Saturday | 30 August, 2008
Computerworld
Microsoft Staffers Debate "Worst Jobs In Science" Nomination
Analysts also believe the hard work done in the MSRC is starting to pay off, and agree that the ranking is a hangover of past product vulnerabilities
Michael Crawford (CIO) 28/06/2007 16:05:25

Computerworld Buyer's Guide - Vendors Matched to this Article
Related Features
  • +

    Your World. . . Hacked 02/10/2007 10:51:23

    As your business becomes more collaborative and global, the risks to your company’s trade secrets rise proportionally. Fortunately, there are new strategies to protect the data that allows you to compete
    The call to Bob Bailey, an IT executive with a major US government contractor, came on an otherwise ordinary day in October 2003. "Why are you attacking us?" demanded the caller, an IT leader with a Silicon Valley manufacturer. He wanted to know why Bailey's company had launched a denial-of-service attack against his network
  • +

    Ticked Off at Tick the Box Mentality 04/02/2008 13:01:15

    Does your executive search firm know the difference between an MIS manager and a CIO, and if it does, can it explain that difference to its corporate clients?
    Does your executive search firm know its MIS managers from its elbow? Does it even know the difference between an MIS manager and a CIO, and if it does, can it explain that difference to its corporate clients?
  • +

    9 Paths to Higher Performance 10/12/2007 14:09:23

    When an organization brings together talented people in a creative, collaborative environment it fosters a culture of high performance, which in turn leads to superior business results
    Like high-achieving individuals, some organizations seem to have the Midas touch. Virtually every initiative they touch earns them gold and even those that fail never seem to cost them much of anything at all
  • +

    How to Get Real About Strategic Planning 04/02/2008 12:50:59

    Everyone agrees that having a strategic plan for IT is a good thing but most CIOs approach the process with fear and loathing. In fact, the majority of CIOs (and the enterprises they work for) are faking it when it comes to strategic planning. Isn't it time we all got real?
    Oh, it must be nice to be the CIO of a FedEx or a GE or a Credit Suisse. Places where IT and the business are so tightly aligned you can barely tell the two apart. Where corporate leaders understand that IT is a strategic asset and support it as such
Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.

Newsletter Subscription

Sign up for our Computerworld newsletters!
Computerworld's twice-daily news service keeps you in touch with the latest, most important headlines from Australia and around the world.
Keep up with the latest virtualisation technologies, products, news and features.
RSS Feeds

Working in the Microsoft Security Response Centre (MSRC) has been voted number six out of the ten worst jobs in science in 2007, however Microsoft staffers reckon there is nowhere else they can find an opportunity like the ones they meet every day.

Analysts also believe the hard work done in the MSRC is starting to pay off, and agree that the ranking is a hangover of past product vulnerabilities.

Only in the MSRC do you come to work knowing that what you did today can help protect hundreds of millions of people around the world from malicious attackers
Mark Griesi — security program manager, MSRC

This month, US-based Popular Science magazine listed its annual top ten "Worst Jobs in Science" awards, with work in the MSRC pipping professions such as whale-faeces researcher, forensic entomologist, Olympic drug tester, gravity research subject for the middle-of-the-road ranking.

The top five professions as nominated by Popular Science magazine were coursework carcass preparer, the humble garbologist, an elephant vasectomist, oceanographer and finally hazmat diver.

The article said working as a Microsoft Security Grunt was "like wearing a big sign that reads 'Hack Me'" and called the work manning the secure@microsoft.com as tedious.

But work at the MSRC, however "tedious" it may already be, could be making practical advances in Microsoft's operating system security.

According to the recent Microsoft Security Intelligence Report, new vulnerability disclosures increased 41 percent in 2006.

In a blog post dated June 15, 2007, published on IDG's US CSO online Web site, Microsoft's Trustworthy Computing Group Security Strategy Director, Jeff Jones, perfomed an anlaysis on Windows Vista vulnerabilities since the six-month launch of the operating system, saying "it does seem like there are more researchers, better trained and with better tools and techniques than ever before ... creating an ecosystem better able to find and disclose security vulnerabilities".

A link to the blog and vulnerability report is available here

Jones added that during the first six months Windows Vista was available, Microsoft released four security bulletins and relevant updates addressing a total of 12 vulnerabilities affecting Windows Vista.

In the first six months of Windows XP's availability, according to Jones, Microsoft fixed a total of 36 vulnerabilities in the first six months (including three vulnerabilities in Internet Explorer disclosed and fixed three weeks prior).

23 of the Windows XP vulnerabilities were rated high by the US National Institute of Standards (NIST) in the National Vulnerability Database (NVD).

The study also compared vulnerabilities released in Red Hat Enterprise Linux 4 Workstation, Ubunutu 6.06 and Novell SUSE Linux Enterprise Desktop.

Computerworld Buyer's Guide - Vendors Matched to this Article
Market Place

Computerworld Member Login


 

Prioritizing Services with IT Service Management (ITSM)

Computerworld Live Webinar
Wednesday 20th, August 2008
11:00am EST (Sydney, Australia)

To be repeated on:

Thursday 4th, September 2008
11:00am EST (Sydney Australia)

Sign up and receive a free copy of The Forrester WaveTM Service Desk Management Tools, Q2 2008 at the conclusion of the Webinar.

Attend and discover:

  • How to deliver value to your business through ITSM
  • Best practice ITSM implementation
  • Why emphasis is changing from optimizing IT management processes to better servicing customers and demonstrating real dollar value
  • If service-oriented ITSM is best for your business
Whitepaper

Still Sneaking In: The Threats Your Security Tools Aren't Telling You About

Web 2.0 applications are all the rage, offering us tremendous value when it comes to collaboration and communication. They also open us up to new kinds of attacks however, and can cause problems in keeping systems and data secure. Read on to learn about the new attack methods and how you can defend yourself and your business.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links