#190 Product Security Assurance

EPISODE · Mar 16, 2024 · 33 MIN

#190 Product Security Assurance

from Embracing Digital Transformation

In this episode Darren interviews Jerry Bryan Sr. Director of Product Assurance at Intel and fellow podcaster of Chips and Salsa. They discover the Zero Trust aspects of Product assurance for a silicon manufacturer. Product assurance is integral to digital security, especially within the silicon industry. Internationally renowned technology giant Intel is setting the bar high in this domain. Intel has taken a comprehensive approach to product assurance, striking an effective balance between proactive security measures and reactive mitigation strategies. Laying the Foundation of Security in TechnologyProduct assurance at Intel starts with embedding a security-first mindset across the organization. The objective is to equip Intel's engineers to understand a hacker's outlook and approach. This is achieved through extensive training and events. Simultaneously, the organization applies a diligent security development lifecycle. This proactive measure ensures potential security weaknesses are identified and resolved.Equally important is Intel's widespread commitment to product assurance, which goes beyond the product development phase. The firm has established a product security incident response team (PSIRT). The team is tasked with managing vulnerability reports, developing quick mitigations, and facilitating the prompt delivery of security updates to customers when vulnerabilities surface post-product launch. Investing in Offensive Security ResearchSupporting its commitment to product assurance, Intel has established an 'offensive security research team' that boasts more than 80 hardware security researchers worldwide. The team proactively identifies potential vulnerabilities in existing and under-development products, thereby setting a robust and forward-facing outlook toward product security at Intel. The Power of Crowd-Sourced Security: Intel's Bug Bounty ProgramIntel has also acknowledged the power of crowd-sourced cybersecurity efforts through its Bugs Bounty program. Incentivizing external security researchers to report potential vulnerabilities has been a strategic decision. In 2023 alone, more than 246 researchers have participated in the initiative.  Initiative towards Hardware Hacking: Project Circuit Breaker Intel has launched the Project Circuit Breaker initiative to secure its product line further. This project focuses on training researchers on hacking hardware. Taking more scrutiny of their products through these eyes aligns with Intel’s long-term strategic goals in product assurance. The Assurance to End UserIntel aims to provide more than just products to its consumers; it offers assurance of security. This assurance is significantly valuable in today's global environment, which is increasingly dependent on digital solutions. With Intel’s comprehensive approach to product security assurance, users can feel confident that their Intel-powered devices are diligently designed to defend against security threats.An independent study by ABI Research substantiates Intel’s claim to leadership in the product security assurance field within the silicon industry. Intel CEO Pat Gelsinger expressed confidence in Intel's product security assurance approach, implying it is valuable for other silicon vendors.Intel's exhaustive efforts to protect its digital products offer significant assurance in today's uncertain digital landscape. It provides a robust assertion that Intel's hardware and firmware are designed with meticulous care to repel any security threats, making Intel a trustworthy choice in an environment that grows more reliant on digital solutions every day.See Privacy Policy at https://art19.com/privacy and California Privacy Notice at https://art19.com/privacy#do-not-sell-my-info.

NOW PLAYING

#190 Product Security Assurance

0:00 33:20

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Managing Next Generation Energy Systems Cambridge University Background Stakeholders working with energy systems have to make complex decisions formulated from risk-based assessments about the future. The move towards more renewables in our energy systems complicates matters even further, requiring the development of an integrated power grid and continuous and steady transformation of the UK power system. Network flows must be managed reliably under uncertain demands, uncertain supply, emerging network technologies and possible failures and, further, prices in related markets can be highly volatile. Mathematicians working with engineers and economists, can make significant contributions to address such issues, by helping to develop fit-for-purpose models for next generation energy systems. These interdisciplinary approaches are looking to address a range of associated problems, including modelling, prediction, simulation, control, market and mechanism design and optimisation. This knowledge exchange workshop was part of the four months Res The Digital Resilience Show David Wild Podcast by David Wild Solving for Change MOBIA Technology Innovations Solving for Change welcomes business and technology leaders to share stories of bold business transformation within complex organizations. In an era when technology and markets are changing around businesses, the key to staying competitive is to evolve in response to those changes.  MOBIA’s Mike Reeves and Marc LeBlanc investigate business transformation, deconstructing the challenges, ambitions, and market disruptions that drive companies to embark on transformation journeys, and exploring their unique approaches to achieving meaningful outcomes.  What sparks leaders to pursue business transformation? How do they overcome the challenges along the way? What are the keys to creating enduring change?  Through in-depth conversations with business and technology leaders, Mike and Marc answer these questions and explore how businesses evolve by pulling four key transformation levers: people, process, technology, and culture. Darknet Discussions Darknet Discussions Welcome to "Darknet Discussions," the podcast that gets into the shadows of the internet to bring you the most intriguing, enlightening, and sometimes unsettling stories from the dark web. Hosted by seasoned darknet aficionados, each episode of "Darknet Discussions" explores the intricate dynamics of darknet markets, cybersecurity threats, and the digital underworld. Join us as we interview experts, discuss the latest trends in cybercrime, and shed light on the technologies that operate beneath the surface of everyday internet use. Also, we occasionally go off on a tangent about something completely unrelated.
URL copied to clipboard!