NIST CSRC
csrc.nist.gov › projects › ssdf
Secure Software Development Framework | CSRC | CSRC
April 13, 2026 - SSDF Practices | SSDF Use | New ... Framework (SSDF) is a set of fundamental, sound, and secure software development practices based on established secure software development practice documents from organizations such as BSA, OWASP, and SAFECode....
Glossary
This is a potential security issue, you are being redirected to https://csrc.nist.gov · An official website of the United States government
Publications
Expand or Collapse
The NIST Cybersecurity and Privacy Program develops and maintains an extensive collection of standards, guidelines, recommendations, and research on the security and privacy of information and information systems.
Special Publications (SPs)
This is a potential security issue, you are being redirected to https://csrc.nist.gov · An official website of the United States government
FIPS (standards)
This is a potential security issue, you are being redirected to https://csrc.nist.gov · An official website of the United States government
NIST
nvlpubs.nist.gov › nistpubs › specialpublications › nist.sp.800-218.pdf pdf
NIST Special Publication 800-218 Secure Software Development
called the Secure Software Development Framework (SSDF), are intended to help the target
Videos
13:07
NIST Virtual Event: Overview of the Secure Software Development ...
08:13
Creating a Secure Software Development Life Cycle - YouTube
Workshop: Executive Order 14028: Guidelines for Enhancing Software ...
59:25
Intro to NIST: The Path to the SP 800-53 | Simply Cyber Academy ...
33:17
Secure Software Development Framework (SSDF) Discussion - YouTube
CISA
cisa.gov › resources-tools › resources › nist-sp-800-218-secure-software-development-framework-v11-recommendations-mitigating-risk-software
NIST SP 800-218, Secure Software Development Framework V1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities | CISA
This document recommends the Secure Software Development Framework (SSDF) – a core set of high-level secure software development practices that can be integrated into each SDLC implementation.
NIST CSRC
csrc.nist.gov › pubs › sp › 800 › 218 › r1 › ipd
NIST Special Publication (SP) 800-218 Rev. 1 (Draft), Secure Software Development Framework (SSDF) Version 1.2: Recommendations for Mitigating the Risk of Software Vulnerabilities
December 17, 2025 - Few software development life cycle ... the Secure Software Development Framework (SSDF), which is a core set of high-level secure software development practices that can be integrated into each SDLC implementation....
NIST CSRC
csrc.nist.gov › pubs › sp › 800 › 218 › final
NIST Special Publication (SP) 800-218, Secure Software Development Framework (SSDF) Version 1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities
February 3, 2022 - Few software development life cycle ... the Secure Software Development Framework (SSDF) – a core set of high-level secure software development practices that can be integrated into each SDLC implementation....
Anchore
anchore.com › blog › about-new-nist-ssdf
An Introduction to NIST's Secure Software Development Framework | Anchore
The Secure Software Development Framework (SSDF) is NIST’s guidance for reducing risk in the software lifecycle, from initial design through development, release, and post-release maintenance.
Confluent
confluent.io › learn › nist-ssdf
NIST SSDF (Secure Software Development Framework): A Comprehensive Guide
The National Institute of Standards and Technology's Secure Software Development Framework NIST SSDF is a set of guidelines that are intended to assist organizations in developing their software securely.
NIST CSRC
csrc.nist.gov › News › 2022 › nist-publishes-sp-800-218-ssdf-v11
NIST Updates the Secure Software Development Framework (SSDF) | CSRC
February 4, 2022 - NIST has released Special Publication (SP) 800-218, Secure Software Development Framework (SSDF) Version 1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities.
Checkmarx
checkmarx.com › blog › what-you-need-to-know-about-nist-800-218-the-secure-software-development-framework
What You Need To Know About NIST 800-218
February 3, 2026 - From a NIST standard point of view, this is current and applies to modern software development life cycle (SDLC). It is also important to note that some in the government describe the SSDF as a best business practice. This document recommends the Secure Software Development Framework (SSDF) – a core set of high-level secure software development practices that can be integrated into each SDLC implementation.[i]
NIST
nist.gov › publications › secure-software-development-framework-ssdf-version-11-recommendations-mitigating-risk-1
Secure Software Development Framework (SSDF) Version 1.1: Recommendations for Mitigating the Risk of Software Vulnerabilities (Portuguese translation) | NIST
June 16, 2025 - This document recommends the Secure Software Development Framework (SSDF) – a core set of high-level secure software development practices that can be integrated into each SDLC implementation.
Aclum
data.aclum.org › storage › 2025 › 01 › NIST_csrc_nist_gov_projects_ssdf.pdf pdf
PROJECTS Secure Software Development Framework SSDF
Recommendations for Mitigating the Risk of Software Vulnerabilities. NIST SP 800-218 replaces the NIST Cybersecurity · White Paper, Mitigating the Risk of Software Vulnerabilities by Adopting a Secure Software Development Framework