Managing the Security Wall of Data
by Michael Howard
This article is quite different from other articles published in Basic Training; rather than focus on a specific security-related technology, I want to focus on another important topic: how to be more effective as a security person.
I’ve spoken to thousands of security professionals over the years, and we all share many of the same aspects of our job. Clearly, my position at Microsoft is different from a similar position at a bank or an airline; we all have different deliverables, customers, and threats facing our deliverables. But when it comes to delivering security solutions to customers, or making sure products are secure from attack, we all have one thing in common: juggling numerous, urgent tasks that are frequently interrupted by random events.