04.07.2013 Views

The World Wide World: IT Ain't Just the Web ... - Cdn.oreilly.com

The World Wide World: IT Ain't Just the Web ... - Cdn.oreilly.com

The World Wide World: IT Ain't Just the Web ... - Cdn.oreilly.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

ties, and good people can go bad. And <strong>the</strong> moment you start keeping people’s identities on<br />

file, you create <strong>the</strong> risk of releasing confidential information; just ask ChoicePoint!<br />

Yet that doesn’t mean we should all give up. All parties – vendors, access/service<br />

providers, consumers, educators, governments – have a responsibility and a role to play.<br />

Yes, we’re talking to you! If <strong>the</strong> private sector doesn’t take <strong>the</strong> initiative, government<br />

will. But as we argued in <strong>the</strong> November 2004 issue of Release 1.0 on <strong>the</strong> accountable<br />

Net, <strong>the</strong> Net’s tools <strong>the</strong>mselves give individuals <strong>the</strong> means to protect <strong>the</strong>mselves, while a<br />

variety of services will let <strong>the</strong>m outsource tasks such as filtering spam or managing firewalls<br />

with as much personalization or specificity as <strong>the</strong>y care to pay for. Of course, it’s<br />

not easy, but <strong>the</strong> very visibility of <strong>the</strong> Net’s security problems are leading <strong>the</strong> way to a<br />

solution since <strong>the</strong>y make people aware of <strong>the</strong> problem and more conscious of <strong>the</strong> need to<br />

protect <strong>the</strong>mselves.<br />

<strong>The</strong> question of responsibility for security isn’t just government vs. private sector; it’s<br />

also “which vendor?” Microsoft’s Scott Charney represents perhaps <strong>the</strong> leading vendor<br />

in terms of basic infrastructure; he also has experience as a government law-enforcer.<br />

Symantec’s John Thompson represents <strong>the</strong> leading formerly pure-play <strong>IT</strong> security vendor<br />

– unless you redefine security more broadly, which is <strong>the</strong> point. Cisco’s Jayshree Ullal<br />

serves <strong>the</strong> part of <strong>the</strong> market that links everyone, secure or not; she sees security happening<br />

in layers, from <strong>the</strong> depths of <strong>the</strong> network infrastructure to <strong>the</strong> top of <strong>the</strong> stack. May<br />

<strong>the</strong>y all <strong>com</strong>pete vigorously to ensure our safety!<br />

Scott Charney, Microsoft: Security from <strong>the</strong> source<br />

“I was hired as chief security strategist originally,” says Scott Charney, now VP of<br />

trustworthy <strong>com</strong>puting for Microsoft. “Microsoft ascribes to <strong>the</strong> philosophy of, ‘Get<br />

<strong>the</strong> right people on <strong>the</strong> bus without telling <strong>the</strong>m where to steer’.” Over time, he figured<br />

out his mission, which was not so much a corporate function, though he still<br />

has that role, but ra<strong>the</strong>r “to change <strong>the</strong> very rhythm of <strong>the</strong> business – how products<br />

get designed and tested, and how <strong>the</strong>y get sold and installed.”<br />

Charney got his training in security offline, as an English and History major with a<br />

law degree working as a prosecutor in Bronx County. In 1991, as one of <strong>the</strong> only guys<br />

around who knew how to program a <strong>com</strong>puter, he was charged with taking on<br />

online investigations. Within seven months he became chief of <strong>the</strong> newly created<br />

Computer Crime Unit in <strong>the</strong> US Department of <strong>Just</strong>ice (DoJ). As <strong>the</strong> leading federal<br />

prosecutor for <strong>com</strong>puter crimes, he helped prosecute nearly every major cybercrime<br />

case in <strong>the</strong> US from 1991 to 1999. He co-authored <strong>the</strong> original Federal Guidelines<br />

14 RELEASE 1.0 WWW.RELEASE1-0.COM

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!