This document provides an overview of software assurance (SwA) initiatives within the US federal government. It discusses how the Department of Homeland Security established the National Cyber Security Division Software Assurance Program to promote software security, integrity, and resiliency. It also describes the development of a common measurement framework to help organizations implement security best practices throughout the software development lifecycle. Finally, it analyzes security risks and mitigation strategies for Supervisory Control and Data Acquisition (SCADA) systems used in critical infrastructure through examples like the Stuxnet malware.