November 18, 2003

Security At Microsoft

Microsoft is committed to sharing its internal IT security practices in order to help its customers successfully secure their environments. They released a paper that describes what Microsoft’s Corporate Security Group does to prevent malicious or unauthorized use of digital assets at Microsoft.

This asset protection takes place through a formal risk management framework, risk management processes, and clear organizational roles and responsibilities. The basis of the approach is recognition that risk is an inherent part of any environment and that risk should be proactively managed. The principles and techniques described in this paper can be employed to manage risk at any organization.

Its an interesting read, especially if you follow the OTG at all and wonder what they are up to. Happy reading.

Posted by SilverStr at November 18, 2003 06:27 AM | TrackBack