Gary McGraw Flashcards

1
Q

Who is Gary McGraw?

A

A pioneer in the field of software security and author known for promoting the integration of security into software development.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Gary McGraw known for?

A

He is known for his contributions to software security, including writing foundational books and coining the concept of ‘software security.’

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What was Gary McGraw’s academic background?

A

He studied philosophy and earned a Ph.D. in cognitive science from Indiana University.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What major book did Gary McGraw co-author?

A

‘Building Secure Software,’ co-authored with John Viega.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the ‘touchpoints’ approach developed by Gary McGraw?

A

A methodology that integrates security into each stage of the software development lifecycle.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What role did Gary McGraw hold at Cigital?

A

He was the Chief Technology Officer (CTO) at Cigital.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How did Gary McGraw’s work impact the software industry?

A

His work helped shift the industry from reactive security fixes to building security into software design from the beginning.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the BSIMM?

A

The Building Security In Maturity Model, a framework co-developed by McGraw to help organizations improve their software security practices.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What was the software industry’s attitude towards security when McGraw started?

A

Security was often considered a secondary concern, and most efforts focused on fixing vulnerabilities after they were discovered.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What company acquired Cigital?

A

Synopsys acquired Cigital.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How did Gary McGraw’s background in cognitive science influence his approach to security?

A

It allowed him to understand human behavior and how it interacts with software systems, influencing his holistic approach to security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What era saw the rise of cybersecurity and software security concerns?

A

The 1990s and early 2000s as the internet became more widespread.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What key shift did Gary McGraw advocate for in software development?

A

He advocated for building security into the software development process rather than addressing it afterward.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is Gary McGraw’s contribution to cybersecurity literature?

A

He wrote several seminal books, including ‘Software Security: Building Security In.’

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What role does music play in Gary McGraw’s life?

A

He is a talented pianist and sees a creative link between music and his work in software security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a fun fact about Gary McGraw?

A

He is a competitive ballroom dancer in addition to being a cybersecurity expert.

17
Q

What challenge did Gary McGraw face in promoting software security?

A

Convincing the software industry to prioritize security during the development process, which was often seen as unnecessary.

18
Q

How is Gary McGraw remembered today?

A

As a visionary in cybersecurity whose ideas became foundational to modern software development practices.

19
Q

What was a major controversy or challenge in McGraw’s career?

A

He faced resistance from developers and companies who did not see the importance of security in early software development stages.

20
Q

What field did McGraw’s work primarily influence?

A

The field of application security (AppSec) and secure software development.

21
Q

Why is Gary McGraw’s work important for future generations?

A

His ideas on integrating security into software development helped establish industry best practices that continue to protect systems today.