Security Park, the leading online news site for security professionals
Home | About us | Contact us | Submit an article | Advertise | Sales leads | Newsletter | RSS Newsfeed | SEARCH




Develop an ISO 27001-compliant Information Security Management System
This useful guide clarifies the steps you have to follow to develop an ISO 27001-compliant ISMS. Each step is integral in how secure your information security system is.

Need a
reference book?
Find it on Amazon:
Security books and magazines in association with Amazon.co.uk

SecurityPark Research Library

Help | Advanced Search
What's New?
What's Popular?
3-D Security
sponsored by Information Security Magazine
Posted:  15 Feb 2008
Published:  01 Feb 2008
Format:  HTML
Length:  8   Page(s)
Type:  Journal Article
Language:  English


ABSTRACT:
Six years into Microsoft's Trustworthy Computing initiative, Windows Server 2008 (aka Longhorn) reflects Redmond's "three D" promise to deliver products that are secure by design, secure by default and secure in deployment.

"There's no doubt about it; this is the first full Windows Server revision [under Trust- worthy Computing]," says Rand Morimoto, CEO and principal consultant for Oakland-based Convergent Computing, which has been piloting Windows Server 2008 internally and for customers. "When they came out with Windows Server 2003, it had already been half baked before Trustworthy Computing began. Windows Server 2008 is built from scratch--the server core has a lot of security built in."

The verdict on the inherent security of Server 2008's code will be rendered in the number and severity of vulnerabilities that come to light in the months and years following its release (manufacturing release is scheduled for Feb. 27). Microsoft trumpets security as the primary design consideration for Windows Server 2008, the product of its security development lifecycle process (SDL). It retrained its development staff on how to write secure code and created threat models, performing extensive security testing against each model. These efforts should go a long way toward reducing flaws that can be exploited; for example, you won't have to worry about things like buffer overflow attacks against your Windows Server 2008 systems.


Author

Beth Quinlan
Project Manager, HynesITe, Inc.
Beth Quinlan (MCT, MCSE-Security, CISSP) is the technical lead for HynesITe, where she is a trainer/consultant. She has specialized in Microsoft infrastructure technologies and security design for over 12 years. She has authored the ISA Server 2006 Reviewer's Guide.



BROWSE RELATED RESOURCES
Windows Security | Windows Vista

View All Resources sponsored by Information Security Magazine

Library Home | Advertise with Us | Product Library
A Service of Bitpipe