CISA’s Secure Software Self-Attestation Common Form Is A Liability Nightmare

old.reddit.com / @/u/BarakScribe, https://old.reddit.com/user/BarakScribe

The NIST guidance at the base of the new OMB self-attestation form makes it both comprehensive and difficult to attest to. Since the NIST guidance (SSDF) lacks exact details, they're essentially trusting the market to find its way to answer the form's requirements. Learn more about the OMB's self-attestation form and how to potentially sign it with a clear conscience here.

submitted by /u/BarakScribe
[link] [comments]

published 11 months ago




See all items from the same source