<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65252#M4207</link>
    <description>Cryptological,&lt;BR /&gt;Musings on the near future,&lt;BR /&gt;Or maybe new job?&lt;BR /&gt;&lt;BR /&gt;Much of this is about timing, and the longer you take to get to that point where you can switch in and switch out cryptographic modules the worse off you are.&lt;BR /&gt;&lt;BR /&gt;Warning signs:&lt;BR /&gt;&lt;BR /&gt;“We need that version because…”&lt;BR /&gt;“I know that’s more CVE’s than you’d like, however we’re probably not vulnerable”&lt;BR /&gt;“This year will be the year we set a plan to do it…”&lt;BR /&gt;&lt;BR /&gt;Of course, all things suffer from eventual obsolescence - and maybe like me you’d be willing to bet on that happening before there is a need... Though if you’re thinking about the good of people taking steps to correct issues now is essential.</description>
    <pubDate>Sun, 10 Dec 2023 23:16:47 GMT</pubDate>
    <dc:creator>Early_Adopter</dc:creator>
    <dc:date>2023-12-10T23:16:47Z</dc:date>
    <item>
      <title>Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65249#M4206</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How will you cope with technical debt in the shape of cryptographic debt - think current Software practices and APIs and then onto Quantum Cryptography as well as Q-Day.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Technical debt in software products typically results from unavailability of technology or unavailability of time.&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;It is the concept of “ship first, fix later.” There simply isn’t the time or manpower to do it right the first time. And nine times out of 10, the quick and dirty turns out to be “just fine.” It may not be elegant, not performant, but “fine” nonetheless, which is why the practice is near universal in the software world and technical debt is pervasive.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.forbes.com/sites/forbestechcouncil/2023/10/30/take-charge-of-your-technical-debt-exploring-cryptographic-debt/?sh=5fcfb88f3672" target="_blank" rel="noopener"&gt;https://www.forbes.com/sites/forbestechcouncil/2023/10/30/take-charge-of-your-technical-debt-exploring-cryptographic-debt/?sh=5fcfb88f3672&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A most interesting piece and certainly something to think about.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 20:46:56 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65249#M4206</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-12-10T20:46:56Z</dc:date>
    </item>
    <item>
      <title>Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65252#M4207</link>
      <description>Cryptological,&lt;BR /&gt;Musings on the near future,&lt;BR /&gt;Or maybe new job?&lt;BR /&gt;&lt;BR /&gt;Much of this is about timing, and the longer you take to get to that point where you can switch in and switch out cryptographic modules the worse off you are.&lt;BR /&gt;&lt;BR /&gt;Warning signs:&lt;BR /&gt;&lt;BR /&gt;“We need that version because…”&lt;BR /&gt;“I know that’s more CVE’s than you’d like, however we’re probably not vulnerable”&lt;BR /&gt;“This year will be the year we set a plan to do it…”&lt;BR /&gt;&lt;BR /&gt;Of course, all things suffer from eventual obsolescence - and maybe like me you’d be willing to bet on that happening before there is a need... Though if you’re thinking about the good of people taking steps to correct issues now is essential.</description>
      <pubDate>Sun, 10 Dec 2023 23:16:47 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65252#M4207</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2023-12-10T23:16:47Z</dc:date>
    </item>
    <item>
      <title>Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65254#M4208</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/797288093"&gt;@Early_Adopter&lt;/a&gt;&amp;nbsp;&amp;nbsp; Well it runs in parallel with the forthcoming Q-Day and planning, if organisations are not planning, technical debt could be incurred due to not being prepared or not realising the implications of doing any testing, migration in a controlled manner.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautm&lt;/P&gt;</description>
      <pubDate>Sun, 10 Dec 2023 23:37:55 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65254#M4208</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-12-10T23:37:55Z</dc:date>
    </item>
    <item>
      <title>Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65255#M4209</link>
      <description>Yeah, I’d split this up to the basic revving of SW packages and making sure your developers know how to use them and then bing interested in what’s happening/available in the toolkit coming down the pipe.&lt;BR /&gt;&lt;BR /&gt;The former is a SDLC basic(though cryptographic modules are particularly sensitive as they need to be compatible with others whilst not being vulnerable).&lt;BR /&gt;&lt;BR /&gt;The latter, sign up for newsletters, watch the forums read the papers - if you depend on a paradigm, then be aware if something(or someone) is about to change it.&lt;BR /&gt;&lt;BR /&gt;In your latter scenario, with not anything done, if I’d done all I could I think I’ll just retire and tend a bar, or make coffee for people…</description>
      <pubDate>Sun, 10 Dec 2023 23:45:20 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65255#M4209</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2023-12-10T23:45:20Z</dc:date>
    </item>
    <item>
      <title>Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65257#M4210</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/797288093"&gt;@Early_Adopter&lt;/a&gt;&amp;nbsp;&amp;nbsp; Well if the industry messes up the crypto migration, you may be paying for the coffee with Roman Tin coins or Pay forward or something similar or using a bartering for services system.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It needs a lot of careful planning, testing, and staging.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Mon, 11 Dec 2023 02:23:21 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65257#M4210</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-12-11T02:23:21Z</dc:date>
    </item>
    <item>
      <title>Re: Take Charge Of Your Technical Debt: Exploring Cryptographic Debt</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65260#M4211</link>
      <description>Re-dollarizion..?&lt;BR /&gt;&lt;BR /&gt;I can confirm that I have a “Trianic Pu”*&lt;BR /&gt;stored in the Oort Cloud if you can give me credit…&lt;BR /&gt;&lt;BR /&gt;* Not a true currency “The Galactic banks refuse to deal in fiddling small change…” Douglas Adams&lt;BR /&gt;</description>
      <pubDate>Mon, 11 Dec 2023 03:28:57 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Take-Charge-Of-Your-Technical-Debt-Exploring-Cryptographic-Debt/m-p/65260#M4211</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2023-12-11T03:28:57Z</dc:date>
    </item>
  </channel>
</rss>

