Listen "Achieving Continuous Authority to Operate (ATO)"
Episode Synopsis
Authority to Operate (ATO) is a process that certifies a system to operate for a certain period of time by evaluating the risk of the system's security controls. ATO is based on the National Institute of Standards and Technology's Risk Management Framework (NIST 800-37). In this podcast, Shane Ficorilli and Hasan Yasar, both with the Carnegie Mellon University Software Engineering Institute, discuss continuous ATO, including challenges, the role of DevSecOps, and cultural issues that organizations must address.
More episodes of the podcast Software Engineering Institute (SEI) Podcast Series
Delivering Next-Generation AI Capabilities
29/09/2025
Mitigating Cyber Risk with Secure by Design
14/07/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.