"These vulnerabilities can be technical (e.g., vulnerabilities in code, side-channels potentially disclosing sensitive information) and/or socio-technical (e.g., supply chain issues, insider threats, biases, and social engineering), as long as they are deemed significant in the context of the OSE. The goal of the Safe-OSE program is to catalyze meaningful improvements in the safety, security, and privacy of the targeted OSE that the managing organization does not currently have the resources to undertake. The program especially focuses on efforts in which enhancing the safety, security, and privacy of the OSE will lead to demonstrable improvement in its positive societal and economic impacts."
"These vulnerabilities can be technical (e.g., vulnerabilities in code, side-channels potentially disclosing sensitive information) and/or socio-technical (e.g., supply chain issues, insider threats, biases, and social engineering), as long as they are deemed significant in the context of the OSE. The goal of the Safe-OSE program is to catalyze meaningful improvements in the safety, security, and privacy of the targeted OSE that the managing organization does not currently have the resources to undertake. The program especially focuses on efforts in which enhancing the safety, security, and privacy of the OSE will lead to demonstrable improvement in its positive societal and economic impacts."