Microsoft - Security researchers: Bug bounty program for Azure DevOps added - Printable Version +- Sick Gaming (https://www.sickgaming.net) +-- Forum: Computers (https://www.sickgaming.net/forum-86.html) +--- Forum: Windows (https://www.sickgaming.net/forum-89.html) +--- Thread: Microsoft - Security researchers: Bug bounty program for Azure DevOps added (/thread-88257.html) |
Microsoft - Security researchers: Bug bounty program for Azure DevOps added - xSicKxBot - 01-17-2019 Security researchers: Bug bounty program for Azure DevOps added <div style="margin: 5px 5% 10px 5%;"><img src="http://www.sickgaming.net/blog/wp-content/uploads/2019/01/security-researchers-bug-bounty-program-for-azure-devops-added.jpg" width="34" height="34" title="" alt="" /></div><div><header class="entry-header full"> </header> <p><!-- .entry-header --></p> <p>It is my pleasure to announce another exciting expansion of the Microsoft Bounty Programs. Today, we are <a href="https://blogs.technet.microsoft.com/msrc/2019/01/17/azure-devops-bounty-program/">adding a security bug bounty program for Azure DevOps</a> in partnership with the Microsoft Security Response Center (MSRC) to our suite of Bounty programs.</p> <p>Our Bounty program rewards independent security researchers who find flaws and report them to us responsibly. We’ll publicly recognize the researchers who report these security issues, and for high-severity bugs we’ll present payments of up to $20,000 USD.</p> <p>These rewards help motivate researchers to find security vulnerabilities in our services and let us correct them before they’re exploited by attackers. You can find the <a href="https://www.microsoft.com/en-us/msrc/bounty-azure-devops">details of our Bug Bounty program with MSRC</a>.</p> <p>Security has always been a passion of mine, and I see this program as a natural complement to our existing security framework. We’ll continue to employ careful code reviews and examine the security of our infrastructure. We’ll still run our security scanning and monitoring tools. And we’ll keep assembling a red team on a regular basis to attack our own systems to identify weaknesses.</p> <p>If you’re interested in the way our team approaches security and how we continue to evolve our thinking and practices, then I’d encourage you to watch the video of my talk “<a href="https://docs.microsoft.com/en-us/azure/devops/learn/devops-at-microsoft/security-in-devops">Mindset shift to a DevSecOps culture</a>.”</p> <p>This program will help us provide the highest level of security for our customers, protect customer data, and ensure the availability of Azure DevOps. I’m looking forward to seeing what we learn from working more closely with the security community.</p> <div class="author-info"> <div class="author-avatar"> <img alt="" src="http://www.sickgaming.net/blog/wp-content/uploads/2019/01/security-researchers-bug-bounty-program-for-azure-devops-added.jpg" class="avatar avatar-42 photo" height="42" width="42" /></div> <p><!-- .author-avatar --> <!-- .author-description --> </div> <p><!-- .author-info --> </p> </div> |