Sammy Migues, Principal - Technology

Sammy Migues
Print-quality JPG
smigues at cigital.com
Sammy on LinkedIn Sammy Migues

Sammy is an information security visionary with a proven record of entrepreneurial innovation, intellectual capital development, practical business solutions, and performance optimization. He has extensive day-to-day experience in chief technologies, applied R&D, and evangelist roles, working directly with customers, product management and product development.

At Cigital, Sammy works daily with customers and Cigital's best and brightest to keep corporate knowledge and people on the cutting edge of software security and quality, while also working on product innovation, software security course creation, and risk modeling and management. In previous positions, Sammy was VP, Knowledge Management at Cybertrust (formerly TruSecure) and Chief Scientist at iDEFENSE. Sammy is frequently sought out for press relations, TV, conference speaking, classroom instruction, executive briefings, and related knowledge transfer. He holds a BS in Computer Science and a Master's degree in Information Security.

Sammy on the Justice League blog

Sammy in the Press

05/20/10BSIMM2: Leading Software Security Maturity Model Triples to Include More Real-World Data on Software Security Initiatives, IT Business Edge.
05/17/10Podcast Gary McGraw on software security research, SearchSecurity.com - Security Wire Weekly.
05/12/10Podcast Secure coders, take note: BSIMM2 released, CSO Online.
09/25/09Benchmarking Security – Are We Safe Yet?, John Pescatore (Gartner Blog Network).
04/07/09Podcast New model supports secure software coding, SearchSecurity.com Security Newsmakers.
03/31/09Podcast An Experience-Based Maturity Model for Software Security, CERT Podcast.
03/25/09It B-SIMM-ply Marvelous!, Enterprise Security Blog.
03/18/09Fuzzing and Product Security, ITworld.
03/17/09First Data-Based Security Maturity Model Released, Visual Studio Magazine (also: Redmondmag.com).
03/17/09Podcast How to Write Apps Without the Security Sinkholes, CSO Online's Security Insights (podcast).
03/17/09First Data-Based Security Maturity Model Released, Application Development Trends.
03/12/09Software Security Model – BSI-MM released, Mike Andrews.
03/12/09Building Security In Maturity Model, The Security Development Lifecycle (MSDN).
03/12/09New report offers low-down on secure develoment, Network World.
03/11/09New report offers low-down on secure develoment, Techworld.com.
03/11/09Application Security is Journey, Not a Destination, Security Incite.
03/10/09Modelo de Maturidade para Segurança de Software (translate), marcelosouza.com.
03/06/09CAG, BSIMM and field-assessed security, Security Balance.
03/06/09Fortify, Cigital Release Software Security Program Benchmarks, Dark Reading.
03/06/09Risks Digest 25.60, RISKS.
03/05/09Building Security In Maturity Model, Sylvan von Stuppe.
03/05/09BSIMM: Maturing the process of Building Security In., SilverStr's Blog.
03/04/09The Building Security In Maturity Model (BSIMM), Dr. InfoSec.
11/28/08TOP PC, Internet, Information Security & Identity Management Blogs!, CEOWORLD Magazine.

BSIMM-related Resources

Events

Mar 01, 2010 -
Mar 05, 2010
Sammy Migues at RSA 2010, talk: "Mathematical Profile of a Winner - BSIMM Data Analyzed". San Francisco, CA.
Mar 31, 2009 Sammy Migues (with Chenxi Wang and Ari Takanen), Codenomicon Webinar: Fuzzing 101.