The playbook sets out principles and practical guidance for applying secure-by-design and secure-by-default requirements throughout a product's life cycle, aimed particularly at SMEs. It translates these principles into clear, repeatable actions that can be integrated into existing engineering, product, and release processes. It is accompanied by a GitHub repository containing 22 individual secure-by-design and secure-by-default playbooks in a navigable format.
Author: ENISA
Status: Adopted / Published
Adoption date: 2026-07-30
Last updated: 19 Aug 2026
Category: Guidance
Subcategory: Official recommendations