Skip to main content

많은 웹사이트와 마찬가지로, BSA의 웹사이트는 쿠키를 사용하여 해당 웹사이트의 효율적인 기능을 보장하고 당사 사용자에게 최상의 경험을 제공합니다. 당사의 쿠키 사용법 및 귀하의 브라우저 쿠키 설정을 변경하는 법에 대한 자세한 내용은 당사의 쿠키 취급방침에서 더 알아보실 수 있습니다. 쿠키 설정을 변경하지 않고 이 사이트를 계속 이용함으로써 귀하는 당사의 쿠키 사용에 동의하시는 게 됩니다.


SEP 22, 2020 | GLOBAL

BSA Updates Framework for Secure Software to Better Address Cyber Threats

Improved framework offers timely guidance on securing global supply chain

WASHINGTON – September 22, 2020 – Software innovations are transforming the way we live and work. But insecure software carries the potential for unprecedented economic, legal, and physical risk. In fact, recent news from the FBI shows an increase in the number of complaints about cyberattacks, up to as many as 4,000 a day, or a 400% increase from pre-coronavirus levels. As the role of technology in every sector expands and emerging technologies like 5G become more widespread, software developers and governments face the challenge of how to secure software components in vast, complex supply chains. Stakeholders need clear and flexible guidance to secure the rapidly growing digital ecosystem.

BSA | The Software Alliance today released a new version of a key tool for improving the software supply chain, the BSA Framework for Secure Software. This updated framework includes crucial changes to strengthen criteria for securing software supply chains and better align with relevant guidance. Specifically, the new framework is fully mapped to the National Institute for Standards and Technology (NIST)’s Secure Software Development Framework (SSDF), providing software developers an accessible tool to implement the SSDF. Moreover, it incorporates more robust guidance on securing development environments to prevent supply chain attacks.

“As cyber threats grow, the software industry and policymakers must come together to protect the global software supply chain from malicious cyberattacks. This issue has never been more relevant – the Internet of Things is expected to grow to more than 200 billion devices by 2023, and these newly connected devices will pose a major security risk,” said Victoria Espinel, President and CEO of BSA | The Software Alliance. “BSA member companies are on the cutting edge of pioneering security-by-design principles that lead to stronger, more secure software products. The updated BSA Framework for Secure Software will help drive the adoption of those best practices across the entire industry. I look forward to BSA’s continued collaboration with software companies and policymakers as we work to build the trusted technologies of the future.”

Specifically, the Framework is intended to be used to help:

  1. Software development organizations describe the current state and target state of software security in individual software security products and services;
  2. Software development organizations identify opportunities for improvement in development and lifecycle management processes, and assess progress toward target states;
  3. Software developers, vendors, and customers communicate internally and externally about software security; and
  4. Software customers evaluate and compare the security of individual software products and services.

The Framework is intended to guide development lifecycles for all types of software, from installed programs to Software-as-a-Service, as well as all types of development processes, from waterfall to DevOps. The Framework is a living document and will continue to be updated and improved based on ongoing feedback and technical developments.

Find BSA’s updated Secure Software Development Framework here.

BSA 소개

소프트웨어 연합(BSA | The Software Alliance, 이하 BSA)(www.bsa.org)은 각국 정부를 대상으로 세계 시장에서 전 세계 소프트웨어 업계를 대변하고 옹호하는 선도적 연합체입니다. 세계의 가장 혁신적 기업들이 회원사로 참여하며 경제에 활기를 불어 넣고 현대의 생활을 향상시키는 소프트웨어 솔루션을 만들어 내고 있습니다.

워싱턴 DC에 본부를 두고, 30개국이 넘는 국가들에서 운영되는 BSA는, 합법적 소프트웨어 사용을 증진시키고 기술 혁신을 촉진하며 디지털 경제의 성장을 추진하는 공공 정책을 지지하는 준법 프로그램들을 선도합니다.

언론 연락처

Anna Hughes

Telephone: 202-530-5177
이메일: annah@bsa.org

Riley McBride Smith

Telephone: 202-591-1125
이메일: Riley@allisonpr.com

For Media Inquiries

이메일: media@bsa.org

언론 연락처

Anna Hughes

Telephone: 202-530-5177
이메일: annah@bsa.org

언론 연락처

Christine Lynch

이메일: christinel@bsa.org


Anna Hughes

Telephone: 202-530-5177
이메일: annah@bsa.org