Back to Cybersecurity and Infrastructure Security Agency (CISA)
WhitepaperGovernment & RegulationsFood-Tech, Ingredients & OthersJune 29, 2026

Secure by Design: Shifting the Balance of Cybersecurity Risk

Cybersecurity and Infrastructure Security Agency (CISA)

Cybersecurity and Infrastructure Security Agency (CISA)

Share this report

A strategic publication encouraging technology manufacturers to build secure products by default, reducing cyber risk before software reaches customers.

Executive summary

This CISA publication introduces the Secure by Design approach, encouraging software manufacturers to make security a core business requirement rather than a customer responsibility.

The guidance emphasizes secure default configurations, executive accountability, memory-safe programming, vulnerability disclosure, and secure development practices.

By embedding cybersecurity throughout the software lifecycle, organizations can reduce exploitable vulnerabilities, improve software resilience, and strengthen trust across the digital ecosystem.

The full reportOpenDownload

Opening the document…

Share this report

Report a copyright concern