NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft / Security

Security


Microsoft Moves to the Center of the Security Universe from the Periphery

Come November

By Marius Oiaga, Technology News Editor

17th of September 2008, 11:46 GMT

Adjust text size:


Steve Lipner
Enlarge picture
Microsoft, a company once regarded at the periphery of the security universe, has slowly made its way to the center, and come November 2008, will be the source of a new model for developers industry-wide to follow. The Redmond company is looking to share the Security Development Lifecycle (SDL) debuted in 2004 with the world. Microsoft is currently cooking the SDL Optimization Model, the SDL Pro Network, and the Microsoft SDL Threat Modeling Tool for availability this fall.

“The Microsoft SDL Optimization Model was created to facilitate consistent and cost-effective implementation of the SDL in development organizations outside of Microsoft,” stated Steve Lipner, senior director of security engineering strategy in Microsoft’s Trustworthy Computing Group. “It allows development managers and IT policy-makers to assess the state of their secure software development practices and to create a vision and road map for reducing customer risk. In November, we will make the model freely available via a download on MSDN.”

By sharing the Microsoft SDL Optimization Model with the members of the software industry, the Redmond giant aims to catalyze a new level of security and privacy in technology, especially products focused on the Cloud. As an integral part of the company's efforts, Microsoft is ready to offer its own internal threat modeling tool as a free download in November.

“The tool allows software architects to identify and mitigate potential security issues early, when they are relatively easy and cost-effective to resolve. Most importantly, it offers a threat modeling methodology that any software architect can lead effectively, in contrast with other processes, which are more dependent on security experts,” Lipner explained.

But the Microsoft SDL Threat Modeling Tool is only one part of the equation. Microsoft is in fact ready to do much more. Also in November, the SDL Pro Network will become live. Lipner indicated that the network would start along with a one year pilot phase during which time membership would be limited.

“We created the SDL Pro Network, which combines guidance and SDL best practices with the expertise of security service providers, to address the challenges developers are facing with attacks moving up the stack and into the application layer,” Lipner revealed.

TAGS:

SDL | Microsoft SDL Optimization Model | Microsoft SDL Threat Modeling Tool | SDL Pro Network
Read by 946 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
NOT RATED 0 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Windows Essential Business Server 2008 Has RTM'ed

Windows 7, Windows 8, Windows 9 – 1 Billion and Counting

August 2008 Cumulative Update Packages for Office 2007 SP1

(The Other) Windows XP SP3, on Par with the Original Service Pack 3

Plug 6 Critical Security Holes Shared by Vista SP1 and XP SP3

Onward to Firefox 3.1 Beta 1

New Windows 7 Tools and Features

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM