Why is SAFECode necessary now?
There is an important need (1) to identify and share vendor practices that have been proven to work, (2) promote broader adoption of such practices into the cyber ecosystem, and (3) work with governments/critical infrastructures to leverage vendor practices to manage enterprise risks. While individual companies have implemented effective methods for developing and delivering more secure and reliable software, hardware and services, there has been no coordinated, industry-led effort to build upon this positive work and promote best practices to advance software assurance more broadly. SAFECode fills this critical gap by bringing together subject matter experts to identify and share proven vendor software assurance practices, promote broader adoption of such practices into the cyber ecosystem, and work with governments and critical infrastructure providers to leverage vendor practices to manage enterprise risks.