Microsoft touts success of 'Security Development Lifecycle'

eWeek | at | by Mike

Microsoft's application of a mandatory "Security Development Lifecycle" for all its Internet-facing products has "significantly reduced" the numberand severityof security vulnerabilities, according to a white paper released by the software giant.

The 19-page document, titled The Trustworthy Computing Security Development Lifecycle, outlines the "cradle to grave" procedures used for software creation at Microsoft. According to senior executives, the new approach represents a major change in the way that software is designed, developed and tested.