My Take on Security by Obscurity

June 4, 2008

By Josh Griffin, IT Manager

This month’s Microsoft® TechNet magazine had a great article, “The Great Debate on Security by Obscurity” where Jesper M. Johansson and Roger Grimes debated on the effectiveness of Security by Obscurity.  They both argue for and against Auguste Kerckhoffs’ principle (dating back to 1883) that states that a system should be secure by design not by the lack of knowledge of the design.  Having been in the IT security business for 12 years, I may be considered old school but I agree with Roger Grimes in that a system should be secure by design.

Read the rest of this entry »