# SDL Article in CACM

DevFeed: [SDL Article in CACM](<https://devfeed.tech/articles/sdl-article-in-cacm-36965.md>)

Original publisher: [Read original article](<https://shostack.org/blog/sdl-article-in-cacm/>)

Author: Adam

Published: 2020-05-11T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Development](<https://devfeed.tech/topics/development.md>), [communications](<https://devfeed.tech/topics/communications.md>)

Tags: [academics](<https://devfeed.tech/tags/academics.md>), [article](<https://devfeed.tech/tags/article.md>), [development](<https://devfeed.tech/tags/development.md>), [research](<https://devfeed.tech/tags/research.md>), [security](<https://devfeed.tech/tags/security.md>)

## AI overview

The author announces a short Communications of the ACM article with Mary Ellen Zurko about the need for more research into secure development tools and techniques. The author says the science of building an effective Secure Development Lifecycle is still developing.

## Source excerpt

Most of my time, I'm helping organizations develop the skills and discipline to build security in. We give the best advice available, and I recognize that we're early in developing the science around how to build an SDL that works.