Create an account


Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Microsoft - Security researchers: Bug bounty program for Azure DevOps added

#1
Security researchers: Bug bounty program for Azure DevOps added

It is my pleasure to announce another exciting expansion of the Microsoft Bounty Programs. Today, we are adding a security bug bounty program for Azure DevOps in partnership with the Microsoft Security Response Center (MSRC) to our suite of Bounty programs.

Our Bounty program rewards independent security researchers who find flaws and report them to us responsibly. We’ll publicly recognize the researchers who report these security issues, and for high-severity bugs we’ll present payments of up to $20,000 USD.

These rewards help motivate researchers to find security vulnerabilities in our services and let us correct them before they’re exploited by attackers. You can find the details of our Bug Bounty program with MSRC.

Security has always been a passion of mine, and I see this program as a natural complement to our existing security framework. We’ll continue to employ careful code reviews and examine the security of our infrastructure. We’ll still run our security scanning and monitoring tools. And we’ll keep assembling a red team on a regular basis to attack our own systems to identify weaknesses.

If you’re interested in the way our team approaches security and how we continue to evolve our thinking and practices, then I’d encourage you to watch the video of my talk “Mindset shift to a DevSecOps culture.”

This program will help us provide the highest level of security for our customers, protect customer data, and ensure the availability of Azure DevOps. I’m looking forward to seeing what we learn from working more closely with the security community.


Reply



Possibly Related Threads…
Thread Author Replies Views Last Post
  Microsoft - Our expanded partnership with Oracle will make Microsoft Azure the only xSicKxBot 0 1,927 09-16-2023, 12:28 PM
Last Post: xSicKxBot
  Microsoft - Microsoft Azure meets growing needs of healthcare organizations, such as xSicKxBot 0 1,965 09-07-2023, 10:28 AM
Last Post: xSicKxBot
  Microsoft - Announcing Azure Government Top Secret regions xSicKxBot 0 1,539 12-08-2020, 02:12 PM
Last Post: xSicKxBot
  Microsoft - How Microsoft does DevOps – from the 1990s to now xSicKxBot 0 1,388 12-02-2020, 09:29 PM
Last Post: xSicKxBot
  Microsoft - Azure Hybrid Benefit now generally available for Linux xSicKxBot 0 1,515 11-18-2020, 08:15 AM
Last Post: xSicKxBot
  Microsoft - New nanodegree program offers chance to develop machine learning skills xSicKxBot 0 1,499 10-14-2020, 06:48 AM
Last Post: xSicKxBot
  Microsoft - Why we invite security researchers to hack Azure Sphere xSicKxBot 0 1,531 10-07-2020, 01:48 AM
Last Post: xSicKxBot
  Microsoft - New Azure VMware Solution is now generally available xSicKxBot 0 1,463 09-29-2020, 06:01 PM
Last Post: xSicKxBot
  Microsoft - CVP Sam George: How Azure IoT enables business resilience xSicKxBot 0 1,443 09-25-2020, 11:57 PM
Last Post: xSicKxBot
  Microsoft - AI for Humanitarian Action expands program beyond nonprofits xSicKxBot 0 1,197 09-24-2020, 08:42 PM
Last Post: xSicKxBot

Forum Jump:


Users browsing this thread:
1 Guest(s)

Forum software by © MyBB Theme © iAndrew 2016