Secure by Design principles applied to IT infrastructure
Summary
Hide β²
Show βΌ
The Cybersecurity and Infrastructure Security Agency (CISA) has released a Secure by Design framework to enhance infrastructure security. This framework emphasizes integrating security into every stage of IT infrastructure development and operation, addressing vulnerabilities in hybrid and cloud environments. The initiative aims to reduce exposure and mitigate risks by fostering collaboration across enterprise functions and adopting proactive, continuous security measures. The framework is a response to increasing complexity in IT infrastructure, particularly in hybrid environments, which have complicated zero-trust adoption and created new attack surfaces. Recent breaches, such as the AT&T breach traced to a cloud provider, highlight the financial and reputational damage that can result from infrastructure vulnerabilities.
Timeline
-
15.09.2025 17:00 π° 1 articles Β· β± 6h ago
CISA releases Secure by Design framework for IT infrastructure
The Cybersecurity and Infrastructure Security Agency (CISA) has released a Secure by Design framework to enhance infrastructure security. This framework emphasizes integrating security into every stage of IT infrastructure development and operation, addressing vulnerabilities in hybrid and cloud environments. The initiative aims to reduce exposure and mitigate risks by fostering collaboration across enterprise functions and adopting proactive, continuous security measures.
Show sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
Information Snippets
-
The Secure by Design framework aims to integrate security into every stage of IT infrastructure development and operation.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
Hybrid and cloud environments have increased the complexity of IT infrastructure, complicating zero-trust adoption.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
Recent breaches, such as the AT&T breach, underscore the financial and reputational risks associated with infrastructure vulnerabilities.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
The framework emphasizes collaboration across enterprise functions to close security gaps.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
Proactive, continuous security measures are key to mitigating risks in modern IT infrastructure.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
The framework addresses the need for a shared vocabulary and common understanding of benchmarks across functions.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00
-
IBM's 'Cost of a Data Breach Report' 2024 found that 40% of breaches involve data distributed across multiple environments.
First reported: 15.09.2025 17:00π° 1 source, 1 articleShow sources
- Building Resilient IT Infrastructure From the Start β www.darkreading.com β 15.09.2025 17:00