Home > Security News > Gary McGraw on secure software development
Security News:
EMAIL THIS

Gary McGraw on secure software development

By Dennis Fisher, Executive Editor
06 Jun 2008 | SearchSecurity.com

Security Wire Daily News
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

For Gary McGraw, the chief technology officer of Cigital Inc., software security is not just an item to check off on a list. It is a personal crusade, an effort to educate developers, QA testers, senior management and anyone else with authority over a software project about the value of implementing secure software development practices and the effect they can have on a company's bottom line down the road. In this interview with Executive Editor Dennis Fisher, McGraw discusses the progress the industry is making on software security and how much farther most vendors have to go.

  McGraw on secure software development (12 min) 

  Program highlights: 

  • Let's talk about where things stand with the state of software security in the industry today. Are you optimistic? (0:17)
  • I've heard a lot of people say that solving the software security problem is going to cost a lot of time and money in the development process. Is that true? (2:22)
  • I know there's a lot of training that goes on in the professional world in terms of software security for developers, but is that happening more in colleges and universities right now compared to five years ago? (4:11)
  • What about the commercial software vendors. How much progress are they making on this problem? (6:57)
  • Are there one or two problems that really worry you in software security right now? (9:46)



Tags: Software Development MethodologyInformation Security Jobs and TrainingVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


RELATED CONTENT
Software Development Methodology
V.i Labs integrates Google maps to track software piracy
Software Piracy pandemic needs government role, better vendor antipiracy plans
Software piracy losses total $53 billion, study finds
Google study backs browser silent auto update feature
Secure software development starts before coding begins
Security budget issues to resonate at RSA Conference
Twitter worm attack highlights social network flaws
New model supports secure software coding
Firms improve secure coding practices, OWASP survey finds
More companies seek third-party Web app code review, survey finds

Information Security Jobs and Training
Security jobs survey finds fewer budget cuts, lower security salaries
Special Report: How to find jobs in information security
IT security skills and certification pay
Information security skills must include communication, expert says
Despite recession, pay climbs for top IT security certifications
How do I transition to a career in IT security?
Information security book excerpts and reviews
Security skills pay increases despite economic downturn
Getting the CEH certification to join an ethical hacking network
Finding a security management job after an economic downturn

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
bypass  (SearchSecurity.com)
Common Weakness Enumeration  (SearchSecurity.com)
debugging  (SearchSoftwareQuality.com)
fuzz testing  (SearchSecurity.com)
heuristics  (SearchSoftwareQuality.com)
sandbox  (SearchSecurity.com)
threat modeling  (SearchSecurity.com)
trigraph  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



More Tips to Secure Your Network
Focused on Channel Security?
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts