Browse by Tags

Security Compliance Management Toolkit Series for IE 8 and Windows 7
Just a brief one: the Security Compliance Management Toolkit Series has been updated to incorporate Internet Explorer 8 and Windows 7. So, to help you to manage security and compliance in your environment, you should have a look at it: http://technet.microsoft.com/en-us/solutionaccelerators/cc835245.aspx Read More...
Look at the Enhanced Mitigation Evaluation Toolkit
Recently we announced the availability of the Enhanced Mitigation Evaluation Toolkit. This is a toolkit which makes it easier to defend your application on different levels – free of charge. Read the post done by our Security Research and Defense guys: Read More...
Why it pays to be secure – Chapter 3 – But how do I?
Our EMEA Security Program Manager, Henk van Roest, started this series internally and with his consent I am publishing it here in my blog as I think it contains a lot of great information for you to use. Security — you hear about it every day. Being responsible Read More...
Is the “Managed Desktop” the ultimate solution?
When I talk about the big trends, one of them is about the call of the younger generation for more flexibility. Flexibility in this context is about where you work, when you work and how you organize yourself. If you take this as a given, you have to Read More...
Manage Network Access Protection at Microsoft
As you know, I am a big fan of the concepts behind Network Access Protection as it allows to dynamically define zones on you network. We just published a whitepaper called Manage Network Access Protection at Microsoft : Network Access Protection (NAP) Read More...
Microsoft awarded for Security
This is probably one of the best news I read since a long time. I often said, that I am convinced that we are in a lot of areas around security leading the industry. The complexity of building multi-purpose software in a secure way started to be addressed Read More...
Posted 16 June 09 09:03 by rhalbh | 0 Comments   
Filed under , ,
Securing Microsoft’s Cloud Infrastructure
A lot of people and companies are talking about “the Cloud” today. I guess that there are not too many companies that share the same track record of running online services as Microsoft. 1994 we launched MSN and since then we are in this business. Microsoft Read More...
How we do IT: Direct Access
You might know that we have something we call the Microsoft IT Showcase , where our internal IT shows how they use our technology to run our environment. Now, we just published a new article, which might be interesting for you to read called Using DirectAccess Read More...
Patch Management, a key step towards compliance!
As you might have read, I recently blogged about my infrastructure and the future of a platform towards a better management of compliance – honestly, I actually played with our latest technology . I wrote about Deploying PKI Time Sync on Virtual DCs Now, Read More...
Security Development Lifecycle Template – Your next step to “Secure Development”
You might remember it: January 15th, 2002 Bill Gates wrote the famous memo on Trustworthy Computing to all the employees at Microsoft. This was probably one of the biggest initiatives at Microsoft and radically changed the way we develop software (and Read More...
A Conversation About Threat Modeling by Michael Howard
Michael Howard, one of our gurus, when it comes to secure code development, wrote a dialogue on SDL and Threat Modeling called A Conversation About Threat Modeling – this is definitely a must read, even if you are not a developer Roger Read More...
Posted 04 May 09 09:10 by rhalbh | 1 Comments   
Filed under , ,
Mozilla Patches Fastest. NOT!
I only believe the statistics I forged myself So, once more, there is a debate on which browser is the most secure, who fixed which vulnerabilities how fast. The Secunia Report 2008 was just published and it seems that this injects once more the fire Read More...
Would a properly managed IT have withstood Conficker?
Before I start here: Let’s be clear that I will not say (and will never say) that if a customer was infected with Conficker he had a poorly managed network! I had a lot of discussions over the course of time about the reasons for customers being infected. Read More...
The Impact of the Security Development Lifecycle
Jeff Jones just started a blog series to show the impact of our Security Development Lifecycle on the updates to be deployed. It is a pretty interesting read: Here is the February version: Feb09 Security Bulletin SDL Benefit Summary Roger Read More...
Videos about the latest Security Development Lifecycle
I know that this is not particularly news but nevertheless it could well be that the non-developers out there have not yet seen this. During TechEd EMEA for Developers we announced several things around SDL and had some speeches. Some of them are public Read More...
More Posts Next page »

Search

This Blog

Syndication

Page view tracker