
When I was a student, I thought organizational processes were among the most boring topics in engineering. However, after working in security engineering for over a decade and helping organizations optimize their security efforts, I have to admit that processes are more interesting than I thought and not at all irrelevant when developing secure products.

Although a product’s technical protection features can be fulfilled and marked as done, a secure development process is never done; it must be maintained and improved continuously, which is why the qualitative measure for security engineering processes is called maturity ...

Get Engineering Secure Devices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.