Software Assurance Competency Model
Justification of a Pattern for Detecting Intellectual Property Theft by Departing Insiders
Detecting and Preventing Data Exfiltration Through Encrypted Web Sessions via Traffic Inspection
The MAL: A Malware Analysis Lexicon
Common Sense Guide to Mitigating Insider Threats, 4th Edition
Analyzing Cases of Resilience Success and Failure—A Research Study
Supporting the Use of CERT® Secure Coding Standards in DoD Acquisitions
Well There’s Your Problem: Isolating the Crash-Inducing Bits in a Fuzzed File
Communication Among Incident Responders - A Study
Competency Lifecycle Roadmap: Toward Performance Readiness
Probability-Based Parameter Selection for Black-Box Fuzz Testing
Insider Threat Study: Illicit Cyber Activity Involving Fraud in the U.S. Financial Services Sector
Report from the First CERT-RMM Users Group Workshop Series
A Pattern for Increased Monitoring for Intellectual Property Theft by Departing Insiders
Source Code Analysis Laboratory (SCALe)
Insider Threat Security Reference Architecture
CERT® Resilience Management Model (CERT®-RMM) V1.1: NIST Special Publication Crosswalk Version 1
Principles of Trust for Embedded Systems
Mission Risk Diagnostic (MRD) Method Description
Risk-Based Measurement and Analysis: Application to Software Security
Spotlight On: Malicious Insiders and Organized Crime Activity
Using Defined Processes as a Context for Resilience Measures
Standards-Based Automated Remediation: A Remediation Manager Reference Implementation, 2011 Update
CERT® Resilience Management Model Capability Appraisal Method (CAM) Version 1.1
CERT® Resilience Management Model (RMM) v1.1: Code of Practice Crosswalk Commercial Version 1.1
Measures for Managing Operational Resilience
Standards-Based Automated Remediation: A Remediation Manager Reference Implementation
A Preliminary Model of Insider Theft of Intellectual Property
Trusted Computing in Embedded Systems Workshop
Software Assurance Curriculum Project Volume III: Master of Software Assurance Course Syllabi
An Analysis of Technical Observations in Insider Theft of Intellectual Property Cases
Network Monitoring for Web-Based Threats
Trust and Trusted Computing Platforms
Software Supply Chain Risk Management: From Products to Systems of Systems
Source Code Analysis Laboratory (SCALe) for Energy Delivery Systems
A Taxonomy of Operational Cyber Security Risks
Measuring Operational Resilience Using the CERT Resilience Management Model
Software Assurance Curriculum Project Volume I: Master of Software Assurance Reference Curriculum
Software Assurance Curriculum Project Volume II: Undergraduate Course Outlines
Adapting the SQUARE Process for Privacy Requirements Engineering
Specifications for Managed Strings, Second Edition
Survivability Analysis Framework
CERT Resilience Management Model, Version 1.0
Identifying Anomalous Port-Specific Network Behavior
As-If Infinitely Ranged Integer Model, Second Edition
Results of SEI Independent Research and Development Projects (FY 2009)
Privacy Risk Assessment Case Studies in Support of SQUARE
As-if Infinitely Ranged Integer Model
Making the Business Case for Software Assurance
Multi-View Decision Making (MVDM) Workshop
High-Fidelity E-Learning: The SEI's Virtual Training Environment (VTE)
Computer Forensics: Results of Live Response Inquiry vs. Memory Image Analysis
SQUARE-Lite: Case Study on VADSoft Project
Evaluation of CERT Secure Coding Rules through Integration with Source Code Analysis Tools
Incorporating Security Quality Requirements Engineering (SQUARE) into Standard Life-Cycle Models
Survivability Assurance for System of Systems
The "Big Picture" of Insider IT Sabotage Across U.S. Critical Infrastructures
Incident Management Mission Diagnostic Method, Version 1.0
Governing for Enterprise Security (GES) Implementation Guide
How To Compare the Security Quality Requirements Engineering (SQUARE) Method with Other Methods
Process Improvement Should Link to Security: SEPG 2007 Security Track Recap
Ranged Integers for the C Programming Language
Introducing OCTAVE Allegro: Improving the Information Security Risk Assessment Process
Incident Management Capability Metrics Version 0.1
Modeling and Analysis of Information Technology Change and Access Controls in the Business Context
Global Information Grid Survivability: Four Studies
Technology Foundations for Computational Evaluation of Software Security Attributes
Defense-in-Depth: Foundations for Secure and Resilient Enterprises
Evolutionary Systems Design: Recognizing Changes in Security and Survivability Risks
Specifications for Managed Strings
Applying OCTAVE: Practitioners Report
Security Quality Requirements Engineering (SQUARE): Case Study Phase III
Sustaining Operational Resiliency: A Process Improvement Approach to Security Management
Detecting Scans at the ISP Level
Toward Measures for Software Architectures
Security Quality Requirements Engineering
Software Vulnerabilities in Java
Mission Assurance Analysis Protocol (MAAP): Assessing Risk in Complex Environments
Building Information Assurance Educational Capacity: Pilot Efforts to Date
First Responders Guide to Computer Forensics: Advanced Topics
Impact of Function Extraction Technology on Next-Generation Software Engineering, The
Governing for Enterprise Security
Report on Annual Regional Information Assurance Symposia
Insider Threat Study: Illicit Cyber Activity in the Banking and Finance Sector
System Quality Requirements Engineering (SQUARE): Case Study on Asset Management System, Phase II
Eliciting and Analyzing Quality Requirements: Management Influences on Software Quality Requirements
First Responders Guide to Computer Forensics
OCTAVE-S Implementation Guide, Version 1
Structured Approach to Classifying Security Vulnerabilities, A
Systems Quality Requirements Engineering (SQUARE) Methodology: Case Study on Asset Management System
Managing for Enterprise Security
Defining Incident Management Processes for CSIRTs: A Work in Progress
Security and Survivability Reasoning Frameworks and Architectural Design Tactics
Critical Success Factor Method: Establishing a Foundation for Enterprise Security Management, The
Survivable Functional Units: Balancing an Enterprise's Mission and Technology
Advanced Information Assurance Handbook
Common Concepts Underlying Safety, Security, and Survivability Engineering
Organizational Models for Computer Security Incident Response Teams (CSIRTs)
State of the Practice of Computer Security Incident Response Teams (CSIRTs)
Requirements Engineering for Survivable Systems
International Liability Issues for Software Quality
Handbook for Computer Security Incident Response Teams (CSIRTs)
Applying FSQ Engineering Foundations to Automated Calculation of Program Behavior
Outsourcing Managed Security Services
Network Survivability Analysis Using Easel
Tracking and Tracing Cyber-Attacks: Technical Challenges and Global Policy Issues
Life-Cycle Models for Survivable Systems
Trustworthy Refinement Through Intrusion-Aware Design (2002)
Trustworthy Refinement Through Intrusion-Aware Design
Flow-Service-Quality (FSQ) Engineering: Foundations for Network System Analysis and Development