This document summarizes a report on processes for producing secure software. It discusses the problem of software vulnerabilities causing security issues, and the need for software developers to adopt processes that can measurably reduce defects and produce more secure software. The report's recommendations include adopting more effective development practices in the short-term, establishing a program to evaluate practices for producing secure software in the mid-term, and certifying effective processes and broadening related research and teaching in the long-term. The goal is to motivate software producers to implement practices that can be shown to reduce security vulnerabilities.