Security Insights - Cybersecurity for Real-World Workplaces

Prisoner Priorities: Why Disclosure Policies Can’t Please Everyone

December 15, 2022 Ivanti Season 2 Episode 30
Security Insights - Cybersecurity for Real-World Workplaces
Prisoner Priorities: Why Disclosure Policies Can’t Please Everyone
Show Notes Chapter Markers

Daniel, Chris, Amanda and Ashley revisit the coordinated disclosure conversation from Episode 25 and apply the prisoner’s dilemma thought experiment to create a (more?) perfect vendor disclosure policy.

  • Next episode going live June 29, 2023!
    • New episodes publish around the second and fourth Thursdays each month.
  • For all show notes, resources and references, head to Ivanti.com/SecurityInsights
  • Join the conversation online on LinkedIn (linkedin.com/company/Ivanti)
The difference between coordinated disclosure and responsible disclosure
Prisoner's dilemma: incentivizing desired behavior for responsible disclosure
Researchers versus vendors (versus customers?!)
Trying to please everyone with a single disclosure policy
The mythically perfect disclosure policy… and how close we can land
Feedback and communication goals for real-world vendor disclosure policies