risk

Best language for safety-critical software

If you were going to write some safety-critical software, what language would you prefer and why? ...

DBO rights risk

I'm advising a friend who manages a SQL 2k5 box that has several users who have dbo access to multiple databases. The problem is: These users haven't had their passwords changed for some months, These users put their IDs into applications and the applications run as DBO. So - aside from the obvious dbo rights to add/update/delete tab...

What should be in a 'technical work plan' ?

I'm applying for grant to fund part of the development of a web app, one question I'm stuck on says to describe the: Tasks and full technical details and risks relating to your project, including detailed technical work plan Any guidance on what specific topics should be covered would be very gratefully received There is a separate q...

Risk Management: Current & Future Development in Software Development

Hi, Am new to Software Project Management and currently doing some research on Risk Management in S'ware Development. Just interested in knowing what are the current methods applied and any future trends to come. Thnx ...

Branching hell, where is the risk vs productivity tipping point?

My company is floating the idea of extending our version numbers another notch (e.g. from major.minor.servicepack to major.minor.servicepack.customerfix) to allow for customer specific fixes. This strikes me as a bad idea on the surface as my experience is the more branching a product does (and I believe the customer fixes are branches ...

How do you mitigate the inherent risk of a one-person team?

What steps can one take to mitigate the risk of a one-person team working on a project, especially when that one person is a rather junior programmer? I ask because I am that junior programmer, and there is no one available/willing to do things like code reviews. Part of the problem, I suppose, is that I am working on web applications i...

Sources for Software as Risk Management

I'm looking for my own research for sources that look at software as a way to manage risk. I don't mean risk management for software development projects, I mean how working software can automate the management of risk. My interest is more philosophical: how do people put software in action to practically get control over factors that o...

Security risk when store private data.

I have to handle some sensitive data in my application, such as passwords, credit card information, etc. What are possible security risks I could have and how can I avoid them? ...

How can I provide feedback to my team about changes included in a build and their impact on risk?

Is this something you do already or do you know of a good tool? GOAL: Help team understand how recent source changes impact risk so they know where to focus testing efforts. Provide data over time and feed it back into planning and scoping phases of the dev cycle. PLAN: Combine svn change data with clover complexity data in a report s...

Key risks when using ASP.NET MVC for the first time

We are planning to use ASP.NET MVC on a relatively important (to the business) project. The development team comprises 4 developers and a Technical Lead. 2 of the devs and the Tech Lead have worked together before on ASP.NET WebForms project and are confident using that technology. We cringe a little when we look back at some of the app...

Security risk of enabling MSDTC

MSDTC is disabled by default (windows 2003 - onwards) and I want to have it enabled for an application I'm developing that requires distributed transactions from .Net C#. I don't believe there are any security issues with enabling it, but does SO know of any security issues with enabling the DTC? Cheers Ollie ...

How can I tackle 'profoundly found elsewhere' syndrome (inverse of NIH)?

How can I encourage colleagues to embrace small-scale innovation within our team(s), in order to get things done quicker and to encourage skills development? (the term 'profoundly found elsewhere' comes from Wikipedia, although it is scarcely used anywhere else apart from a reference to Proctor & Gamble) I've worked in both environment...

What are the risks in using Rational Team Concert?

What are the risks in the use of the Rational Team Concert in software development? Thank you for your reply. ...

Javascript security risks?

What are the risks of using Javascript and how to avoid them? ...

MSF Agile: Risk vs Story Points?

I'm working through the creation of an initial set of user stories for a new project, and I'm using MSF Agile for the first time. I've got about 100 user stories, and I've assigned them all to areas and iterations, but the next step for me is assigning all of their Risk, Story Points, and Stack Rank values. However, I find that I'm assig...