Kaspersky launches 'Global Transparency' initiative; to provide source code for third-party review

Image
ANI New Delhi [India]
Last Updated : Oct 23 2017 | 4:42 PM IST

Kaspersky Lab has announced the launch of its Global Transparency initiative as part of its ongoing commitment to protecting customers from cyberthreats, regardless of their origin or purpose. As part of the Initiative, the company intends to provide the source code of its software - including software updates and threat-detection rules updates - for independent review and assessment.

With this initiative, Kaspersky Lab will engage the broader information security community and other stakeholders in validating and verifying the trustworthiness of its products, internal processes, and business operations, as well as introducing additional accountability mechanisms by which the company can further demonstrate that it addresses any security issues promptly and thoroughly.

As society today depends ever more on information and communications technologies (ICT), cyberthreats continue to proliferate and evolve. Because of the frenetic pace of both ICT deployment and the expansion of the threat landscape, Kaspersky Lab believes that increased cooperation to protect cyberspace is more crucial than ever.

Trust is essential in cyber security, and therefore trust should be the foundation of any collaboration among those seeking to secure individuals, organizations and enterprises from cyber threats. However, Kaspersky Lab also recognizes that trust is not a given; it must be repeatedly earned through an ongoing commitment to transparency and accountability.

Kaspersky Lab's Global Transparency Initiative is a reaffirmation of the company's commitment to earning and maintaining the trust of the company's customers and partners every day. The company has never taken this trust for granted, but it wants to strive for continuous improvement in every way it can.

The initial phase of Kaspersky Lab's Global Transparency Initiative will include:

-The start of an independent review of the company's source code by Q1 2018, with similar reviews of the company's software updates and threat detection rules to follow;

-The commencement of an independent assessment of (i) the company's secure development lifecycle processes, and (ii) its software and supply chain risk mitigation strategies by Q1 2018;

-The development of additional controls to govern the company's data processing practices in coordination with an independent party that can attest to the company's compliance with said controls by Q1 2018;

-The formation of three Transparency Centers globally, with plans to establish the first one in 2018, to address any security issues together with customers, trusted partners and government stakeholders; the centers will serve as a facility for trusted partners to access reviews on the company's code, software updates, and threat detection rules, along with other activities. The Transparency Centers will open in Asia, Europe and the U.S.by 2020.

-The increase of bug bounty awards up to USD 100,000 for the most severe vulnerabilities found-under the company's Coordinated Vulnerability Disclosure program to further incentivize independent security researchers to supplement our vulnerability detection and mitigation efforts, by the end of 2017.

"Internet balkanisation benefits no one except cyber criminals. Reduced cooperation among countries helps the bad guys in their operations, and public-private partnerships don't work like they should. The internet was created to unite people and share knowledge. Cyber security has no borders, but attempts to introduce national boundaries in cyberspace are counterproductive and must be stopped. We need to reestablish trust in relationships between companies, governments and citizens. That's why we're launching this Global Transparency Initiative: we want to show how we're completely open and transparent," said Eugene Kaspersky, Chairman and CEO of Kaspersky Lab.

Disclaimer: No Business Standard Journalist was involved in creation of this content

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Oct 23 2017 | 4:34 PM IST

Next Story