Home | Links | Contact Us | Press | Post a job | Bookmark
Search jobs:
Home Latest press releases Hold-software-developers-responsible-for-security

 Stevens Point - PT Client Service Representative
Citizens Banking Corporation Job Opportunity Bulletin 06-337   Opening Date: 08/08/06 Closing D...


 Suamico - FT Client Service Representative
Citizens Banking Corporation Job Opportunity Bulletin 06-336   Opening Date: 08/08/06 Closing D...


 Hudson - Branch Manager
Citizens Banking Corporation Job Opportunity Bulletin 06-341   Opening Date: 08/10/06 Closing D...


 Loan Servicing Group Assistant Manager
Home of the Five Star Service Guarantee At U.S Bank, we are committed to providing our customers ...


 Personal Trust/Relationship Manager
Our basic strength lies in the people who work here.” -Samuel C. Johnson The words of our ...


 Account Executive - Wisconsin - Wholesale
JPMorgan Chase is a leading global financial services firm with assets of $1.1 trillion and ...


 Commercial Lender
Cornerstone Community Bank is creating a new commercial lending position.   We are seeking an ...


 Funds Management, Analyst
Job ID: 4501 Industry Title: Funds Management, Analyst Location: Milwaukee - WI - US Employment S...


 Employee Benefits Group Producer- Insurance
Job Responsibilities: Responsible for marketing and selling employee benefits insurance products. P...


 Securities Operation Specialist-Mutual Fund Services
Home of the Five Star Service Guarantee At U.S Bank, we are committed to providing our customers ...


 Hold software developers responsible for security

Software developers should be held personally accountable for the security of the code they write, said Howard Schmidt, a former White House cyber security adviser.
Speaking on Tuesday at the SecureLondon 2005 conference, Schmidt, who is now CEO of R&H Security Consulting, also called for better training for software developers. He said he believes that many developers don't have the skills needed to write secure code.
He said: "In software development, we need to have personal quality assurances from developers that the code they write is secure."
He cited the example of some developers he recently met who had created a web application to talk to a back-end database using SSL: "They had strong authentication, strong passwords, an encrypted tunnel. The stored data was encrypted. But when that data was sent to the purchasing office, it was sent as a plain text file. This was not an end-to-end solution.
"We need individual accountability from developers for end-to-end solutions so we can go to them and say, 'Is this completely secure?'"
Schmidt also referred to a recent survey from Microsoft finding that 64 per cent of software developers were not confident they could write secure applications. For him, better training is the way forward.
"Most university courses traditionally focused on usability, scalability and manageability - not security," he said. "Now a lot of universities are focusing on information assurance and security but, traditionally, web application development has been measured in mouse clicks - how to make users click through."
Companies that develop software also have a role to play, said Schmidt, by checking that prospective employees have relevant security qualifications before hiring them.
The British Computer Society (BCS) agreed there should be accountability in software development but argued that companies should be held responsible for the security of the code written by their employees, rather than by the employees themselves.
A security representative for the BCS said in an interview: "Howard has gone to an extreme by saying software developers should be held personally responsible for the security of the code they write but we broadly agree with the direction he's taking.
"I know a lot of developers who would be very uncomfortable with that level of accountability, especially if that were legal accountability. It is a company's responsibility to make sure the security features of its software are tested with rigor."
The representative added: "There is also the point that code isn't static. Once purchased, it can be modified", pointing out that this would reduce individual accountability.
In addition, many security attacks succeed because people have not installed the latest patches or have installed a system incorrectly.
Businesses themselves should accept some responsibility for the security of the software they purchase, the representative said. "The software has to be shown to be fit for its purpose. This is essential for producing a trustworthy online environment."
Tom Espiner writes for ZDNet UK


Related jobs
  Premium Auditor - Part-time
With over 1400 employees, Overland Solutions, Inc. (OSI) is the nation’s largest, and leading, provider of Premium Audit and Insurance Inspection services.  I...
  Premium Auditor- Part-time
With over 1400 employees, Overland Solutions, Inc. (OSI) is the nation’s largest, and leading, provider of Premium Audit and Insurance Inspection services.  I...
  Accountant
Union Telephone is seeking a qualified Accountant for our corporate office.  The qualified candidate should possess a strong work ethic, good organizational and ...
  Staff Accountant
Job Purpose: Provides management with financial information by researching and analyzing accounts; preparing financial statements. Duties: * Prepares consolidated ...
  Senior Accountant
Rio Tinto Energy America (RTEA) is a world leader in finding, mining, and processing the earth’s mineral resources.  The successful candidates will become members ...
  Internal Audit II/III
Internal Audit II/III Stevens Point, Wisconsin About Sentry Insurance: Sentry Insurance is one of the country's largest and strongest mutual insurance companies. S...
  Financial Controller
 DESCRIPTION   Daigle Brothers Inc., one of the Northwood’s most innovative steel fabrication and machining providers, has an immediate need for a financial ...
  Credit Balance Auditor
Kelly Services, a Fortune 500 Service provider, has an immediate opening in Marshfield, Wisconsin, as a Credit Balance Auditor.    Job duties and ...
  Senior Accountant - SEC Reporting
MR Wausau is an office recognized locally as a Small Business of the Year and ranked nationally within the top 50 offices. I am a recruiter with MR Wausau and work ...
  Manager, Financial Analysis
Sprint Nextel has a total equity value of approximately $70 billion, a communications powerhouse that will outpace our competitors and set the stage for the future of ...

Related press releases
Jobs shows off "simple" and "elegant" new OS
...
Apple's Jobs likely to keep Mac fans in the dark
Macintosh fans hoping to hear about new laptop models will probably have to wait beyond next week. Although Apple Computer CEO Steve Jobs is making a keynote spee...
Apple's Jobs unveils new iMac, G4 systems
NEW YORK--Mac enthustiasts looking for new products got plenty as CEO Steve Jobs announced cheaper iMacs, dual-processor Power Macs and a tiny 8-inch cube. In his ...
Jobs report sends markets higher
Stocks rose across the board after a government report provided evidence that the economy may be cooling slightly. The Bureau of Labor Statistics reported that the to...
Don't misplace manners at job interviews
The extremely tight market for tech workers has degraded the interviewing skills of many job candidates (see complete story). These are some interview tips from Sue Fox, ...
Tight job market turns tables on interview process
Have you heard the tale of the job candidate who opened her purse, pulled out a brownie, and started munching at the CEO's desk? When the executive vented his shock, the ...
Tech employees jumping jobs faster
Employee turnover in the high-tech industry has reached the point where the average employee leaves in just over a year, and many who stay get antsy to quit after a year ...
Glaser, Jobs unveil streaming partnership
...
Older workers cash in on high-tech job growth
Carlene Gibbons is an unlikely dot-com worker: The 56-year-old career nurse has two grown children, a penchant for watercolor and a desire to retire in the next decade. ...
Net contributing jobs, productivity to economy
New research reinforces the notion that the Internet and computer technology are fundamentally altering the way the U.S. economy operates. The Center for Research i...
0.074

Archive: All jobs - Links - Links1 - Links2 - RSS - All RSS Feeds

Copyright (c)2007 FindJob3k.com - All rights reserved