Trusted Cyber Annex
Subscribe
Sign in
Home
Notes
Chat
Document Downloads
Archive
About
NIST's Secure Software Development Framework (SSDF) 1.2
Takeaways for the draft currently out for public comment
Jan 27
•
Karen (Scarfone) Kent
2
Latest
Top
Discussions
Five takeaways from NIST SP 800-70 update
National Checklist Program for IT Products: Guidelines for Checklist Users and Developers
Jan 12
•
Karen (Scarfone) Kent
and
Matthew Smith
2
Do AI chatbots tell the truth? Six-month follow-up
Six months ago, I tested five AI chatbots—ChatGPT, Claude, Copilot, Gemini, and Perplexity—to see how they performed when asked to provide a set of…
Jan 6
•
Karen (Scarfone) Kent
4
Thanks, and best wishes for 2026!
You know when you make plans and life laughs out loud at them?
Dec 12, 2025
•
Karen (Scarfone) Kent
2
2
In-depth Q&A on federal cybersecurity writing
Earlier this fall, I did a Q&A session on my experiences writing for NIST. Last week I did a follow-up Q&A session that went into more detail on my NIST…
Nov 7, 2025
•
Karen (Scarfone) Kent
2
1
Details on the risk management API
Last week we announced the alpha release of the TCAnnex API.
Oct 6, 2025
•
Matthew Smith
1
Big news: an API for NIST risk management documents
Delivering high-integrity data in a machine-readable format directly to you
Oct 2, 2025
•
Matthew Smith
1
Q&A on cyber writing for NIST
I recently did a Q&A session with members of Cybersecurity Club on my experiences writing for NIST, and I had the best time!
Sep 22, 2025
•
Karen (Scarfone) Kent
3
See all
Trusted Cyber Annex
The home for honest, high-integrity cybersecurity guidance and community
Subscribe
Trusted Cyber Annex
Subscribe
About
Archive
Sitemap
This site requires JavaScript to run correctly. Please
turn on JavaScript
or unblock scripts