About Reeny Sondhi

Reeny Sondhi is Director, Product Security Assurance at EMC Corporation. She is responsible for driving the strategy and execution of the EMC Security Development Lifecycle, a company-wide initiative to build security into every phase of the product development lifecycle. She also manages the EMC Product Security Response Center, which is responsible for reporting, managing, and resolving security vulnerabilities in EMC products and the Security Certifications programs. More ...

EMC’s Approach to Vulnerability Response

Let’s face it – real software products have security vulnerabilities! While building strong secure software development practices goes a long way towards detecting and helping to eliminate security vulnerabilities during the development process, a strong product security program also needs to be prepared to properly handle and respond to security vulnerabilities found in the product after it has shipped. Continue reading

SAFECode Releases Software Security Guidance for Agile Practitioners

In the Product Security Office, we often get questions from developers across the industry on how to apply EMC’s Security Development Lifecycle to an Agile development model. Software security practices have been traditionally considered as suitable for serial waterfall development methodologies and there has been a lot of debate in the industry on how to bring the best out of these practices to incorporate in today’s more iterative, agile development methodologies that are increasingly popular especially in the new cloud based, big data centric business models.

Continue reading