IEEE Security & Privacy


Managing the Security Wall of Data

by Michael Howard

This article is quite different from other articles published in Basic Training; rather than focus on a specific security-related technology, I want to focus on another important topic: how to be more effective as a security person.

I’ve spoken to thousands of security professionals over the years, and we all share many of the same aspects of our job. Clearly, my position at Microsoft is different from a similar position at a bank or an airline; we all have different deliverables, customers, and threats facing our deliverables. But when it comes to delivering security solutions to customers, or making sure products are secure from attack, we all have one thing in common: juggling numerous, urgent tasks that are frequently interrupted by random events.

Read more »

Share this article »

The Evolution of Online Identity

by Scott Charney

When I look out "On the Horizon" to think about emerging Internet trends, I think that as a society we are beginning to see changes that can improve how we manage our identities online. In large part, these changes are necessary because, to reduce online crime, we must significantly improve how we authenticate ourselves on various computer systems.

Read more »

Share this article »

Lifting the Veil on Cyber Offense

by Herbert Lin

Given the reality of a densely interconnected information society, much has been written about the possibility that adversaries of the US—such as terrorists or hostile nations—might conduct damaging cyberattacks against critical sectors of our economy and national infrastructure, which depend on reliably functioning, secure computer systems and networks. For some years, the topic of cybersecurity has been an important part of the National Research Council's (NRC's) report portfolio, and a great deal of national attention has focused on the problem of how to protect the US against such attacks—that is, how to defend these systems and networks in both military and non-military contexts. Perhaps reflecting the common wisdom of the time, these efforts—as well as many other reports on cybersecurity—have focused almost exclusively on the cyberdefense side of the equation.

Read more

Web extras

 Silver Bullet Security Podcast with Gary McGraw RSS icon

Cigital CTO, author, and S&P editorial board member Gary McGraw in conversation with prominent security experts.

Current podcast:

 More podcasts

Christofer Hoff
Gary and Christofer Hoff, Director of Cloud and Virtualization Solutions at Cisco discuss cloud security and other complex security issues.

About the magazine

IEEE Security & Privacy (S&P) magazine provides research articles, case studies, tutorials, and columns for the information security industry. 

Subscribe to IEEE Security & Privacy Buy a single issue of IEEE Security & Privacy for $5

Announcements
Related products
Resources

>> Editorial Calendar

>> Write for S&P

>> Advertise in S&P

>> Subscribe to S&P Print | >> Single Issue

>> About S&P