[SC-L] (fwd) informIT: A Software Security Framework

2008-10-15 Thread Kenneth Van Wyk
[Posted on behalf of Gary McGraw, who is without comms right now but wanted this to go out today. KRvW] hi sc-l, Brian Chess and I have been working hard on a software security framework that we are using in a scientific study of many of the top software security initiatives. Our plan of

Re: [SC-L] (fwd) informIT: A Software Security Framework

2008-10-15 Thread McGovern, James F (HTSC, IT)
:[EMAIL PROTECTED] On Behalf Of Kenneth Van Wyk Sent: Wednesday, October 15, 2008 8:32 AM To: Secure Coding Subject: [SC-L] (fwd) informIT: A Software Security Framework [Posted on behalf of Gary McGraw, who is without comms right now but wanted this to go out today. KRvW] hi sc-l, Brian Chess and I

Re: [SC-L] (fwd) informIT: A Software Security Framework

2008-10-15 Thread Gary McGraw
Wed Oct 15 13:58:32 2008 Subject: Re: [SC-L] (fwd) informIT: A Software Security Framework The framework that Pravir put together is pretty good. Brian and I did have a conversation awhile back regarding donating it to OWASP for continuation. I plan on making our firm one of the public case s

Re: [SC-L] (fwd) informIT: A Software Security Framework

2008-10-16 Thread Kenneth Van Wyk
Greetings SC-L, I thought I'd chime in on this, as it very closely relates to my current book project. On Oct 15, 2008, at 8:31 AM, Gary McGraw (via Kenneth Van Wyk) wrote: Brian Chess and I have been working hard on a software security framework that we are using in a scientific study of m