David W. White
Axio Global
David W. White is an SEI alumni employee.
David W. White is a founder and senior executive at Axio Global. He oversees the firm’s cyber risk engineering services and is responsible for the frameworks and methods that guide the organization’s cybersecurity services.
Previously, David worked in the CERT Program at Carnegie Mellon’s Software Engineering Institute. While there, he was responsible for technical leadership and research strategy for a portfolio of cybersecurity and resilience maturity models and frameworks and associated research, diagnostic methods, and training. David served as chief architect for the Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2) and the Smart Grid Maturity Model (SGMM). He also co-authored the CERT Resilience Management Model (CERT-RMM).
Publications by David W. White
-
CERT Resilience Management Model: A Maturity Model for Managing Operational Resilience
July 08, 2016 • Book
Richard A. CaralliJulia H. AllenDavid W. White
In this book, the authors present best practices for managing the security and survivability of people, information, technology, and facilities.
read -
Cyber Insurance and Its Role in Mitigating Cybersecurity Risk
January 08, 2015 • Podcast
James J. CebulaDavid W. WhiteJulia H. Allen
In this podcast, Jim Cebula and David White discuss cyber insurance and its potential role in reducing operational and cybersecurity risk.
learn more -
CERT Resilience Management Model—Mail-Specific Process Areas: Mail Revenue Assurance (Version 1.0)
September 18, 2014 • Technical Note
Julia H. AllenGreg Crabb (United States Postal Service)Pamela D. Curtis
This report describes a new process area that ensures that the USPS is compensated for mail that is accepted, transported, and delivered.
read -
CERT Resilience Management Model—Mail-Specific Process Areas: Mail Induction (Version 1.0)
September 18, 2014 • Technical Note
Julia H. AllenGreg Crabb (United States Postal Service)Pamela D. Curtis
This report describes a new process area that ensures that mail is inducted into the U.S. domestic mail stream according to USPS standards and requirements.
read -
Using the Smart Grid Maturity Model (SGMM)
May 05, 2011 • Podcast
David W. WhiteJulia H. Allen
In this podcast, David White describes how over 100 electric power utilities are using the Smart Grid Maturity Model.
learn more -
Application of the CERT Resilience Management Model at Lockheed Martin
March 24, 2011 • Presentation
William David (Lockheed Martin Enterprise Business Services)Nader MehravariDavid W. White
In this presentation, the authors describe using CERT-RMM to improve business continuity, IT disaster recovery, crisis management, and pandemic-planning.
read -
How Resilient Is My Organization?
December 09, 2010 • Podcast
Richard A. CaralliDavid W. WhiteJulia H. Allen
In this podcast, Richard Caralli explains how CERT-RMM can ensure that critical assets and services perform as expected in the face of stress and disruption.
learn more -
CERT Resilience Management Model, Version 1.0
May 01, 2010 • Technical Report
Richard A. CaralliJulia H. AllenPamela D. Curtis
In this report, the authors present CERT-RMM, an approach to managing operational resilience in complex, risk-evolving environments.
read -
Managing Relationships with Business Partners to Achieve Operational Resiliency
October 20, 2009 • Podcast
David W. WhiteJulia H. Allen
In this podcast, David White explains why a defined, managed process for third party relationships is essential, particularly when business is disrupted.
learn more -
High-Fidelity E-Learning: The SEI's Virtual Training Environment (VTE)
January 01, 2009 • Technical Report
Jim WrubelDavid W. WhiteJulia H. Allen
In this 2008 report, the authors compare various approaches and tools used to capture and analyze evidence from computer memory.
read -
Introducing the CERT® Resiliency Engineering Framework: Improving the Security and Sustainability Processes
May 01, 2007 • Technical Report
Richard A. CaralliJames F. StevensCharles M. Wallen (Financial Services Technology Consortium)
In this 2007 report, the authors explore the transformation of security and business continuity into processes to support and sustain operational resiliency.
read -
CERT Resiliency Engineering Framework
March 01, 2007 • Presentation
David W. White
In this presentation, the authors provide an update of the Resiliency Engineering Framework project being conducted by the CERT Division of the SEI.
read -
Resiliency Engineering Framework Project Update
October 11, 2006 • Presentation
David W. WhiteCharles M. Wallen (Financial Services Technology Consortium)
This presentation provides an update of the Resiliency Engineering Framework project being conducted by the Software Engineering Institute's CERT program. It was delivered by David White and Charles Wallen at the FSTC annual meeting on October 11, 2006.
read