The security engineering team at Microsoft startet a new blog around the SDL! If you're interested, read yourself:
http://blogs.msdn.com/sdl/

Urs