Open Source Security

By Josh Bressers

CISA's new SSDF attestation form

🔊 Play episode (41 min)

Direct episode link

💬 Share episode

Published March 24, 2024 7:00pm

Josh and Kurt talk about the new SSDF attestation form from CISA. The current form isn't very complicated, and the SSDF has a lot of room for interpretation. But this is the start of something big. It's going to take a long time to see big changes in supply chain security, but we're confident they will come. Show Notes Secure Software Development Attestation Form The U.S. Military Is Missing Six Nuclear Weapons NIST 800-218

Return to podcast