|
|
![]() |

Why Secure by Design Is Essential for Cybersecurity
The key principles of Secure by Design include defense in depth, attack surface minimization and privilege access management, all with the goal of increasing resilience and lowering the chance of successful cyberattacks. But what does Secure by Design really mean? And how can organizations benefit from getting involved?
www.eetimes.eu, Jan. 09, 2025 –
There seems to be a discrepancy between the growing number of cybersecurity breaches and organizations' investment in cybersecurity. Worryingly, for example, recent research has found that over a third of organizations have suffered three or more data breaches in the last 24 months. On top of this, research has indicated that over 25% of organizations believe that their current cyber budget is inadequate to fully protect from threats. Evidently, the best way to reduce the number of breaches is to prioritize cybersecurity resilience.
Cyber resilience is what a number of organizations globally are seeking to achieve by committing to CISA's Secure by Design pledge, although several similar schemes have appeared worldwide, stemming from regional government initiatives. The CISA pledge holds organizations to certain standards from the outset of product development rather than adding them as an afterthought. This is a proactive approach that will reduce security risks for an organization, therefore saving them the time, money, and embarrassment of fixing exploited vulnerabilities further down the line. The key principles of Secure by Design include defense in depth, attack surface minimization and privilege access management, all with the goal of increasing resilience and lowering the chance of successful cyberattacks. But what does Secure by Design really mean? And how can organizations benefit from getting involved?