Czar sets out security stall

Microsoft chief UK security officer speaks exclusively to Network News

Paul Allen

The man charged with leading Microsoft's efforts to secure its software has vowed to put the interests of enterprises above the company's consumer customers.

Stuart Okin was appointed last week to the newly created post of UK chief security officer. His role is to bring together the raft of security initiatives sparked by Bill Gates's promise to clean up the company's act on security.

Advertisement

Microsoft CTO Craig Monday recently said that reaching a trusted state with security, reliability and privacy could take up to 10 years. "I support that for consumers, but for enterprises we need to do it as quickly as possible," said Okin.

He would not commit to a specific timescale, but said the company was in consultation with customers and developer forums to ascertain the key short-term goals.

Okin said it was difficult to gauge the company's progress. "We can't just go to vulnerability tracking sites to judge whether we're being effective. If we find more vulnerabilities it could be an indication we're doing well, providing they're fixed quickly."

Okin renewed Microsoft's attack on those who publish the details of vulnerabilities as soon as they are discovered.

"It is irresponsible for any finder to issue details until a patch is available. It's like leaving home, leaving the door open and announcing it with a megaphone," he said.

But Deri Jones, security services director at NTA Monitor, said that published vulnerabilities gave suppliers an incentive to get things done faster, and that network managers had a right to know.

"Honesty and openness mean things get fixed," he said. "If Microsoft and other vendors fixed vulnerabilities in a timely fashion, then that argument would hold water.

"If you don't publish the information, then sysadmins don't have the choice to turn off a feature. It goes round the hacker community fast enough, and network managers should be able to make an informed choice."

Comment on this story

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

US security crackdown loses support

People want expanded snooping powers curtailed

Related whitepapers

Related jobs

Most watched

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

HTC Hero

Video: HTC Hero launch

Handset maker unveils its latest Android-based smartphone

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

firefox logo

In Pictures: Firefox 3.5

Screenshots from Mozilla's latest Firefox web browser

BT

BT scraps Phorm rollout

Telco claims to be too tight on resources to support...

Nokia

Nokia denies Android smartphone rumours

Mobile phone giant insists it will stick with Symbian

Second Life

Second Life seeks to mix the real and virtual worlds

Linden Lab unveils plans to integrate with social networks and...

Primary Navigation