<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: foreword]]></title>
    <link>http://securityratty.com/tag/foreword</link>
    <description></description>
    <pubDate>Mon, 05 May 2008 09:28:30 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Show 030 - An Interview with Ken van Wyk]]></title>
      <link>http://securityratty.com/article/0b1369b7e3490f60e22d2ae7d871f6c7</link>
      <guid>http://securityratty.com/article/0b1369b7e3490f60e22d2ae7d871f6c7</guid>
      <description><![CDATA[On the 30th episode of The Silver Bullet Security Podcast, Gary talks with Ken van Wyk, principal and founder of KRvW Associates. Ken was the first employee of CERT and has been an active member of...]]></description>
      <content:encoded><![CDATA[<p><img align="right" alt="Ken van Wyk" title="Ken van Wyk" src="http://www.cigital.com/silverbullet/kvanwyk-125.png" style="padding-left: 7px;" /></p>
<p>On the 30th episode of The Silver Bullet Security Podcast, Gary talks with Ken van Wyk, principal and founder of KRvW Associates.  Ken was the first employee of CERT and has been an active member of FIRST.  Ken and Gary discuss why the discipline of computer science doesn&#8217;t learn from failure like mechanical engineering does, how we&#8217;re making steps backwards in computer security, whether focusing on web applications is a good or bad thing for software security, and Ken&#8217;s recommendation for moderately-priced red wines.</p>
<ul>
<li><a href="http://www.vanwyk.org/ken/">Ken&#8217;s personal page</a></li>
<li><a href="http://www.krvw.com/">KRvW Associates</a></li>
<li><a href="http://www.cert.org/">CERT</a></li>
<li><a href="http://www.first.org/">FIRST</a></li>
<li><a href="http://www.securecoding.org/"><em>Secure Coding</em></a></li>
<li><a href="http://oreilly.com/catalog/9780596001308/"><em>Incident Response</em></a></li>
<li><a href="http://www.securecoding.org/list/">SC-L mailing list</a></li>
<li><a href="http://www.cigital.com/justiceleague/2007/07/06/from-the-foreword-to-secure-programming-with-static-analysis/">From the foreword to Secure Programming with Static Analysis</a> - blog entry with photo of Tacoma Narrows Bridge</li>
<li><a href="http://finance.google.com/finance?chdnp=1&#038;chdd=1&#038;chds=1&#038;chdv=1&#038;chvs=maximized&#038;chdeh=0&#038;chdet=1222200000000&#038;chddm=166345&#038;q=NYSE:TJX&#038;ntsp=0">TJX&#8217;s stock increase since the January 2007 security breach</a></li>
<li><a href="http://www.buildsecurityin.com/">The Addison-Wesley Software Security Series</a></li>
<li><a href="http://www.google.com/search?hl=en&#038;client=opera&#038;rls=en&#038;hs=fdc&#038;sa=X&#038;oi=spell&#038;resnum=0&#038;ct=result&#038;cd=1&#038;q=barbara+d%27asti&#038;spell=1">Barbara D&#8217;Asti wines</a></li>
</ul>
]]></content:encoded>
      <pubDate>Fri, 26 Sep 2008 17:23:25 +0000</pubDate>
      <category domain="http://securityratty.com/tag/van wyk">van wyk</category>
      <category domain="http://securityratty.com/tag/tjxs stock increase">tjxs stock increase</category>
      <category domain="http://securityratty.com/tag/barbara dasti wines">barbara dasti wines</category>
      <category domain="http://securityratty.com/tag/tacoma narrows bridge">tacoma narrows bridge</category>
      <category domain="http://securityratty.com/tag/kens personal page">kens personal page</category>
      <category domain="http://securityratty.com/tag/red wines">red wines</category>
      <category domain="http://securityratty.com/tag/secure">secure</category>
      <category domain="http://securityratty.com/tag/security breach">security breach</category>
      <category domain="http://securityratty.com/tag/gary talks">gary talks</category>
      <source url="http://www.cigital.com/silverbullet/show-030/">Show 030 - An Interview with Ken van Wyk</source>
    </item>
    <item>
      <title><![CDATA[ Security Engineering , by Ross Anderson]]></title>
      <link>http://securityratty.com/article/a9d3c89c7d96aa7ccb4d032b5ef3666c</link>
      <guid>http://securityratty.com/article/a9d3c89c7d96aa7ccb4d032b5ef3666c</guid>
      <description><![CDATA[I just received the second edition of Ross Anderson's Security Engineering in the mail. It's beautiful
This is the best book on the topic there is, and I recommend it to everyone working in this field...]]></description>
      <content:encoded><![CDATA[<p>I just received the second edition of Ross Anderson's <a href="http://www.amazon.com/Security-Engineering-Building-Dependable-Distributed/dp/0470068523/ref=pd_bbs_sr_2?ie=UTF8&s=books&qid=1209409426&sr=8-2"><i>Security Engineering</i></a> in the mail.  It's beautiful.</p>

<p>This is the best book on the topic there is, and I recommend it to everyone working in this field -- and not just because I wrote the <a href="http://www.cl.cam.ac.uk/~rja14/bruce.html">foreword</a>.  You can download <a href="http://www.cl.cam.ac.uk/~rja14/book.html">the preface and six chapters</a>.  (You can also download the entire first edition.)</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=z1nLaH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=z1nLaH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=o5JDbH"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=o5JDbH" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Mon, 05 May 2008 09:28:30 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ross anderson">ross anderson</category>
      <category domain="http://securityratty.com/tag/edition">edition</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/download">download</category>
      <category domain="http://securityratty.com/tag/topic">topic</category>
      <category domain="http://securityratty.com/tag/foreword">foreword</category>
      <category domain="http://securityratty.com/tag/preface">preface</category>
      <category domain="http://securityratty.com/tag/chapters">chapters</category>
      <category domain="http://securityratty.com/tag/recommend">recommend</category>
      <source url="http://www.schneier.com/blog/archives/2008/05/security_engine.html"> Security Engineering , by Ross Anderson</source>
    </item>
  </channel>
</rss>
