{"id":2710,"date":"2024-03-13T09:23:26","date_gmt":"2024-03-13T14:23:26","guid":{"rendered":"https:\/\/cyberscoop.com\/?p=79712"},"modified":"2024-03-13T09:23:26","modified_gmt":"2024-03-13T14:23:26","slug":"cisa-omb-release-secure-software-development-attestation-form","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2024\/03\/13\/cisa-omb-release-secure-software-development-attestation-form\/","title":{"rendered":"CISA, OMB release secure software development attestation form"},"content":{"rendered":"<p><head> <meta charset=\"UTF-8\"> <meta name=\"viewport\" content=\"width=device-width, initial-scale=1\"> <meta name=\"robots\" content=\"index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1\"> <!-- This site is optimized with the Yoast SEO Premium plugin v21.7 (Yoast SEO v21.7) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ --> <title>CISA, OMB release secure software development attestation form | FedScoop<\/title> <meta name=\"description\" content=\"Manufacturers of software sold to the federal government will be required to fill out the form, which aligns with CISA\u2019s secure-by-design principles.\"> <link rel=\"canonical\" href=\"https:\/\/fedscoop.com\/cisa-omb-secure-by-design-software-attestation-form\/\"> <meta property=\"og:locale\" content=\"en_US\"> <meta property=\"og:type\" content=\"article\"> <meta property=\"og:title\" content=\"CISA, OMB release secure software development attestation form\"> <meta property=\"og:description\" content=\"Manufacturers of software sold to the federal government will be required to fill out the form, which aligns with CISA\u2019s secure-by-design principles.\"> <meta property=\"og:url\" content=\"https:\/\/fedscoop.com\/cisa-omb-secure-by-design-software-attestation-form\/\"> <meta property=\"og:site_name\" content=\"FedScoop\"> <meta property=\"article:published_time\" content=\"2024-03-13T14:21:24+00:00\"> <meta property=\"og:image\" content=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg\"> <meta property=\"og:image:width\" content=\"2309\"> <meta property=\"og:image:height\" content=\"1299\"> <meta property=\"og:image:type\" content=\"image\/jpeg\"> <meta name=\"author\" content=\"mbracken\"> <meta name=\"twitter:card\" content=\"summary_large_image\"> <!-- \/ Yoast SEO Premium plugin. --> <link rel=\"dns-prefetch\" href=\"\/\/securepubads.g.doubleclick.net\">\n<link rel=\"dns-prefetch\" href=\"\/\/use.typekit.net\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"FedScoop \u00bb Feed\" href=\"https:\/\/fedscoop.com\/feed\/\">\n<link rel=\"alternate\" type=\"application\/rss+xml\" title=\"FedScoop \u00bb Comments Feed\" href=\"https:\/\/fedscoop.com\/comments\/feed\/\"> <link rel=\"stylesheet\" id=\"all-css-2\" href=\"https:\/\/fedscoop.com\/wp-includes\/css\/dist\/block-library\/style.min.css?m=1710269227g\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-6\" href=\"https:\/\/fedscoop.com\/_static\/??\/wp-content\/mu-plugins\/search\/elasticpress-next\/dist\/css\/related-posts-block-styles.min.css,\/wp-content\/plugins\/embedpress\/Gutenberg\/dist\/blocks.style.build.css?m=1709662998\" type=\"text\/css\" media=\"all\"> <link rel=\"stylesheet\" id=\"all-css-8\" href=\"https:\/\/fedscoop.com\/_static\/??\/wp-content\/plugins\/embedpress\/assets\/css\/embedpress.css,\/wp-content\/themes\/scoopnewsgroup\/dist\/css\/frontend.css?m=1710265906\" type=\"text\/css\" media=\"all\">\n<link rel=\"stylesheet\" id=\"typekit-css\" href=\"https:\/\/use.typekit.net\/itk2qbh.css?ver=74528d75ce0daeb8628a\" media=\"all\">\n<link rel=\"stylesheet\" id=\"all-css-10\" href=\"https:\/\/fedscoop.com\/_static\/??\/wp-includes\/css\/dashicons.min.css,\/wp-content\/plugins\/embedpress\/assets\/css\/plyr.css?m=1710269227\" type=\"text\/css\" media=\"all\"> <link rel=\"https:\/\/api.w.org\/\" href=\"https:\/\/fedscoop.com\/wp-json\/\"><link rel=\"alternate\" type=\"application\/json\" href=\"https:\/\/fedscoop.com\/wp-json\/wp\/v2\/posts\/76583\"><link rel=\"EditURI\" type=\"application\/rsd+xml\" title=\"RSD\" href=\"https:\/\/fedscoop.com\/xmlrpc.php?rsd\">\n<meta name=\"generator\" content=\"WordPress 6.4.3\">\n<link rel=\"shortlink\" href=\"https:\/\/fedscoop.com\/?p=76583\">\n<link rel=\"alternate\" type=\"application\/json+oembed\" href=\"https:\/\/fedscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Ffedscoop.com%2Fcisa-omb-secure-by-design-software-attestation-form%2F\">\n<link rel=\"alternate\" type=\"text\/xml+oembed\" href=\"https:\/\/fedscoop.com\/wp-json\/oembed\/1.0\/embed?url=https%3A%2F%2Ffedscoop.com%2Fcisa-omb-secure-by-design-software-attestation-form%2F&amp;format=xml\"> <!-- Google Tag Manager --> <!-- End Google Tag Manager --> <link rel=\"icon\" href=\"https:\/\/fedscoop.com\/wp-content\/uploads\/sites\/5\/2023\/01\/cropped-fs_favicon-3.png?w=32\" sizes=\"32x32\">\n<link rel=\"icon\" href=\"https:\/\/fedscoop.com\/wp-content\/uploads\/sites\/5\/2023\/01\/cropped-fs_favicon-3.png?w=192\" sizes=\"192x192\">\n<link rel=\"apple-touch-icon\" href=\"https:\/\/fedscoop.com\/wp-content\/uploads\/sites\/5\/2023\/01\/cropped-fs_favicon-3.png?w=180\">\n<meta name=\"msapplication-TileImage\" content=\"https:\/\/fedscoop.com\/wp-content\/uploads\/sites\/5\/2023\/01\/cropped-fs_favicon-3.png?w=270\"> <\/head><body class=\"post-template-default single single-post postid-76583 single-format-standard\" id=\"readabilityBody\"> <a href=\"https:\/\/fedscoop.com\/cisa-omb-secure-by-design-software-attestation-form\/#main\" class=\"skip-to-content-link visually-hidden-focusable\">Skip to main content<\/a> <\/p>\n<div class=\"ad ad--top ad--top-desktop\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p> <main id=\"main\" role=\"main\" tabindex=\"-1\"> <\/p>\n<div class=\"ad ad--top ad--top-mobile\">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<section id=\"stickybar\" class=\"stickybar stickybar--newsletter js-stickybar\" readability=\"0.82\"> <button class=\"stickybar__close js-stickybar-close\" aria-controls=\"stickybar\"> <svg class=\"icon icon--close\" width=\"21\" height=\"22\" viewBox=\"0 0 21 22\" fill=\"none\"><path d=\"m.822.518-.805.805L9.695 11 .017 20.678l.805.805 9.678-9.678 9.677 9.678.806-.805L11.305 11l9.678-9.677-.806-.805-9.677 9.677L.822.518Z\" fill=\"currentColor\" \/><\/svg> <span class=\"visually-hidden\">Close<\/span> <\/button> <\/section>\n<article class=\"single-article content\">\n<div class=\"single-article__container js-single-article-content\">\n<header class=\"single-article__header \" readability=\"25.274436090226\">\n<div class=\"single-article__header-content\" readability=\"31.697211155378\">\n<p> Manufacturers of software sold to the federal government will be required to fill out the form, which aligns with CISA\u2019s secure-by-design principles. <\/p>\n<\/p><\/div>\n<div class=\"single-article__cover-wrap\">\n<figure class=\"single-article__cover\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"640\" height=\"360\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form.jpg?resize=640%2C360&#038;ssl=1\" class=\"single-article__cover-image wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg 2309w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=300,168 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=768,432 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=1024,576 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=1536,864 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=2048,1152 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=600,337 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=1200,675 1200w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-4.jpg?resize=1498,843 1498w\" sizes=\"auto, (max-width: 1200px) 100vw, 1200px\"><figcaption> (Getty Images) <\/figcaption><\/figure>\n<\/p><\/div>\n<\/header>\n<div class=\"single-article__content\">\n<div class=\"single-article__content-inner has-drop-cap\"> <html readability=\"24.311234177215\"><body readability=\"49.53098373354\"><\/p>\n<p>Makers of software used by the federal government will now be required to affirm that their products are manufactured with secure development practices in mind, filling out a form released Monday by the Cybersecurity and Infrastructure Security Agency and the Office of Management and Budget.&nbsp;<\/p>\n<p>The Biden administration\u2019s <a href=\"https:\/\/www.cisa.gov\/resources-tools\/resources\/secure-software-development-attestation-form\">secure software development attestation form<\/a> comes following \u201cextensive stakeholder and industry engagement\u201d intended to ensure that \u201cthe software producers who partner with the federal government leverage minimum secure development techniques and toolsets,\u201d per a statement from the agencies.<\/p>\n<p>In a <a href=\"https:\/\/www.cisa.gov\/news-events\/news\/effort-bolster-government-cybersecurity-biden-administration-takes-step-ensure-secure-development\">blog post<\/a>, Chris DeRusha, the federal chief information security officer and deputy national cyber director, and Eric Goldstein, CISA\u2019s executive assistant director for cybersecurity, said that the release of the form builds on the administration\u2019s <a href=\"https:\/\/cyberscoop.com\/national-cybersecurity-strategy-implementation-plan-2\/\">national cybersecurity strategy<\/a> and on President Joe Biden\u2019s 2021 executive order on <a href=\"https:\/\/www.whitehouse.gov\/briefing-room\/presidential-actions\/2021\/05\/12\/executive-order-on-improving-the-nations-cybersecurity\/\">improving the nation\u2019s cybersecurity<\/a>.&nbsp;<\/p>\n<p>\u201cBy ensuring our Government uses software products from software producers that leverage best practices for secure development, we not only strengthen the security of the Federal Government, but drive improvements for customers across the globe,\u201d DeRusha and Goldstein wrote. \u201cWe envision a software ecosystem where our partners in state and local government, as well as in the private sector, also seek these assurances and leverage software that is built to be secure by design.\u201d<\/p>\n<div class=\"ad ad--inline_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<p>DeRusha and Goldstein noted that the new form reinforces CISA\u2019s secure-by-design principles. Those principles, which are also followed by federal government partners and international allies, put the security onus on the software producer rather than the customer. Software should be developed with \u201cradical transparency and accountability\u201d by makers that have organizational structure and leadership aligned with those goals.<\/p>\n<p>Specifically, the <a href=\"https:\/\/www.cisa.gov\/sites\/default\/files\/2024-03\/Self-Attestation-Common-Form-03082024-FINAL.pdf\">form\u2019s checklist<\/a> has callouts on secure principles, including: logging, monitoring and auditing of trusted relationships used for authorization and access; employing multi-factor authentication; encrypting sensitive data, like credentials; using automated tools to check for vulnerabilities; and maintaining trusted source code supply chains, among several others.<\/p>\n<p>The Monday form release comes a little less than a month after the public comment period closed for <a href=\"https:\/\/fedscoop.com\/cisa-secure-by-design-white-paper-rfi\/\">CISA\u2019s request for feedback<\/a> on its \u201csecure by design\u201d white paper, which pushed software manufacturers to adopt tougher security standards.&nbsp;<\/p>\n<p><\/body> <\/p>\n<footer class=\"single-article__footer\" readability=\"4.2027729636049\">\n<div class=\"author-card\" readability=\"15\">\n<div class=\"author-card__avatar\">\n<figure class=\"author-card__image-wrap\"> <img data-recalc-dims=\"1\" decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-1.jpg?w=640&#038;ssl=1\" alt=\"Matt Bracken\"> <\/figure>\n<\/p><\/div>\n<p><h4 class=\"author-card__name\">Written by Matt Bracken<\/h4>\n<p> Matt Bracken is the managing editor of FedScoop and CyberScoop, overseeing coverage of federal government technology policy and cybersecurity. Before joining Scoop News Group in 2023, Matt was a senior editor at Morning Consult, leading data-driven coverage of tech, finance, health and energy. He previously worked in various editorial roles at The Baltimore Sun and the Arizona Daily Star. You can reach him at matt.bracken@scoopnewsgroup.com. <\/p>\n<\/p><\/div>\n<div class=\"single-article__tags-container\">\n<h4 class=\"single-article__tags-title\">In This Story<\/h4>\n<\/p><\/div>\n<\/footer>\n<p> <\/html><\/div>\n<\/p><\/div>\n<\/p><\/div>\n<div class=\"single-article__ads js-single-article-sidebar\">\n<div class=\"ad ad--sidebar js-single-article-sidebar-5 ad--rightrail_1 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-4 ad--rightrail_2 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div class=\"ad ad--sidebar js-single-article-sidebar-3 ad--rightrail_3 \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div><\/div>\n<\/article>\n<div class=\"popular-stories popular-stories--single-post\">\n<div class=\"popular-stories__container\">\n<h2 class=\"popular-stories__title\"> More Scoops <\/h2>\n<div class=\"popular-stories__stories\">\n<div class=\"popular-stories__cards\">\n<article class=\"post-item post-item--popular-stories-cards \" readability=\"23.186788154897\">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/fedscoop.com\/cisa-zero-trust-initiative-office-sean-connelly\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"506\" height=\"337\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-2.jpg?resize=506%2C337&#038;ssl=1\" class=\"attachment-ratio-16-9-md size-ratio-16-9-md wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg 5472w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=300,200 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=768,512 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=1024,683 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=1536,1024 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=2048,1365 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=600,400 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=252,168 252w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=506,337 506w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=1013,675 1013w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-5.jpg?resize=1265,843 1265w\" sizes=\"auto, (max-width: 506px) 100vw, 506px\"> <\/a><figcaption class=\"screen-reader-text\"> Sean Connelly, CISA\u2019s senior cybersecurity architect and trusted internet connections program manager, speaks during CyberScoop\u2019s Zero Trust Summit on Feb. 15, 2024, in Washington, D.C. (Scoop News Group photo) <\/figcaption><\/figure>\n<header class=\"post-item__meta\" readability=\"2.8928571428571\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/fedscoop.com\/cisa-zero-trust-initiative-office-sean-connelly\/\"> CISA establishing new office focused on zero trust <\/a> <\/h3>\n<p> The Zero Trust Initiative Office will provide education and training to federal agencies, while building on previous CISA guidance on the security framework. <\/p>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/fedscoop.com\/author\/matt-bracken\/\"> Matt Bracken <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<article class=\"post-item post-item--popular-stories-cards \">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/fedscoop.com\/federal-agencies-cisa-jcdc-coordination-standards\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"246\" height=\"168\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form.webp?resize=246%2C168&#038;ssl=1\" class=\"attachment-ratio-16-9-sm size-ratio-16-9-sm wp-post-image\" alt decoding=\"async\" loading=\"lazy\" srcset=\"https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg 5078w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=300,205 300w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=768,525 768w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=1024,700 1024w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=1536,1049 1536w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=2048,1399 2048w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=600,410 600w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=246,168 246w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=493,337 493w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=988,675 988w, https:\/\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-6.jpg?resize=1234,843 1234w\" sizes=\"auto, (max-width: 246px) 100vw, 246px\"> <\/a><figcaption class=\"screen-reader-text\"> CISA Director Jen Easterly testifies alongside Commander of the U.S. Cyber Command Gen. Paul Nakasone during a hearing on Capitol Hill on Jan. 31, 2024 in Washington, D.C. (Photo by Kevin Dietsch\/Getty Images) <\/figcaption><\/figure>\n<header class=\"post-item__meta\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/fedscoop.com\/federal-agencies-cisa-jcdc-coordination-standards\/\"> Federal IT officials call on CISA for tougher standards, more coordination <\/a> <\/h3>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/fedscoop.com\/author\/matt-bracken\/\"> Matt Bracken <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<article class=\"post-item post-item--popular-stories-cards \">\n<figure class=\"post-item__thumbnail\"> <a class=\"post-item__thumbnail-link\" href=\"https:\/\/fedscoop.com\/on-some-basic-metadata-practices-us-government-gets-an-f-per-new-online-tracker\/\" tabindex=\"-1\"> <img data-recalc-dims=\"1\" loading=\"lazy\" width=\"300\" height=\"168\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2024\/03\/cisa-omb-release-secure-software-development-attestation-form-3.jpg?resize=300%2C168&#038;ssl=1\" class=\"attachment-ratio-16-9-sm size-ratio-16-9-sm wp-post-image\" alt decoding=\"async\" loading=\"lazy\"> <\/a><figcaption class=\"screen-reader-text\"> (Getty Images) <\/figcaption><\/figure>\n<header class=\"post-item__meta\">\n<h3 class=\"post-item__title\"> <a class=\"post-item__title-link\" href=\"https:\/\/fedscoop.com\/on-some-basic-metadata-practices-us-government-gets-an-f-per-new-online-tracker\/\"> On some basic metadata practices, US government gets an \u2018F,\u2019 per new online tracker <\/a> <\/h3>\n<div class=\"post-item__byline\"> <span class=\"post-item__author\"> <span>By <\/span> <a class=\"post-item__author-link\" href=\"https:\/\/fedscoop.com\/author\/rebecca-heilweil\/\"> Rebecca Heilweil <\/a> <\/span> <\/div>\n<p><!-- .byline --> <\/header>\n<p><!-- .post-item__meta --> <\/article>\n<\/p><\/div>\n<\/p><\/div>\n<p><!-- .popular-stories__stories --> <\/div>\n<p><!-- .popular-stories__inner -->\n<\/div>\n<p><!-- .popular-stories --> <\/p>\n<section class=\"latest-podcasts\">\n<h2 class=\"latest-podcasts__title\"> Latest Podcasts\t<\/h2>\n<\/section>\n<div class=\"top-categories\">\n<div class=\"top-categories__container\">\n<h3 class=\"top-categories__category-title\">Acquisition<\/h3>\n<\/p><\/div>\n<\/p><\/div>\n<p> <\/main> <\/p>\n<div class=\"ad ad--bottom \">\n<div class=\"ad__inner\"> <span class=\"screen-reader-text\">Advertisement<\/span> <\/div>\n<\/div>\n<div id=\"interstitial\" class=\"welcome__container\"> <button id=\"close-modal-1\" class=\"welcome__clickable_area\"><\/button> <\/p>\n<div class=\"welcome__ad_wrapper\">\n<p> <button id=\"close-modal-3\" class=\"welcome__continue-button\">Continue to FedScoop<\/button> <\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p> <!-- Start of HubSpot Embed Code --> <!-- End of HubSpot Embed Code --> <\/body> <a href=\"https:\/\/fedscoop.com\/cisa-omb-secure-by-design-software-attestation-form\/\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>CISA, OMB release secure software development attestation form | FedScoop<\/p>\n","protected":false},"author":11,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[78],"tags":[86],"class_list":["post-2710","post","type-post","status-publish","format-standard","hentry","category-cybersecurity","tag-cybersecurity"],"featured_image_urls":{"full":"","thumbnail":"","medium":"","medium_large":"","large":"","1536x1536":"","2048x2048":"","chromenews-featured":"","chromenews-large":"","chromenews-medium":""},"author_info":{"display_name":"Cyber Scoop","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/cyberscoop\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/cybersecurity\/\" rel=\"category tag\">Cybersecurity<\/a>","tag_info":"Cybersecurity","comment_count":"0","jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2710","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=2710"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/2710\/revisions"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=2710"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=2710"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=2710"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}