Adam Shostack is part of Microsoft's Security Development Lifecycle Strategy team, where he is responsible for security design analysis techniques. Before Microsoft, Adam was involved in a number of successful start-ups focused on vulnerability scanning, privacy, and program analysis. He helped found the CVE, International Financial Cryptography association, and the Privacy Enhancing Technologies workshop. He has been a technical advisor to companies including Counterpane Internet Security and Debix. He is co-author of the newly released "The New School of Information Security." (Addison Wesley)
Information security faces a crisis. As a discipline, as a profession and as a passion, the challenges we face seem overwhelming. Cybercriminals are organizing and making vast sums of money. Management never seems to want to cough up enough funding. Practitioners are exhausted. What's causing this crisis, and how can we break out?