All the latest UK technology news, reviews and analysis

Tech firms hook up on security qualification

by Iain Thomson

More from this author

26 Mar 2007

Be the first to comment

  • Tweet this

The Sans Institute has brought together a coalition of technology companies to support a new qualification in computer security programming.

The GIAC Secure Software Programmer qualification will include four exams covering C/C++, Java/J2EE, Perl/PHP and .NET/ASP, and will be taught in universities and colleges around the world by the end of the year.

"Organised crime groups have turned their attention to computer-based crimes and are increasingly attacking weaknesses in applications, raising the value of secure coding skills," said Alan Paller, director of research at the Sans Institute.

"This assessment and certification programme will help programmers learn what they don't know, and help organisations identify programmers who have solid security skills."

Paller believes that with the right skills, programmers can reduce the risk of losses caused by cyber-attacks, and that the certification will allow security-aware programmers to stand out in an increasingly competitive marketplace.

Any programmer can sit the exams, which will be held three times a year. Versions will also be available online.

"The lack of trustworthy standards and certifications has been a challenge for software buyers and software developers," said Hartmut Raffler, head of Technology Division Information and Communication at Siemens Corporate Technology.

"Secure programming skills are essential for building software that can be trusted. The Sans Institute's willingness to offer this exam as part of a comprehensive secure coding improvement strategy is exciting and will help buyers and sellers of software."

Juniper, Siemens, Tata, Tipping Point and a host of vulnerability agencies have joined the scheme and are recognising the qualification, including the top five code testing companies.

A pilot scheme will be started in Washington this year, and the examination is expected to roll out worldwide by the end of the year.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

97%

1%

1%

0%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

FX Technical Implementation Consultant FX FOREX Trading London

FX Technical Implementation Consultant (Business Analyst...

IT Support Analyst - Leyland, Lancashire

IT Support Analyst required by Leyland, Lancashire Software...

Web Developer ( PHP5, OO, MySQL ) - Shrewsbury

A talented PHP / Web Developer is required for a web...

Software Developer ( .NET, C#, VB6, SQL ) Cheshire

Software Developer ( .NET, C#, VB6, SQL) needed. This...

To send to more than one email address, simply separate each address with a comma.