Skip to main content

Market incentives in the pursuit of resilient software and hardware

A new paper from the ONCD explores how metrics can influence markets to improve the cyber security ecosystem.

, ,
iStock.com/Andrey Suslov

For the past year, President Biden’s National Cybersecurity Strategy has acknowledged that mitigating known software vulnerabilities is a complex problem, and that the current ecosystem does not properly incentivise the investments required to secure the foundations of cyberspace.

‘Back To The Building Blocks: A Path Toward Secure and Measurable Software’ is a new paper from the White House’s Office of the National Cyber Director (ONCD), which argues that in order to establish accurate cyber security quality metrics, the research community can address the hard and complex research problem of 'software measurability’.

The NCSC fully support the ONCD’s endeavours, and in this post, we share our thinking on a number of key themes in the report, including:

  • the market incentives and behaviours for secure software and hardware
  • where the research, capability and understanding gaps exist

and
 

  • how the NCSC is taking steps to address these





Ollie Whitehouse, Chief Technology Officer (CTO)

Helen L, CTO Cyber Growth

Paul W, Head of Capability Research

Written by

Ollie Whitehouse Chief Technology Officer (CTO), NCSC
Helen L CTO Cyber Growth, NCSC
Paul W Principal Technical Director, NCSC Capability