Members of Technical Staff at the Software Engineering Institute

Software Engineering Institute (SEI) Podcast Series

The SEI Podcast Series presents conversations in software engineering, cybersecurity, and future technologies.

Author

Members of Technical Staff at the Software Engineering Institute

Category

Technology

Podcast website

www.sei.cmu.edu

Latest episode

Jul 8, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

An Architecture-Focused Measurement Framework for Managing Technical Debt 04.09.2012

Managing technical debt, which refers to the rework and degraded quality resulting from overly hasty delivery of software capabilities to users, is an increasingly critical aspect of producing cost-effective, timely, and high-quality software products. A delicate balance is needed between the desire to release new software capabilities rapidly to satisfy users and the desire to practice sound soft...

Agile Acquisition 04.09.2012

The SEI is focused on reducing the DoD information technology (IT) development cycle currently as long as 81 months to short, incremental approaches that yield results more quickly. One complicating factor is that DoD acquisition programs (like other highly-regulated commercial environments) have a prescribed vision of how IT systems are developed. This podcast explores the SEI's research and work...

How a Disciplined Process Enhances & Enables Agility 04.09.2012

Typically, people who believe themselves to be Agile, believe that developers realize the best results when they focus on empowered teams, collaboration with stakeholders, avoiding unnecessary work, and receiving frequent feedback. Agilests hate the term "process" because they use the word somewhat differently than we do. The word "process," however, can be defined as something done repeatedly, wi...

U.S. Postal Inspection Service Use of the CERT Resilience Management Model 21.08.2012

CERT-RMM can be used to establish and meet resilience requirements for a wide range and diverse set of business objectives. Related Courses Introduction to the CERT Resilience Management Model CERT Resilience Management Model (CERT-RMM) Users Group Workshop Series Listen on Apple Podcasts .

Insights from the First CERT Resilience Management Model Users Group 17.07.2012

Implementing CERT-RMM requires well-defined improvement objectives, sponsorship, proper scoping and diagnosis, and defined processes and measures. Related Courses: Introduction to the CERT Resilience Management Model CERT Resilience Management Model (CERT-RMM) Users Group Workshop Series Listen on Apple Podcasts .

NIST Catalog of Security and Privacy Controls, Including Insider Threat 24.04.2012

Security controls, including those for insider threat, are the safeguards necessary to protect information and information systems. Related Course Insider Threat Workshop Listen on Apple Podcasts .

Cisco's Adoption of CERT Secure Coding Standards 28.02.2012

Implementing secure coding standards to reduce the number of vulnerabilities that can escape into operational systems is a sound business decision. Related Course Secure Coding in C and C++ Listen on Apple Podcasts .

How to Become a Cyber Warrior 31.01.2012

Protecting the internet and its users against cyber attacks requires a significant increase in the number of skilled cyber warriors. Related Courses Information Security for Technical Staff Fundamentals of Incident Handling   Listen on Apple Podcasts .

Considering Security and Privacy in the Move to Electronic Health Records 20.12.2011

Electronic health records bring many benefits along with security and privacy challenges. Listen on Apple Podcasts .

Measuring Operational Resilience 04.10.2011

Measures of operational resilience should answer key questions, inform decisions, and affect behavior. Related Course Introduction to the CERT Resilience Management Model Listen on Apple Podcasts .

Why Organizations Need a Secure Domain Name System 06.09.2011

Use of Domain Name System security extensions can help prevent website hijacking attacks. Listen on Apple Podcasts .

Controls for Monitoring the Security of Cloud Services 02.08.2011

Depending on the service model, cloud providers and customers can monitor and implement controls to better protect their sensitive information. Listen on Apple Podcasts .

Building a Malware Analysis Capability 12.07.2011

Analyzing malware is essential to assess the damage and reduce the impact associated with ongoing infection. Related Course Malware Analysis Apprenticeship Listen on Apple Podcasts .

Using the Smart Grid Maturity Model (SGMM) 05.05.2011

Over 100 electric power utilities are accelerating their transformation to the smart grid by using the Smart Grid Maturity Model. Listen on Apple Podcasts .

Integrated, Enterprise-Wide Risk Management: NIST 800-39 and CERT-RMM 29.03.2011

Business leaders must address risk at the enterprise, business process, and system levels to effectively protect against today's and tomorrow's threats. Related Courses Assessing Information Security Risk Using the OCTAVE Approach Introduction to the CERT Resilience Management Model Listen on Apple Podcasts .

Conducting Cyber Exercises at the National Level 22.02.2011

Scenario-based exercises help organizations, governments, and nations prepare for, identify, and mitigate cyber risks. Listen on Apple Podcasts .

Indicators and Controls for Mitigating Insider Threat 25.01.2011

Technical controls may be effective in helping prevent, detect, and respond to insider crimes. Related Course Insider Threat Workshop Listen on Apple Podcasts .

How Resilient Is My Organization? 09.12.2010

Use the CERT Resilience Management Model (CERT-RMM) to help ensure that critical assets and services perform as expected in the face of stress and disruption. Related Course Introduction to the CERT Resilience Management Model Listen on Apple Podcasts .

Public-Private Partnerships: Essential for National Cyber Security 30.11.2010

Government agencies and private industry must build effective partnerships to secure national critical infrastructures.  Listen on Apple Podcasts .

Software Assurance: A Master's Level Curriculum 26.10.2010

Knowledge about software assurance is essential to ensure that complex systems function as intended. Related Course Secure Coding in C and C++ Listen on Apple Podcasts .

How to Develop More Secure Software - Practices from Thirty Organizations 28.09.2010

Organizations can benchmark their software security practices against 109 observed activities from 30 organizations. Related Course Secure Coding in C and C++ Listen on Apple Podcasts .

Mobile Device Security: Threats, Risks, and Actions to Take 31.08.2010

Internet-connected mobile devices are becoming increasingly attractive targets Listen on Apple Podcasts .

Establishing a National Computer Security Incident Response Team (CSIRT) 19.08.2010

A national CSIRT is essential for protecting national and economic security, and ensuring the continuity of government agencies and critical infrastructures. Related Courses Creating a Computer Security Incident Response Team Managing Computer Security Incident Response Teams Listen on Apple Podcasts .

Securing Industrial Control Systems 27.07.2010

Securing systems that control physical switches, valves, pumps, meters, and manufacturing lines as these systems connect to the internet is critical for service continuity. Listen on Apple Podcasts .

The Power of Fuzz Testing to Reduce Security Vulnerabilities 25.05.2010

To help identify and eliminate security vulnerabilities, subject all software that you build and buy to fuzz testing. Listen on Apple Podcasts .

Listen to the Software Engineering Institute (SEI) Podcast Series podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.