Milton Smith

Milton Smith
Other names @spoofzu
Residence San Francisco Bay Area, USA
Citizenship American
Fields Computer security
Institutions Oracle
Yahoo
Known for Computer security

Milton Smith is an American computer security application developer, researcher, and writer. Smith is best known for his role leading Java platform security at Oracle during a period of high-profile security incidents in the fall of 2012. Due to the climate around Java security, in 2013 Smith was invited to present by Black Hat leadership in a closed session under Non-Disclosure Agreement to top industry leaders in the featured session, Oracle: On Java Security. In the same year Smith established the first ever[1] full security track at a software developers conference, JavaOne, Oracle's premier conference for Java software developers in San Francisco, California(USA).

Organizations

Oracle

From August 2012 until April 2015, Smith lead security for the Java platform family of products. Since April 2015, Smith continues as a principal security analyst at Oracle working strategically across company business units. Smith is an active collaborator in industry developing open source security tools for researchers as well as participating in security conference events and organizing them.[2][3] During this period Smith was Chief Technical Editor on an application security book project[4] with colleges.

Yahoo

Prior to Oracle around June 2011, Smith was leading security for the User Data Analytics(UDA) business unit at Yahoo and developed innovative security controls to secure Yahoo's click stream revenues. Smith also lead Yahoo's Enterprise Security Triage Program for monitoring enterprise vulnerabilities and tracking remediation activities.

Online Web Application Security Project (OWASP)

OWASP is one of the largest non-profit organizations of security practitioners in the world. On March 12, 2015 Smith developed DeepViolet a TLS/SSL scanning API researchers use to extend TLS/SSL scanning to their own projects. Today DeepViolet is an OWASP Incubator project. Smith is also a leader on the OWASP Security Logging API Project, an open source project extending important security features to applications that use popular logging platforms like log4j and logback.

Presentations

Software Technology Projects

Citations, Publications, and Articles

  1. "JavaOne 2014 USA, Security Track Amazeballs! – securitycurmudgeon.com". www.securitycurmudgeon.com. Retrieved 2016-11-12.
  2. "About the Sessions « All Day DevOps". www.alldaydevops.com. Retrieved 2016-11-12.
  3. "AppSecUSA 2015 Contact the Organizers". appsecusa.org.
  4. Manico, Jim; Detlefsen, August (2014-09-09). Iron-Clad Java: Building Secure Web Applications (1 edition ed.). McGraw-Hill Education. ISBN 9780071835886.

External links

This article is issued from Wikipedia - version of the 11/20/2016. The text is available under the Creative Commons Attribution/Share Alike but additional terms may apply for the media files.