All the latest UK technology news, reviews and analysis

Trustworthy Computing initiative turns 10

by Phil Muncaster

13 Jan 2012

Be the first to comment

  • Tweet this
Microsoft chairman Bill Gates

Microsoft this week celebrated the 10th anniversary of its Trustworthy Computing (TwC) initiative, a programme that helped to improve the software giant's development processes and engineering culture to prioritise security and privacy in the design of all products.

Bill Gates sent a now-famous email to all Microsoft employees outlining the initiative, which called on employees to deliver products that were "as available, reliable and secure as standard services such as electricity, water services and telephony".

"In Bill's original email, he identified three core attributes – security, privacy and reliability – that we had to develop in our software and services," said Scott Charney, corporate vice president of Microsoft Trustworthy Computing.

"In the memo, Bill said that technology was going to be integrated in our lives in a far more rich way and would impact everything we do. That was one of the reasons it was so critical to get these three attributes right."

TwC famously gave birth to the Security Development Lifecycle, a mandatory policy for producing more secure products.

Ovum analyst Andy Kellett argued that the initiative had achieved a lot over the past decade.

"If you take the position at the beginning as far as security was concerned, Microsoft were the lead duck in that particular shooting gallery and they still are a major target because they have so much market share," he told V3.

"But it has moved things along significantly and taken the approach to drive an internal strategy to improve the quality of products from a security perspective which shows with each major release."

He added that TwC had also helped to raise the profile of secure development and the need to weed out application vulnerabilities at the design stage, although he argued there is still too much insecure code, especially SQL injection vulnerabilities.

Going forward, the Android platform and the mobile revolution in general represents one of the biggest threats to the ideals behind the TwC, said Kellett.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

40%

0%

10%

50%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Field Service Engineer - Dublin

The Role: As a Field Service Engineer working from...

Global Technical Support Representative - French Speaker

The Role: Make the most of your IT knowledge in one...

Head of IT / Infrastructure Manager (Marketing Services Group)

Head of IT / Infrastructure Manager (Marketing Services...

Business Development Executive

A Multi-national data analytic's and cloud computing...

To send to more than one email address, simply separate each address with a comma.