Take

    Aug 31, 2010·26m
  344. 344

    Establishing a National Computer Security Incident Response Team (CSIRT)

    Aug 19, 2010·28m
  345. 345

    Securing Industrial Control Systems

    Jul 27, 2010·23m
  346. 346

    The Power of Fuzz Testing to Reduce Security Vulnerabilities

    May 25, 2010·26m
  347. 347

    Protect Your Business from Money Mules

    Apr 27, 2010·19m
  348. 348

    Train for the Unexpected

    Mar 3, 2010·26m
  349. 349

    The Role of the CISO in Developing More Secure Software

    Mar 2, 2010·27m
  350. 350

    Computer and Network Forensics: A Master's Level Curriculum

    Feb 2, 2010·25m
  351. 351

    Introducing the Smart Grid Maturity Model (SGMM)

    Jan 12, 2010·26m
  352. 352

    Leveraging Security Policies and Procedures for Electronic Evidence Discovery

    Jan 9, 2010·26m
  353. 353

    Integrating Privacy Practices into the Software Development Life Cycle

    Dec 22, 2009·17m
  354. 354

    Using the Facts to Protect Enterprise Networks: CERT's NetSA Team

    Dec 1, 2009·22m
  355. 355

    Ensuring Continuity of Operations When Business Is Disrupted

    Nov 10, 2009·21m
  356. 356

    Managing Relationships with Business Partners to Achieve Operational Resiliency

    Oct 20, 2009·27m
  357. 357

    The Smart Grid: Managing Electrical Power Distribution and Use

    Sep 29, 2009·20m
  358. 358

    Electronic Health Records: Challenges for Patient Privacy and Security

    Sep 8, 2009·26m
  359. 359

    Mitigating Insider Threat: New and Improved Practices

    Aug 18, 2009·36m
  360. 360

    Rethinking Risk Management

    Jul 7, 2009·30m
  361. 361

    The Upside and Downside of Security in the Cloud

    Jun 16, 2009·28m
  362. 362

    More Targeted, Sophisticated Attacks: Where to Pay Attention

    May 26, 2009·20m
  363. 363

    Is There Value in Identifying Software Security "Never Events?"

    May 5, 2009·20m
  364. 364

    Cyber Security, Safety, and Ethics for the Net Generation

    Apr 14, 2009·20m
  365. 365

    An Experience-Based Maturity Model for Software Security

    Mar 31, 2009·22m
  366. 366

    Mainstreaming Secure Coding Practices

    Mar 17, 2009·20m
  367. 367

    Security: A Key Enabler of Business Innovation

    Mar 3, 2009·24m
  368. 368

    Better Incident Response Through Scenario Based Training

    Feb 17, 2009·23m
  369. 369

    An Alternative to Risk Management for Information and Software Security

    Feb 3, 2009·26m
  370. 370

    Tackling Tough Challenges: Insights from CERT's Director Rich Pethia

    Jan 20, 2009·18m
  371. 371

    Climate Change: Implications for Information Technology and Security

    Dec 9, 2008·24m
  372. 372

    Using High Fidelity, Online Training to Stay Sharp

    Nov 25, 2008·27m
  373. 373

    Integrating Security Incident Response and e-Discovery

    Nov 11, 2008·26m
  374. 374

    Concrete Steps for Implementing an Information Security Program

    Oct 28, 2008·21m
  375. 375

    Virtual Communities: Risks and Opportunities

    Oct 14, 2008·18m
  376. 376

    Developing Secure Software: Universities as Supply Chain Partners

    Sep 30, 2008·23m
  377. 377

    Security Risk Assessment Using OCTAVE Allegro

    Sep 16, 2008·18m
  378. 378

    Getting to a Useful Set of Security Metrics

    Sep 2, 2008·19m
  379. 379

    How to Start a Secure Software Development Program

    Aug 20, 2008·20m
  380. 380

    Managing Risk to Critical Infrastructures at the National Level

    Aug 5, 2008·22m
  381. 381

    Analyzing Internet Traffic for Better Cyber Situational Awareness

    Jul 28, 2008·30m
  382. 382

    Managing Security Vulnerabilities Based on What Matters Most

    Jul 22, 2008·23m
  383. 383

    Identifying Software Security Requirements Early, Not After the Fact

    Jul 8, 2008·23m
  384. 384

    Making Information Security Policy Happen

    Jun 24, 2008·24m
  385. 385

    Becoming a Smart Buyer of Software

    Jun 10, 2008·21m
  386. 386

    Building More Secure Software

    May 27, 2008·17m
  387. 387

    Connecting the Dots Between IT Operations and Security

    May 13, 2008·25m
  388. 388

    Getting in Front of Social Engineering

    Apr 29, 2008·24m
  389. 389

    Using Benchmarks to Make Better Security Decisions

    Apr 15, 2008·20m
  390. 390

    Protecting Information Privacy - How To and Lessons Learned

    Apr 1, 2008·22m
  391. 391

    Initiating a Security Metrics Program: Key Points to Consider

    Mar 18, 2008·12m
  392. 392

    Insider Threat and the Software Development Life Cycle

    Mar 4, 2008·24m
  393. 393

    Tackling the Growing Botnet Threat

    Feb 19, 2008·21m
  394. 394

    Building a Security Metrics Program

    Feb 5, 2008·23m
  395. 395

    Inadvertent Data Disclosure on Peer-to-Peer Networks

    Jan 22, 2008·20m
  396. 396

    Information Compliance: A Growing Challenge for Business Leaders

    Jan 8, 2008·22m
  397. 397

    Internal Audit's Role in Information Security: An Introduction

    Dec 10, 2007·14m
  398. 398

    What Business Leaders Can Expect from Security Degree Programs

    Nov 27, 2007·19m
  399. 399

    The Path from Information Security Risk Assessment to Compliance

    Nov 13, 2007·26m
  400. 400

    Computer Forensics for Business Leaders: Building Robust Policies and Processes

    Oct 30, 2007·12m
  401. 401

    Business Resilience: A More Compelling Argument for Information Security

    Oct 16, 2007·25m
  402. 402

    Resiliency Engineering: Integrating Security, IT Operations, and Business Continuity

    Oct 15, 2007·18m
  403. 403

    The Human Side of Security Trade-Offs

    Sep 18, 2007·27m
  404. 404

    Dual Perspectives: A CIO's and CISO's Take on Security

    Sep 4, 2007·26m
  405. 405

    Tackling Security at the National Level: A Resource for Leaders

    Aug 7, 2007·22m
  406. 406

    Reducing Security Costs with Standard Configurations: U.S. Government Initiatives

    Aug 7, 2007·25m
  407. 407

    Real-World Security for Business Leaders

    Jul 24, 2007·20m
  408. 408

    Using Standards to Build an Information Security Program

    Jul 10, 2007·28m
  409. 409

    Getting Real About Security Governance

    Jun 26, 2007·19m
  410. 410

    Convergence: Integrating Physical and IT Security

    Jun 12, 2007·29m
  411. 411

    IT Infrastructure: Tips for Navigating Tough Spots

    May 29, 2007·23m
  412. 412

    The Value of De-Identified Personal Data

    May 15, 2007·31m
  413. 413

    Adapting to Changing Risk Environments: Operational Resilience

    May 1, 2007·25m
  414. 414

    Computer Forensics for Business Leaders: A Primer

    Apr 17, 2007·17m
  415. 415

    The Real Secrets of Incident Management

    Apr 3, 2007·21m
  416. 416

    The Legal Side of Global Security

    Mar 20, 2007·26m
  417. 417

    A New Look at the Business of IT Education

    Mar 6, 2007·18m
  418. 418

    Crisis Communications During a Security Incident

    Feb 20, 2007·14m
  419. 419

    Assuring Mission Success in Complex Environments

    Feb 6, 2007·18m
  420. 420

    Privacy: The Slow Tipping Point

    Jan 23, 2007·18m
  421. 421

    Building Staff Competence in Security

    Jan 9, 2007·22m
  422. 422

    Evolving Business Models, Threats, and Technologies: A Conversation with CERT's Deputy Director for Technology

    Dec 26, 2006·22m
  423. 423

    Inside Defense-in-Depth

    Dec 19, 2006·16m
  424. 424

    Protecting Against Insider Threat

    Nov 28, 2006·27m
  425. 425

    Change Management: The Security 'X' Factor

    Nov 14, 2006·19m
  426. 426

    CERT Lessons Learned: A Conversation with Rich Pethia, Director of CERT

    Oct 31, 2006·24m
  427. 427

    Proactive Remedies for Rising Threats

    Oct 17, 2006·20m
  428. 428

    Compliance vs. Buy-in

    Oct 17, 2006·9m
  429. 429

    Why Leaders Should Care About Security

    Oct 17, 2006·18m
  430. 430

    The ROI of Security

    Oct 17, 2006·21m