<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Blogs@Intel</title>
	
	<link>http://blogs.intel.com</link>
	<description>Intel Blogs</description>
	<lastBuildDate>Wed, 22 May 2013 13:01:01 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/IntelBlogs" /><feedburner:info uri="intelblogs" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>IntelBlogs</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
		<title>Behind the scenes: Users first inside Intel IT</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/ccVpKdzG6EI/behind-the-scenes-users-first-inside-intel-it</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/22/behind-the-scenes-users-first-inside-intel-it#comments</comments>
		<pubDate>Wed, 22 May 2013 13:01:01 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=9ba9b492a2fde531dbedaada3c773de7</guid>
		<description><![CDATA[Managing the Changing IT Landscape: User-Centered Computing&#160;In my recent blog, &#8220;It&#8217;s time to put users first&#8221; I wrote about user-centered computing, a strategy for embracing consumerization that puts users first. Much like user-c... <a href="http://communities.intel.com/community/openportit/blog/2013/05/22/behind-the-scenes-users-first-inside-intel-it">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:0f731acb-a6a4-4f5a-8df8-6e2f9504e016] --><div class="jive-rendered-content"><p style="margin-bottom: 0.0001pt;"><span style="font-size: 12pt;">Managing the Changing IT Landscape: User-Centered Computing</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;"><span style="font-size: 10pt;">In my recent blog, &#8220;<span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/16kicZR" >It&#8217;s time to put users first</a></span>&rdquo; I wrote about user-centered computing, a strategy for embracing consumerization that puts users first. Much like user-centered design seeks to optimize a product around the needs of customers, a user-centered approach to IT involves learning from research and user engagement.<span style="font-family: arial, helvetica, sans-serif;"> And for Intel IT, <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/YHsJKj" >user-centered computing</a></span> works very well. </span></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;">Intel IT worked proactively with employees using an inclusive strategy based on three core principles: </p><p style="margin-bottom: 0.0001pt;"></p><ul style="list-style-type: disc;"><li><strong>Inviting </strong><ul style="list-style-type: disc;"><li>Deploying early adopter programs to help guide IT strategies </li><li>Having employees participate in proof-of-concept studies, pilot programs, research, and surveys</li></ul></li></ul><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><ul style="list-style-type: disc;"><li><strong>Listening</strong><ul style="list-style-type: disc;"><li>Conducting user segmentation research to target IT solutions and services to specific employee groups, optimize PC refresh rates, and improve technical support</li><li>Using a human-factors-engineering group to learn how people use and interact with technology to optimize workflows </li></ul></li></ul><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><ul style="list-style-type: disc;"><li><strong>Informing </strong><ul style="list-style-type: disc;"><li>Sharing a variety of approaches on technical implementation and IT services to help guide employees on Bring Your Own PC (BYO-PC)</li><li>Educating employees on pros and cons as well as use cases, IT services, and the security capabilities of a variety of devices, helping to smooth adoption</li></ul></li></ul><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">To learn more about how Intel IT applies these principles, check out this<a class="jive-link-external-small" href="http://intel.ly/YHsJK" > <span style="text-decoration: underline;">IT white</span><span style="text-decoration: underline;">paper</span></a> that I coauthored with my Intel IT colleagues <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://linkd.in/1033R0r" >Lisa Spelman</a></span>, Director of Employee Computing Platforms, and <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://linkd.in/17r0zIv" >Julie Rovegno</a></span>, Manager of IT Products and Services. You can also listen to Lisa&#8217;s <a class="jive-link-external-small" href="http://intel.ly/YTO31p" ><span style="text-decoration: underline;">Inside IT </span><span style="text-decoration: underline;">podcast</span></a>.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 10pt;"> </span>&nbsp;</p><p><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15853-232340/user+centered+IT+best+practices.jpg"><img alt="user centered IT best practices.jpg" class="jive-image" height="290" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15853-232340/362-290/user+centered+IT+best+practices.jpg" style="height: 290px; width: 361.5960099750623px;" width="362"/></a></p><p><span style="font-size: 10pt;">Does your IT organization practice user-centered computing? How do you make it work?</span></p><p><span style="font-size: 10pt;"><br /></span></p><p><span style="font-size: 10pt;">Chris </span><br /><span style="font-size: 10pt;">@chris_p_intel</span><br /><span style="font-size: 10pt;">#UserCenteredComputing #Consumerization #IntelIT</span></p><p><a class="jive-link-external-small" href="http://www.intel.com/itcenter" >http://www.intel.com/itcenter </a> </p></div><!-- [DocumentBodyEnd:0f731acb-a6a4-4f5a-8df8-6e2f9504e016] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/ccVpKdzG6EI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/22/behind-the-scenes-users-first-inside-intel-it/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/22/behind-the-scenes-users-first-inside-intel-it</feedburner:origLink></item>
		<item>
		<title>Big Data, IoT, API …….Newer technologies protected by older security.</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/HtEnV9d7BTc/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/bZiKomLl37E/#comments</comments>
		<pubDate>Sat, 18 May 2013 14:32:54 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1182</guid>
		<description><![CDATA[<p>Now-a-days every single CIO, CTO, or business executive that I speak to is captivated by these three new technologies: Big Data, API management and IoTs (Internet of Things). Every single organizational executive that I speak with confirms that they either &#8230; <a href="http://blogs.intel.com/application-security/2013/05/18/big-data-iot-api-%E2%80%A6%E2%80%A6-newer-technologies-protected-by-older-security/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/18/big-data-iot-api-%E2%80%A6%E2%80%A6-newer-technologies-protected-by-older-security/">Big Data, IoT, API …….Newer technologies protected by older security.</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/bZiKomLl37E/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/18/big-data-iot-api-%e2%80%a6%e2%80%a6-newer-technologies-protected-by-older-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Now-a-days every single CIO, CTO, or business executive that I speak to is captivated by these three new technologies: Big Data, <a href="http://cloudsecurity.intel.com/api-management">API management</a> and IoTs (Internet of Things). Every single organizational executive that I speak with confirms that they either have current projects that are actively using these technologies, or they are in the planning stages and are about to embark on the mission soon.</p>
<p>Though the underlying need and purpose served are unique to each of these technologies, they all have one thing common. They all necessitate newer security models and security tools to serve any organization well. I will explain that in a bit, but let us see what is the value added by these technologies to any organization:</p>
<p>IoT – is specific data collection points that employ sensors placed anywhere and everywhere. Most often times the information collected by these devices are sensitive data and contain specific identifiable targeted data. IoT allows organizations to analyze behaviors and patterns as needed but also poses an interesting problem. Gone is TB (Terabytes) of data; now we are talking about PB (petabytes) of data which continue to grow exponentially. IoTs use M2M communication, which are a newer channel and create a newer set of threat vectors.</p>
<p>Big Data &#8211; - store massive amounts of data (some of these data are from the aforementioned IoTs) and having the necessary software and infrastructure that allow you to access them faster which promises to cost you a fraction of what it is costs today, further enabling you to capture as many data points as possible.</p>
<p>API – interface, enabler and interconnector between systems by providing a uniform and portable interface (whether it is to the big data or the platform that enables big data).</p>
<p>While each of technologies at first glance appears to be serving different constituencies within an Enterprise, there is an undeniable interconnectedness that exists. The IoT collects data from everywhere. Hence, it is pouring tons of data that need to be not only stored somewhere, but also analyzed properly so that the dots can be connected, to ultimately form meaningful patterns that people can make use of.</p>
<p><a href="http://blogs.intel.com/application-security/files/2013/05/IoT-bigdata-API.jpg"><img class="alignnone size-medium wp-image-1183" src="http://blogs.intel.com/application-security/files/2013/05/IoT-bigdata-API-300x181.jpg" alt="" width="458" height="276" /></a> </p>
<p>[In the graphic above assume all communications to the central neural system is via APIs.]</p>
<p>With the evolution of these technologies, there is a very raw, basic, and yet incontrovertible need being expressed. Every business yearns to be better than its competitors in catering to the needs of its consumers. I mean the “consumer” in a loose sense here – be that an individual or for that matter, an organization that is consuming your offerings. Ipso facto, this means you need to capture as much information as you possibly can about the target consumer behavior, so that it can be analyzed, protected, stored, shared selectively, and most importantly, so that it can serve your consumer better (or perhaps  to be used when strategically monetizing an area of your business).</p>
<p>None of these technologies is in a trial phase any more. If anything, the social media explosion provided ample evidence that these technologies are being used quite effectively already (real life POCs). Of late, all of these technologies have been gaining adoption in the sacred technology worlds, such as the healthcare and financial sectors.  However, when you employ these technologies with your production applications, you need an enterprise grade security that is built from the ground up to provide a necessary level of protection.</p>
<p>In the social world, the model had always been, “build [it] first and secure later based on the need” (or never in some cases). With healthcare, federal and financial sectors, that model is no longer tenable. You need to secure data at any cost, question anybody who wants access, and be hyper-vigilant without compromise.</p>
<p>What is particularly troublesome is that these organizations seem to be of the thought that they can extend existing security measures to protect all of these newer technologies. While your SSL, Identity systems and other existing controls can serve as the baseline for these technologies, you need a newer set of security controls and tools in place. Your security model needs to make the necessary accommodations, instead of trying to force fit everything to make the older set of tools to fit. That would be like trying to fit a square peg in a round hole. I have seen customers trying to bend RACF to fit the newer SOA, API, Big data paradigm. While it can be done, it would end up costing you more, will be very inflexible, and defeats the fundamental purpose of security. Don’t get me wrong &#8212; everything has a place in this universe.</p>
<p>Remember I wrote recently about the disappearing perimeter defenses and moving lines of thin defense. This is due to shared data centers, cloud adoption, multiple shared tenants, deeper integration and wider exposure to multiple partners, etc. <strong>Regardless of the scenario, you need to protect your own data and be accountable for it.</strong> Cyber attackers are very sophisticated and are funded by organizations (or even countries), which means they need to get to the proverbial data goldmine.  Without adequate protection, this can prove to be that goldmine. The thing that scares me the most is the underlying threat to all of the above technologies when you try to fit them into the older security model. Most of the above technologies, from what I have observed, are either under protected or unprotected. While it is great for organizations to maximize monetization and satisfaction of a consumer and have a competitive edge over others, that shouldn’t come at the cost of security or by increasing their risk. Especially when it comes to security, Murphy’s Law is always right; it is not a question of if a security loophole will be exploited; it is a question of when.</p>
<p>You not only need to identify the users, authenticate them, and authorize them but also make sure they are allowed access during that time window that they are requesting the info (throw in a location based and device based identification on top).</p>
<p>In addition, you also need to worry about protecting the big data store itself, including strong encryption of storage, transmission, and in process data.</p>
<p>But then, most important of all, you need to mitigate the threat vectors that are created by these new technologies. I will write in the next few articles about how you can protect all of these areas with minimal effort while keeping your TCO very low. I will also talk about specific usecases and usage models that will make sense.</p>
<p>Blake recently wrote a great blog on “touchless” Big Data security. I urge you to check it out <a href="http://blogs.intel.com/application-security/2013/02/28/how-to-secure-hadoop-without-touching-it-combining-api-security-and-hadoop/">here</a>. Demo version is <a href="https://cloudsecurity.intel.com/demos/hadoop-security">here</a>.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/18/big-data-iot-api-%e2%80%a6%e2%80%a6-newer-technologies-protected-by-older-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/18/big-data-iot-api-%E2%80%A6%E2%80%A6-newer-technologies-protected-by-older-security/">Big Data, IoT, API …….Newer technologies protected by older security.</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/bZiKomLl37E" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/HtEnV9d7BTc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/18/big-data-iot-api-%e2%80%a6%e2%80%a6-newer-technologies-protected-by-older-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/bZiKomLl37E/</feedburner:origLink></item>
		<item>
		<title>Ask Ivy</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/pvcp6AqHEdA/</link>
		<comments>http://blogs.intel.com/jobs/2013/05/16/ask-ivy/#comments</comments>
		<pubDate>Thu, 16 May 2013 20:38:10 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/jobs/?p=1959</guid>
		<description><![CDATA[<p>Hey. What’s up. Yeah, so, I took last year off from blogging here. But there are a lot of things to share about what we’re doing in Human Resources for employees, so I’m back. This is also a good time &#8230; <a href="http://blogs.intel.com/jobs/2013/05/16/ask-ivy/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/jobs/2013/05/16/ask-ivy/">Ask Ivy</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p> <a href="http://blogs.intel.com/jobs/2013/05/16/ask-ivy/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p>Hey. What’s up. Yeah, so, I took last year off from blogging here. But there are a lot of things to share about what we’re doing in Human Resources for employees, so I’m back. This is also a good time to give Sejal a shout-out for coordinating these blogs – she does an awesome job!</p>
<p><a href="http://blogs.intel.com/jobs/files/2013/05/ivy-small.png"><img class="alignleft size-full wp-image-1967" src="http://blogs.intel.com/jobs/files/2013/05/ivy-small.png" alt="" width="236" height="178" /></a>Okay, the newest thing we’ve launched is a “virtual HR agent”. What’s that, you ask? You know when you shop online, whether it’s for new gadgets or it’s for a plane ticket to go somewhere or maybe it’s just for odds and ends, some websites have a virtual agent that will answer FAQs for you and guide you through the process. Our new virtual HR agent, we named her Ivy, is set up to do the same thing, but for our employees at Intel (so this is an internal tool.) If employees have questions about their pay, stock, benefits, or other HR programs, they simply bring Ivy up on the intranet and type in a question. Ivy uses a combination of natural language processing, artificial intelligence and optimized search to find the answer to the question. Also, magic. Okay, well, it’s like magic to me, so…  As of today, Ivy has 4,331 possible responses. How do I know that number so exactly? I led the team that wrote all the responses. You can bet we’re excited for the launch after all that work!</p>
<p>From our research, we’re the first company to implement a virtual agent like this for their employees. Ivy’s no chatbot and she’s not backed by a human “behind the curtain”. She’s all software. We’ve got lots of metrics in place to monitor her performance and our employees can give a star rating to each interaction. Using the performance data and star ratings, we can tune Ivy to make her even better. Beyond that, what’s weird is that she <span style="text-decoration: underline">learns</span>. Seriously. Her artificial intelligence gets better as employees ask her questions. Amazing. Oh, and no surprise, she runs on Intel-powered servers. You saw that coming, didn’t you?</p>
<p>So, we started 2013 off with a big project launch that will improve the employee experience here at Intel. And I&#8217;m back on the blog. Is it going to be a great year? You bet it is!</p>
<p>The post <a href="http://blogs.intel.com/jobs/2013/05/16/ask-ivy/">Ask Ivy</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/pvcp6AqHEdA" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/16/ask-ivy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogs.intel.com/jobs/2013/05/16/ask-ivy/</feedburner:origLink></item>
		<item>
		<title>Be Your Own Broker:  An Enterprise Perspective using API Management</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/-ELrZVzF8Dc/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/hXdoqavcRV0/#comments</comments>
		<pubDate>Wed, 15 May 2013 20:07:43 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1162</guid>
		<description><![CDATA[<p>Kin Lane has started tracking what he calls API Brokers over at API Evangelist. This quote illustrates the promise of API brokerage: I envision other new API brokers emerging, in niche areas like images, video or messaging. Imagine if you could &#8230; <a href="http://blogs.intel.com/application-security/2013/05/15/api-management-brokerage/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/15/api-management-brokerage/">Be Your Own Broker:  An Enterprise Perspective using API Management</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/hXdoqavcRV0/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/15/api-management-brokerage/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Kin Lane has started tracking what he calls <a href="http://apievangelist.com/2013/05/13/adding-api-broker-under-monitoring-for-api-aggregators/">API Brokers</a> over at API Evangelist. This quote illustrates the promise of API brokerage:</p>
<blockquote><p>I envision other new API brokers emerging, in niche areas like images, video or messaging. Imagine if you could use Twilio, Tropo or other SMS API provider, but use through a broker who will give you the best availability and costs based upon various needs. This type of API aggregation is not meant for providing users with access to multiple cloud silos via APIs, it is more about brokering API resources and establishing a marketplace.</p></blockquote>
<p>This really resonated with me, as it is similar to something we&#8217;ve been talking about for a while:  IT as a <a href="http://cloudsecurity.intel.com/cloud-service-brokerage">Cloud Service Brokerage</a>, which is an emerging specialization of <a href="http://cloudsecurity.intel.com/api-management">API management</a>. As SaaS, Consumerization, and the general bring-your-own trends continue to accelerate, IT shops are looking to bundle new functionality into their applications while ensuring that they still deliver the expected levels of service. Consumerization/BYO has expanded from handheld devices and ultrabooks to include cloud services like Dropbox, Evernote, and Google Docs. APIs will be the next wave in consumerization. As is the case with many cloud services, APIs with equivalent functionality can be available from multiple sources, but the longevity of the providers (or, as is often the political reality, the contract with the providers) may be uncertain. In addition to the services Kin mentions,</p>
<ul>
<li>Translation / localization services &#8212; remember when <a href="http://googlecode.blogspot.com/2011/05/spring-cleaning-for-some-of-our-apis.html">Google temporarily pulled the plug on the Translate API</a>? Fortunately they changed their mind, but what if they hadn&#8217;t?</li>
<li>Location / Mapping services</li>
<li>Push notifications</li>
<li>… One could spend weeks browsing <a href="http://www.programmableweb.com/apis/directory">ProgrammableWeb</a> or Kin&#8217;s own list of <a href="http://apievangelist.com/buildingblocks/">building blocks</a> and uncover dozens of domains with two or more functionally-equivalent providers</li>
</ul>
<p>What is an IT shop to do, then, when incorporating cutting-edge functionality into applications when the only providers are fledgling startups (or even hobbies within multi-billion dollar corporations)? It seems like a few options exist:</p>
<ul>
<li>Bet on the current leader when the app is being developed; rip &amp; replace if conditions change</li>
<li>Code multiple providers&#8217; APIs into the app, embedding some prioritization and fall-back logic</li>
<li>Use an aggregator</li>
</ul>
<p>Clearly the aggregation layer (whether embedded in the app or as a cloud service) offers more agility and resilience than hard-coding. The additional indirection provides protection against service outages &#8211; whether they are due to an operational issue with an API provider, an infrastructure issue with their cloud service provider, or an untimely end-of-life for the service. However, given that this domain is just emerging, most of the aggregators are likely early-stage startups themselves. Their availability and longevity may not be any better than the APIs they are proxying &#8212; in fact, it may be less.</p>
<p>An enterprise IT shop has another option here: acting as its own <a href="http://cloudsecurity.intel.com/cloud-service-brokerage">Cloud Service Brokerage</a>. An API gateway is already acting as a proxy between clients and APIs. By adding some additional logic to the <a href="http://cloudsecurity.intel.com/api-management">API management</a> workflow, the gateway can offer a fallback path to a different provider. By placing the API management &amp; brokerage layer inside the enterprise cloud (whether public, private, or virtual private), the brokered APIs will have the same availability as the rest of the enterprise infrastructure. The gateway already has remediation capabilities built in &#8212; JSON or XML fields can be renamed and reordered, omitted, or populated with default values. An enterprise could even define its own API structure that is then redirected in the format expected by the services it is brokering. If necessary, this logic can be combined with format-preserving encryption or tokenization to ensure that sensitive corporate data isn&#8217;t transmitted to a third party.</p>
<p><img class="alignnone" src="http://cloudsecurity.intel.com/assets/solutions/cloud-service-brokerage.png" alt="" width="381" height="387" /></p>
<p>This on-prem brokerage approach is not without tradeoffs, however. First, an API management solution is not likely to be as dynamic as a specialized brokerage service. This means that market forces are less likely to be factored into the runtime routing decision. While contracts and other external forces can be incorporated at configuration time and reviewed on a regular basis, the multi-provider API management policy is most likely going to be implemented as a favored provider with fallback providers utilized for availability, not cost (on the other hand, a brokerage service&#8217;s profit margin may offset much of cost savings due to market efficiency). Also, by using a brokerage (whether internal or external), there may be functional tradeoffs: the application may be restricted to the greatest common denominator of all available APIs to allow for aggregation and avoid vendor lock-in. I find these tradeoffs to be fairly standard in Enterprise IT, however, and are widely accepted as part of the cost of providing a stable, predictable IT environment.</p>
<p>I&#8217;ll revisit this topic again in the context of Mobile Backend as a Service (MBaaS), but in the interim I&#8217;ll leave off with a webinar featuring Gartner on <a href="https://cloudsecurity.intel.com/webinars/cloud-service-brokerage-gartner">IT&#8217;s role as a Cloud Service Brokerage</a>.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/15/api-management-brokerage/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/15/api-management-brokerage/">Be Your Own Broker:  An Enterprise Perspective using API Management</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/hXdoqavcRV0" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/-ELrZVzF8Dc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/15/be-your-own-broker-an-enterprise-perspective-using-api-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/hXdoqavcRV0/</feedburner:origLink></item>
		<item>
		<title>Our New PC Delivery Process Cuts Employee Downtime</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/cWR_CJEIfYY/our-new-pc-delivery-process-cuts-employee-downtime</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/15/our-new-pc-delivery-process-cuts-employee-downtime#comments</comments>
		<pubDate>Wed, 15 May 2013 19:49:16 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=9d6b16182238c9b3c82089a2b9f213cc</guid>
		<description><![CDATA[Getting a new PC used to take valuable time out of the workday.&#160;&#160; But as part of our focus on a user-centered model of delivering IT services, Intel IT recently optimized our PC delivery process, resulting in improved employee productivity, a... <a href="http://communities.intel.com/community/openportit/blog/2013/05/15/our-new-pc-delivery-process-cuts-employee-downtime">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:cab28d11-3eb0-4153-aa4d-634f663899b6] --><div class="jive-rendered-content"><table align="left" cellpadding="0" cellspacing="0"><tbody></tbody></table><p><span style="color: #000000; font-size: 12pt;">Getting a new PC used to take valuable time out of the workday.&nbsp;&nbsp; But as part of our focus on a user-centered model of delivering IT services, Intel IT recently optimized our PC delivery process, resulting in improved employee productivity, a better employee experience, and reduced operational costs.&nbsp; These process improvements allow our employees to return to work more quickly, reducing their downtime from an average of 4.5 hours to 1 hour, a 77-percent reduction. Read the paper <span style="font-family: arial,helvetica,sans-serif;">"<a class="jive-link-external-small" href="http://www.intel.com/content/www/us/en/it-management/intel-it-best-practices/new-pc-delivery-process-cuts-employee-downtime-white-paper.html" >New PC Delivery Process Cuts Employee Downtime</a>" to learn about the changes we made.</span></span></p></div><!-- [DocumentBodyEnd:cab28d11-3eb0-4153-aa4d-634f663899b6] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/cWR_CJEIfYY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/15/our-new-pc-delivery-process-cuts-employee-downtime/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/15/our-new-pc-delivery-process-cuts-employee-downtime</feedburner:origLink></item>
		<item>
		<title>Hadoop Security:  Internal or External?  Why not both!</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/AaYIUpD4XPE/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-HGweUXM_IY/#comments</comments>
		<pubDate>Wed, 15 May 2013 01:15:55 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1156</guid>
		<description><![CDATA[<p>I saw a conversation today on Twitter that asked why we don&#8217;t just embed proper security into Hadoop instead of suggesting the API gateway approach to Hadoop security that my colleague Blake proposed.  The same could be asked about any number &#8230; <a href="http://blogs.intel.com/application-security/2013/05/14/hadoop-security-internal-or-external-why-not-both/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/14/hadoop-security-internal-or-external-why-not-both/">Hadoop Security:  Internal or External?  Why not both!</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-HGweUXM_IY/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/14/hadoop-security-internal-or-external-why-not-both/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>I saw a <a href="https://twitter.com/alexgorbachev/status/334271338724327424">conversation</a> today on Twitter that asked why we don&#8217;t just embed proper security into Hadoop instead of suggesting the API gateway approach to <a href="http://cloudsecurity.intel.com/hadoop-security">Hadoop security</a> that my colleague Blake <a href="http://blogs.intel.com/application-security/2013/02/28/how-to-secure-hadoop-without-touching-it-combining-api-security-and-hadoop/">proposed</a>.  The same could be asked about any number of applications and services, but the bottom line is that we believe that a two-pronged approach is best.</p>
<p>Internally, we have dramatically improved Hadoop&#8217;s security capabilities via <a href="https://github.com/intel-hadoop/project-rhino/">Project Rhino</a>.  This enables best security practices like encryption at rest, which cannot be implemented anywhere else.  We are also working to standardize the authorization framework and implement token based authentication with single sign-on.  These are all core capabilities that absolutely need to be added to Hadoop&#8217;s code base.</p>
<p>The gateway approach addresses something else &#8211; the API layer.  While I agree that any application should protect against common attacks, consider this in the bigger picture.  First, consider the number of different features that may be required by Hadoop adopters:  tokenization, data field encryption, integration with Active Directory, mapping to OAuth for mobile applications, etc.  It would take a staggering number of man-hours to implement all of these features within Hadoop.  Now consider the number of enterprise applications that expose APIs &#8212; consider the investment required to duplicate those features within each of these application suites.  Finally, consider the job of the poor sysadmin who has to selectively enable these features consistently across everything in their domain, along with the one who gets to come along behind him and audit for compliance.  Add to that the probability (or lack thereof) that all of these vendors implemented the features with common configuration processes&#8230;</p>
<p>Our façade proxy abstracts much of this functionality to an external system with an easy-to-use graphical interface.  Implementation and inspection of common security policies can be managed across all APIs within the enterprise.  More complex, custom workflows can be created and reused as well.  Finally, the gateway complements the Project Rhino work which provides a solid security foundation that can then be extended (in a standard fashion) by the gateway.</p>
<p>Part of the objection/confusion is shown here:</p>
<blockquote class="twitter-tweet"><p>@<a href="https://twitter.com/alexis_gil">alexis_gil</a> my problem with it is standard &#8211; adding a totally new layer in between with completely new protocol doesn&#8217;t help adoption</p>
<p>— Alex Gorbachev (@alexgorbachev) <a href="https://twitter.com/alexgorbachev/status/334300179152904192">May 14, 2013</a></p></blockquote>
<p>&nbsp;</p>
<p>I want to clarify that we are talking about standard protocols – in fact, the gateway pattern is really putting a secure front on the already standardized APIs found in Hadoop such as WebHDFS and Stargate. These APIs aren’t new protocols, but the façade pattern helps with separation of concerns and lets the data scientists worry about data and the security folks worry about security.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/14/hadoop-security-internal-or-external-why-not-both/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/14/hadoop-security-internal-or-external-why-not-both/">Hadoop Security:  Internal or External?  Why not both!</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/-HGweUXM_IY" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/AaYIUpD4XPE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/14/hadoop-security-internal-or-external-why-not-both/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-HGweUXM_IY/</feedburner:origLink></item>
		<item>
		<title>Our Next Webinar:  Five Practical Steps to Building an Enterprise Class API Program</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/7IrXJRdQ5nc/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/FQTISFgex7w/#comments</comments>
		<pubDate>Tue, 14 May 2013 21:09:57 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1132</guid>
		<description><![CDATA[<p>Join us Wednesday, May 22 at 10:00a Pacific / 1:00p Eastern for our next webinar with Capital One and Mashery: APIs are a hot topic in all sectors of IT &#8211; they have gone from being niche solutions provided by &#8230; <a href="http://blogs.intel.com/application-security/2013/05/14/our-next-webinar/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/14/our-next-webinar/">Our Next Webinar:  Five Practical Steps to Building an Enterprise Class API Program</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/FQTISFgex7w/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/14/our-next-webinar/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p><a href="http://www.brighttalk.com/webcast/5573/73163">Join us</a> Wednesday, May 22 at 10:00a Pacific / 1:00p Eastern for our next webinar with Capital One and Mashery:</p>
<p><a href="http://www.brighttalk.com/webcast/5573/73163"><img class="aligncenter size-full wp-image-1149" src="http://blogs.intel.com/application-security/files/2013/05/5steps1.jpg" alt="" width="600" height="291" /></a>APIs are a hot topic in all sectors of IT &#8211; they have gone from being niche solutions provided by big players like Amazon and Google, to being almost as ubiquitous as corporate websites. Ad hoc API development &amp; evangelism without a formal program can leave real revenue on the table, can unintentionally leak sensitive data, and can tarnish the corporate brand with the development community. Today, developers and partners expect to be engaged with first class API programs, while businesses expect real insights to know which APIs are profitable and which APIs to bring to market next.</p>
<p>In this webinar, Intel &amp; Mashery outline the baseline enterprise pillars for constructing a first class API program. Learn from CapitalOne how they strategized to build an API program grounded in core business objectives. All attendees will receive a new Mobile API Buyers Guide that presents how to optimize APIs for mobile apps.</p>
<h2>About the Speakers</h2>
<p><strong><a href="http://blogs.intel.com/application-security/files/2013/05/joshua.png"><img class="size-full wp-image-1136 alignleft" src="http://blogs.intel.com/application-security/files/2013/05/joshua.png" alt="" width="158" height="159" /></a>Joshua Greenough</strong> personifies the intersection of a team athletics mentality and technology passion. He is currently the Senior Director of Innovation at Capital One, where he manages the product &amp; engineer teams for the San Francisco Innovation Lab. His mission is to build, promote and launch innovative partners on Capital One&#8217;s groundbreaking API Platform.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><strong><a href="http://blogs.intel.com/application-security/files/2013/05/devon.png"><img class="size-full wp-image-1138 alignleft" src="http://blogs.intel.com/application-security/files/2013/05/devon.png" alt="" width="154" height="161" /></a>Devon Biondi</strong>, Vice President of Strategy Services at Mashery, works closely with Mashery customers advising them in all stages of their API lifecycle from program conception to platform launch. Prior to Mashery she was the Chief of Staff at TIBCO Software where she worked as a strategic advisor to the CEO in all aspects of the company from acquisitions, restructures, new product development, large-scale customer retention and events.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><strong><a href="http://blogs.intel.com/application-security/files/2013/05/andy.png"><img class="alignleft size-full wp-image-1139" src="http://blogs.intel.com/application-security/files/2013/05/andy.png" alt="" width="154" height="161" /></a>Andy Thurai</strong> is Chief Architect and Group CTO of Application Security and Identity Products with Intel, where he is responsible for architecting SOA, Cloud, Mobile, Big Data, Governance, Security, and Identity solutions for their major corporate customers. In his role, he is responsible for helping Intel/McAfee field sales, technical teams and customer executives. His interests and expertise include Cloud, SOA, identity management, security, governance, and SaaS.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/14/our-next-webinar/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/14/our-next-webinar/">Our Next Webinar:  Five Practical Steps to Building an Enterprise Class API Program</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/FQTISFgex7w" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/7IrXJRdQ5nc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/14/our-next-webinar-five-practical-steps-to-building-an-enterprise-class-api-program/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/FQTISFgex7w/</feedburner:origLink></item>
		<item>
		<title>Enterprises Security Choices and Tradeoffs for BYOD</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/t2dSDDU5j0w/enterprises-security-choices-and-tradeoffs-for-byod</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/13/enterprises-security-choices-and-tradeoffs-for-byod#comments</comments>
		<pubDate>Mon, 13 May 2013 19:34:26 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=44e9e1a9312a42b51a9b28a611128569</guid>
		<description><![CDATA[Bring Your Own Devices (BYOD) continues to gain momentum as users bring devices into work environments by the droves.&#160; Enterprises must make tricky security decisions to balance the tradeoffs of costs, user productivity, and security.&#160; &#160;... <a href="http://communities.intel.com/community/openportit/blog/2013/05/13/enterprises-security-choices-and-tradeoffs-for-byod">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:69711d27-2434-4fd7-b0cf-3fc8d8acfa47] --><div class="jive-rendered-content"><p><span style="color: #000000;">Bring Your Own Devices (BYOD) continues to gain momentum as users bring devices into work environments by the droves.&nbsp; Enterprises must make tricky security decisions to balance the tradeoffs of costs, user productivity, and security.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">BYOD is effecting organizations both large and small.&nbsp; In our highly connected world, workers bring in familiar and favored smartphones, tablets, and other compute devices into work and expect to leverage them for convenience and to improve productivity.&nbsp; It can have a great positive effect on the business but also raises security concerns.&nbsp; Management can&#8217;t hide from taking a position, establishing boundaries, and understanding the tradeoffs.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;"><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15843-232295/Enterprise+Factors.jpg"><img alt="Enterprise Factors.jpg" class="jive-image" height="169" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15843-232295/214-169/Enterprise+Factors.jpg" style="float: right;" width="214"/></a>In today&#8217;s responsible corporate environment, enterprises realize the danger of uncontrolled devices on their network and accessing business data.&nbsp; It introduces chaos to security and IT manageability, driving up risks and expenses.&nbsp; Organizations want to enable productivity of employees but must maintain a level of acceptable risks and keep costs flat, or at the very least justifiable.&nbsp; It is a tough balancing act between risks, costs, and user productivity.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">Management has a number of high level choices, each with pro/cons and other tradeoffs.&nbsp; Before committing to a particular path, leaders must understand these options in order to select the best direction to set for their organization:</span></p><p style="padding-left: 30px;"><br /><span style="color: #000000;"><strong>1. No personal devices allowed</strong>.&nbsp; Forbid personal smartphones, tablets, and non-managed computers from accessing work systems, networks, and data.</span><br /><span style="color: #000000;"><strong style="color: #0000ff;">Pro:</strong> This stratagem manages security risks and keeps costs relatively flat.&nbsp; It has been the traditional solution.&nbsp; </span><br /><span style="color: #000000;"><strong style="color: #ff0000;">Con:</strong> Not practical for 99.9% of the world.&nbsp; It&#8217;s like trying to hold back a tidal wave with a paper cup.&nbsp; Workers, starting with the tech savvy, will bring in devices and connect them, soon to be followed by the rest of the staff.&nbsp; Most likely they and the less technical community has already been doing this for some time.&nbsp; It starts with email forwarding, access to work calendars, meeting logistics, file sharing, instant messaging, etc.&nbsp; Implementing such a policy ignores the opportunity for significant worker productivity gains and stifles flexibility which is so desired by everyone.&nbsp; When employees have convenient access to such data, they are more effective, efficient, and happy.</span></p><p style="padding-left: 30px;"><br /><span style="color: #000000;"><strong>2. Company provides mobile devices</strong>.&nbsp; Providing corporate managed devices in lieu of employees&#8217; personal devices, allows vetting of systems before they access work networks and data.</span><br /><span style="color: #000000;"><span style="color: #0000ff;"><strong>Pro:</strong></span> Security standards, selective deployment, and the ability to enforce controls, allows the organization to manage risks and costs.&nbsp; </span><br /><span style="color: #000000;"><strong style="color: #ff0000;">Con:</strong> Upfront expenses are high, user happiness tends to be low, and manageability costs slowly creeps up over time.&nbsp; The out-of-pocket equipment and service costs can be very expensive.&nbsp; To control costs, most organizations will not provide everyone a company device.&nbsp; So there emerges a &#8220;have&rdquo; and &#8220;have-not&#8217;s&rdquo; class system which spawns resentment.&nbsp; Those who are provided devices must manage their personal devices in addition to the company provided ones.&nbsp; If you have ever been forced to carry two phones, you know how much of a pain this becomes.&nbsp; </span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;">Even in a perfect environment with happy users, a different problem emerges.&nbsp; The comingling of personal and private data on employer managed devices.&nbsp; This can be a nightmare, fraught with legal and ethical pitfalls.&nbsp;&nbsp; </span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;">Each class, brand, and even model must be configured and secured.&nbsp; IT departments must support users trying to access services and data.&nbsp; The more types of devices, the more complex and expensive the support becomes.&nbsp; One of the keys to managing support costs is scalability.&nbsp; So, it is normal for an organization to settle on one or two to start.&nbsp; Which will not make everyone happy as people have their own preferences.&nbsp; Demand can grow to expand the list of supported configurations, especially as new options become available in the marketplace.&nbsp; Expanded support is great for users, but a nightmare for IT as it increases the legacy support of older configurations which are still in use.&nbsp; Over time the cost to support will steadily increase and the cost of refreshing old and damaged devices will be ever present.</span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;">From a productivity perspective, users get an initial boost from the latest equipment and software, but will soon see a degradation as the organization cannot keep up with the latest features coming to market.&nbsp;&nbsp;&nbsp; </span><br /> <br /><span style="color: #000000;"><strong>3. BYOD of Any Device. </strong> All devices welcome with open arms!&nbsp; Users are able to bring in, connect, and use their favorite devices.&nbsp; Security controls are usually network based or via containerization technology on the device itself.&nbsp; </span><br /><span style="color: #000000;"><strong style="color: #0000ff;">Pro:</strong> Initial hardware costs are very low for the organization, as the user absorbs initial out-of-pocket costs for the device.&nbsp; Productivity remains high, as users will continually install latest applications and refresh to current hardware as they see fit.</span><br /><span style="color: #000000;"><strong style="color: #ff0000;">Con:</strong> Expensive to manage and secure.&nbsp; Costs skyrocket to provide and maintain security controls and connectivity support over a wide swath of different devices and applications.&nbsp; Security solutions, many with a high per-seat cost, is required. Not all devices are created or configured equally, adding to the cost and frustration of IT and security departments.&nbsp; The expenses continue to increase and never plateau as users follow the non-stop march of evolving technology, applications, and shiny devices</span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;">Challenges with co-mingling of users private data with enterprise oversight can still persist depending upon controls and access configurations</span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;"><strong>4. BYOD of Certain Devices. </strong> The middle ground, allowing users to front the initial costs and enterprises can focus on security and management of a much smaller subset of devices.&nbsp; Network, cloud, and device containerization technology provide security.&nbsp; </span><br /><span style="color: #000000;"><strong style="color: #0000ff;">Pro:</strong> Low initial costs as users purchase the devices.&nbsp; It is a flexible model where the optimal balance of cost, productivity, and security can be adjusted as needed.</span><br /><span style="color: #000000;"><strong style="color: #ff0000;">Con:</strong> Still costly, as the enterprise must invest in security solutions for allowed devices, but policy will limit the number of configurations and therefore help keep costs and risks more manageable.&nbsp; As new devices are supported costs will rise due to legacy support and other complexities.&nbsp; Security is managed based upon the vetting and controls mandated for approved configurations. </span><br />&nbsp;&nbsp; <br /><span style="color: #000000;">Productivity varies based upon the breadth and timeliness of support for new technologies.&nbsp; Satisfaction and productivity also follow this curve.&nbsp; The more devices and applications supported in a timely manner, the happier and more productive the users, but the costs skyrocket accordingly.</span></p><p style="padding-left: 30px;"></p><p style="padding-left: 30px;"><span style="color: #000000;">Sadly, the pesky problem of data comingling is still present.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">There is no universal winning choice.&nbsp; It really depends on the organization, risk appetite, budget, worker productivity needs, and the sway of the most vocal users.&nbsp; A very small number of organizations can disallow all personal devices, mostly government types.&nbsp; Only companies willing to spend a tremendous amount of money on hardware or those which already have a strong caste systems to support a limited distribution will be interested in providing workers with such devices in addition to primary work PC&#8217;s.&nbsp; Organizations which have little need for confidentiality, integrity, and availability aspects of security might be able to live with openly connecting any BYOD their users may bring into the office.&nbsp; Although a significant number of organizations may try to dabble in this area before realizing the rapidly growing support costs and security issues before changing to a different strategy.&nbsp; In the end, I believe the majority of organizations will choose to embrace the last option of supporting only certain BYOD devices.&nbsp; They will select a mix of devices, software, and controls which satisfy a broad community while keeping costs and risks predictable.&nbsp; This is no small feat as these solutions are not yet mature.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">Every organization must find their own path.&nbsp; They must consider the options and tradeoffs of costs, productivity, and risk.&nbsp; No perfect solution exists, but with forethought, collaboration with users, and solid execution, a manageable solution might be within grasp.</span></p></div><!-- [DocumentBodyEnd:69711d27-2434-4fd7-b0cf-3fc8d8acfa47] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/t2dSDDU5j0w" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/13/enterprises-security-choices-and-tradeoffs-for-byod/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/13/enterprises-security-choices-and-tradeoffs-for-byod</feedburner:origLink></item>
		<item>
		<title>A Mother’s Day letter to a new Intel mom</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/8BtbDhQXKeQ/</link>
		<comments>http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/#comments</comments>
		<pubDate>Mon, 13 May 2013 01:04:44 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/jobs/?p=1963</guid>
		<description><![CDATA[<p>Note from the editor: Here’s yet another beautiful blog post shared on our intranet from one Intel employee to another. Regardless of if you have kids or not, I think we can all agree that being a parent is the &#8230; <a href="http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/">A Mother’s Day letter to a new Intel mom</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p> <a href="http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p><strong><em>Note from the editor: Here’s yet another beautiful blog post shared on our intranet from one Intel employee to another. Regardless of if you have kids or not, I think we can all agree that being a parent is the toughest, yet most rewarding, job in the world. Throw in being a first-time parent and having an already challenging career, and you’ll get a feel for what life is like for many working parents. Jan, manager of the Internal Employee Communications team, wrote a heart-felt letter to one of her employees who just recently gave birth to her first child, sharing her first-hand experience of being a mother (of three) and successful Intel employee. In honor of Mother’s Day, we’d like to share the letter with you and wish all of the mothers out there a very Happy Mother’s Day!</em></strong></p>
<p>Dear Krista:</p>
<p>True story. In 1993, I applied for a job at Intel. (Yes, I know you were about 12 then.) One of the people who interviewed me was an engineer. At some point, she asked me if I had children. Probably not an OK question, in retrospect, but I answered it.</p>
<p>She then explained to me that Intel was an intense, rigorous and demanding culture that was a much better fit for childless professionals like her and her husband, also an Intel engineer. It was not, she strongly suggested, the right place for a woman with two young children. Like me.</p>
<p>I took the hint, and the job at the other company.</p>
<p>Later, when I had another child, I figured I’d kissed any possible Intel future goodbye. If two kids were a disadvantage, surely three were a deal breaker.</p>
<p>Yet 20 years later, here I am, badge around my neck, accomplished AR tamer, seasoned slayer of acronyms. While Intel has indeed proven to be a demanding place to work these last seven years, it’s also, to my enormous relief, a generous and supportive environment where working mothers can thrive.</p>
<p>It’s been a place where I regained my financial footing after a divorce; a place where I’ve been privileged to know and work with people like you. A place where my detours as a stay-at-home mom and part-time employee haven’t kept me from a career path that has exceeded my expectations.</p>
<p>In just a couple of weeks, your maternity leave is going to be over. Instead of spending weekdays with your beautiful baby girl, you’ll spend them with co-workers (who, while less entrancing, have arguably better language skills). And even though you know she’ll be in good hands, I’d bet you’re dreading the transition from full-time mom to working mom. I know I did.</p>
<p>It won’t be easy. It’s not easy working at Intel, and it’s not easy raising a child. In both roles, we aim high and sometimes we stumble. We second guess ourselves something terrible. We are never quite caught up. We worry —oh boy, do we worry. Being a working parent means having good days when it feels like you have the best of both worlds, and bad days when it does not.</p>
<p>But it helps, a lot, that the Intel village you’re returning to is better equipped and more dedicated than ever to help you manage both your thrilling new role as a mom and the job you’re so good at. And your manager (moi) and your team are standing by to help in any way we can.</p>
<p>Your first Mother’s Day as a mom is this weekend; it’ll be my 25<sup>th</sup> (my firstborn even arrived on Mother’s Day). As I marvel—a little wistfully, a little been-there-done-THAT—at the adventure ahead of you, I can’t help but reflect on some stuff I’ve learned, mostly the hard way.</p>
<ul>
<li>Get over being Supermom. Fast. There aren’t bonus points—this isn’t that kind of a game. Ask for help when you’re overwhelmed, time when you’re short, a favor when you need it.</li>
<li>Don’t wait for permission. Do what you need to do, and don’t apologize.</li>
<li>Once you’ve survived a long flight with a screaming child, screaming stakeholders are a piece of cake.</li>
<li>Email is eternal. Childhood is not. Seize the spontaneous moment with your child.</li>
<li>Stay playful. If you turn into a stressball, everyone around you will be miserable too. During the rough patches, take a deep breath, exhale, and remind yourself that this too will pass. Shake it off, smile, laugh if you can. Then book a massage.</li>
<li>Set boundaries. You will teach your child that no means no. This applies to managers and colleagues as well.</li>
<li>You set the tone. If your daughter sees that you like your work, she will too. If you believe your work is simply time away from her, she’ll believe that too.</li>
<li>Later, when she’s older, tell her about your challenges at work, and your wins. Let her feel, and share in, your pride. She’ll be proud too.</li>
<li>There will be days when it will be impossible to be both the outstanding employee and the outstanding parent you want to be. It is. On those days, accept that good enough really is good enough.</li>
<li>Take notes. When you’re immersed in parenting, you think you’ll never forget the daily routines, the frustrations and pleasures of every stage and age. You will.</li>
<li>In your work life there will be tough periods and difficult co-workers. In your family life these are called “adolescence” and “teenagers.” You will survive both.</li>
<li>Dinner. I never really solved this one. I am a fan of crockpots, however.</li>
<li>You can be anyone&#8217;s employee. Only you can be your someone’s mom. Prioritize accordingly.</li>
</ul>
<p>OK, one last story. One day when my daughter was about four years old, she was playing with some plastic animals. She marched them along the back of the couch where I was sitting. “You never know when pandas are going to come into your world,” she informed me.</p>
<p>How right she was.</p>
<p>Happy Mother’s Day, my friend. And welcome back—we’ve missed you!</p>
<p>Jan</p>
<p>&nbsp;</p>
<p>Happy Mother’s Day to all moms! If you’ve got a tip for Krista or other new moms, please share it in comments below.</p>
<p><strong><br />
</strong></p>
<p>The post <a href="http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/">A Mother’s Day letter to a new Intel mom</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/8BtbDhQXKeQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/12/a-mother%e2%80%99s-day-letter-to-a-new-intel-mom/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogs.intel.com/jobs/2013/05/12/a-mother%E2%80%99s-day-letter-to-a-new-intel-mom/</feedburner:origLink></item>
		<item>
		<title>Health 2.0 and API Management</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/WYvralbYdLM/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/e8Ie0iKqsng/#comments</comments>
		<pubDate>Fri, 10 May 2013 20:53:15 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1128</guid>
		<description><![CDATA[<p>I just wanted to send a short note that I will be talking about API Management strategy &#038;  health care data at the Health Refactored conference next week in Mountain View. I&#8217;m hoping to learn a lot of and also &#8230; <a href="http://blogs.intel.com/application-security/2013/05/10/health-2-0-and-api-management/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/10/health-2-0-and-api-management/">Health 2.0 and API Management</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/e8Ie0iKqsng/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/10/health-2-0-and-api-management/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>I just wanted to send a short note that I will be talking about <a href="http://cloudsecurity.intel.com/api-management">API Management</a> strategy &amp;  health care data at the <a href="http://www.health2con.com/events/conferences/health-refactored/">Health Refactored</a> conference next week in Mountain View. I&#8217;m hoping to learn a lot of and also share Intel&#8217;s approach to API management. We&#8217;ll have a booth there so please stop by after the talk!</p>
<p>Blake
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/10/health-2-0-and-api-management/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/10/health-2-0-and-api-management/">Health 2.0 and API Management</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/e8Ie0iKqsng" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/WYvralbYdLM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/10/health-2-0-and-api-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/e8Ie0iKqsng/</feedburner:origLink></item>
		<item>
		<title>Maximizing IT Value by Using High-End Server Processors</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/Rj-Mq9JuX0Y/maximizing-it-value-by-using-high-end-server-processors</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/09/maximizing-it-value-by-using-high-end-server-processors#comments</comments>
		<pubDate>Thu, 09 May 2013 19:31:34 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=708b58a37d1efb4446298f014713a303</guid>
		<description><![CDATA[Intel IT has standardized on Intel&#174; Xeon&#174; processors with a core frequency of 2.6 gigahertz (GHz) for two-socket servers to offer maximum IT value for design computing and enterprise server virtualization. Our analysis demonstrates that higher-... <a href="http://communities.intel.com/community/openportit/blog/2013/05/09/maximizing-it-value-by-using-high-end-server-processors">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:3d4ceb60-4694-4cbe-8a7c-7278cf2b4fd7] --><div class="jive-rendered-content"><p>Intel IT has standardized on Intel&reg; Xeon&reg; processors with a core frequency of 2.6 gigahertz (GHz) for two-socket servers to offer maximum IT value for design computing and enterprise server virtualization. Our analysis demonstrates that higher-end processors significantly enhance server performance throughput for a minimal increase in total cost of ownership (TCO). Our analysis demonstrated to Intel IT management and purchasing groups that software acquisition and licensing costs&#8212;which represent 3x to 6x the cost of the hardware platform&#8212;are the largest drivers of overall TCO for servers deployed at Intel. We concluded that standardizing on high-end processors is a cost-effective way for Intel IT to maximize server return on investment (ROI). You can find more information around our analysis in this recently released white paper <a class="jive-link-external-small" href="http://www.intel.com/content/www/us/en/it-management/intel-it-best-practices/maximizing-it-value-by-using-high-end-server-processors-brief.html" >Maximizing IT Value by Using High-End Server Processors</a>.</p></div><!-- [DocumentBodyEnd:3d4ceb60-4694-4cbe-8a7c-7278cf2b4fd7] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/Rj-Mq9JuX0Y" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/09/maximizing-it-value-by-using-high-end-server-processors/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/09/maximizing-it-value-by-using-high-end-server-processors</feedburner:origLink></item>
		<item>
		<title>Inside IT: Cloud Aware Applications "Code-a-Thon"</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/QZMFL5GHvCw/inside-it-cloud-aware-applications-code-a-thon</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/09/inside-it-cloud-aware-applications-code-a-thon#comments</comments>
		<pubDate>Thu, 09 May 2013 19:13:21 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=8c4fccb1dc3afc062aa9fdedb5769f6b</guid>
		<description><![CDATA[Earlier this year, Intel IT started conducting a series of&#160; Cloud Aware &#8220;Code-a-Thon&#8217;s&#8221;. These were created in response to a skills gap around applications that were being written in a traditional way and ones that needed to be d... <a href="http://communities.intel.com/community/openportit/blog/2013/05/09/inside-it-cloud-aware-applications-code-a-thon">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:a8919299-a48a-4d09-b95d-9e2e6cde204d] --><div class="jive-rendered-content"><p>Earlier this year, Intel IT started conducting a series of&nbsp; Cloud Aware &#8220;Code-a-Thon&#8217;s&rdquo;. These were created in response to a skills gap around applications that were being written in a traditional way and ones that needed to be developed to take advantage of the cloud. This event is an inventive way to bring application developers together, introduce them to concepts of programming applications for the cloud and think in new ways. The intent is to have developers experiment with the cloud and be immersed for an entire day. <a class="jive-link-external-small" href="http://www.intel.com/content/www/us/en/it-management/intel-it-best-practices/inside-it-developing-cloud-aware-applications-podcast.html" >In this podcast</a> we talk to Cathy Spence, an Enterprise Architect in Intel IT. Spence tells us how the Code-a-Thon came about and what it takes to create an app for cloud. We&#8217;ll also hear from participants in a recently held Code-a-Thon at Intel&#8217;s Santa Clara headquarters.</p></div><!-- [DocumentBodyEnd:a8919299-a48a-4d09-b95d-9e2e6cde204d] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/QZMFL5GHvCw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/09/inside-it-cloud-aware-applications-code-a-thon/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/09/inside-it-cloud-aware-applications-code-a-thon</feedburner:origLink></item>
		<item>
		<title>Why healthcare should be a team sport</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/bUpOOIAd0Dc/why-healthcare-should-be-a-team-sport</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/08/why-healthcare-should-be-a-team-sport#comments</comments>
		<pubDate>Wed, 08 May 2013 12:52:09 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=74b56b6e6e3b9e11ed0728e28a83213e</guid>
		<description><![CDATA[Managing the Changing IT Landscape: Technology in Healthcare&#160; The role of technology in healthcare today is undeniable. What&#8217;s really interesting, though, is that we still have a long, long way to go.&#160;I wanted to share this powerful TED... <a href="http://communities.intel.com/community/openportit/blog/2013/05/08/why-healthcare-should-be-a-team-sport">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:f26b150b-fa8b-43d0-babe-756b180cb9ae] --><div class="jive-rendered-content"><p style="margin-bottom: 0.0001pt;"><span style="font-size: 12pt;">Managing the Changing IT Landscape: Technology in Healthcare</span><br />&nbsp; </p><p>The role of technology in healthcare today is undeniable. What&#8217;s really interesting, though, is that we still have a long, long way to go.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>I wanted to share this powerful TED Talk featuring Intel Fellow and GM Eric Dishman. In his talk, <em style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/12aX5FA" >Health Care Should Be a Team Sport</a></em>, Dishman shares his story and his views on how our healthcare system must evolve. </p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>In college, Dishman was diagnosed with a rare kidney disease and given only a few years to live. For 25 years, though, he was wrongly diagnosed. It took a genomic test and a coworker he had never met to save his life by donating her kidney. And he quickly learned to be a proactive participant in his own care. </p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>In Dishman&#8217;s view, the future of personal care must be at home, which should be our default model. He proposes that today&#8217;s technologies&#8212;such as high-performance computing, big data, and mobile&#8212;make this possible, based on three pillars:</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><ul><li><strong>Care Anywhere</strong> &#8211; We invented hospitals and clinics in the 1780&#8217;s &hellip; it&#8217;s time for a change. The notion of traveling to brick-and-mortar healthcare facilities is dated. It&#8217;s also an expensive, risky model that is not sustainable.</li><li><strong>Care Networking</strong> &#8211; We must move beyond isolated specialists treating &#8220;parts&rdquo; to multi-disciplinary teams treating the person. &#8220;Uncoordinated care today is expensive at best, and is deadly at worst,&rdquo; he says (and knows, from his own experience).</li><li><strong>Care Customization</strong> &#8211; High-performance computing, analytics, and big data will help us build predictive models for each of us, as individual patients. </li></ul><p style="margin-left: 0.5in;"></p><p style="margin-bottom: 0.0001pt;">I&#8217;ll dig a little deeper in an upcoming blog to explore some of the mobile and social technologies that can enable this change. In the meantime, listen in to Eric&#8217;s story and proposal for <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/12aX5FA" >healthcare transformation</a>.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;">And check out what Intel is doing to enable better healthcare at the <a class="jive-link-external-small" href="http://intel.ly/17JWYCR" >Intel in Healthcare</a> page. </p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;">Chris <br /> @chris_p_intel<br /> #Consumerization #Healthcare #Innovation </p><p style="margin-bottom: 0.0001pt;"> <a class="jive-link-external-small" href="http://www.intel.com/itcenter" >http://www.intel.com/itcenter</a> </p></div><!-- [DocumentBodyEnd:f26b150b-fa8b-43d0-babe-756b180cb9ae] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/bUpOOIAd0Dc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/08/why-healthcare-should-be-a-team-sport/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/08/why-healthcare-should-be-a-team-sport</feedburner:origLink></item>
		<item>
		<title>NIST Developing New National Cyber Security Framework</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/-HlW6-bW-NM/nist-developing-new-national-cyber-security-framework</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/07/nist-developing-new-national-cyber-security-framework#comments</comments>
		<pubDate>Tue, 07 May 2013 23:53:54 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=02298d65687602426639c55828b8fedb</guid>
		<description><![CDATA[Last February, President Obama issued Executive Order 13549: Improving Critical Infrastructure Cybersecurity. Its intent is to drive new levels of security into the critical infrastructure of the U.S., systems like dams, the power grid, transportation ... <a href="http://communities.intel.com/community/openportit/blog/2013/05/07/nist-developing-new-national-cyber-security-framework">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:183ae4ad-8463-4d41-a180-bdf6148036ca] --><div class="jive-rendered-content"><p>Last February, President Obama issued <em>Executive Order 13549: Improving Critical Infrastructure Cybersecurity</em>. Its intent is to drive new levels of security into the critical infrastructure of the U.S., systems like dams, the power grid, transportation systems, etc. Many stakeholders, both public and private, had input into shaping the EO and its directives. It is controversial, but like it or not, it has created a lot of activity that could impact any business that uses the internet. For a good overview of the EO, see <a class="jive-link-external-small" href="http://www.nbcnews.com/technology/technolog/new-rules-cybersecurity-obamas-executive-order-explained-1C8349895" >New rules for cybersecurity? Obama's executive order explained</a>. You can read the EO itself <a class="jive-link-external-small" href="http://www.whitehouse.gov/the-press-office/2013/02/12/executive-order-improving-critical-infrastructure-cybersecurity" >here</a>; the EO itself is only a few pages long.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>In part, the EO charges the National Institute of Standards and Technology (NIST) with developing a national Cybersecurity Framework. The Framework will consist of standards, guidelines, and best practices to promote the protection of private information and information systems supporting U.S. critical infrastructure operations, while protecting business confidentiality, individual privacy and civil liberties. Adherence to the Framework will be voluntary&#8212;although there is deep skepticism by some that it will always remain so.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>To kick off their efforts, in March NIST issued a public Request for Information (RFI) to industry, government agencies, standards-setting organizations, public-private partnerships, and other stakeholders, seeking information on how respondents currently manage cybersecurity risks within their organizations. Thankfully, NIST does not seem to be trying to re-create the wheel, instead they are cataloguing what&#8217;s already in use as the basis for the Framework.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>I had the privilege of working on Intel&#8217;s response to the RFI, and spent six hectic weeks working with an incredibly talented team to formulate Intel&#8217;s corporate response to the huge RFI. At the same time, as an Intel representative to the Information Technology Sector Coordinating Committee (IT-SCC), a large public-private partnership, I also worked on their industry-based response with an equally talented group of industry peers. The experience has given me a lot of insight into how the Framework may develop, and along with many others I will be continuing to work with NIST throughout 2013 to build it.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>The RFI consisted of 33 questions centered on three major areas:&nbsp; managing cybersecurity, current standards and guidelines already in use, and specific security practices. Some typical questions were, &#8220;How do organizations define and assess risk generally and cybersecurity risk specifically?&rdquo; and, &#8220;Do organizations have a formal escalation process to address cybersecurity risks that suddenly increase in severity?&rdquo;&nbsp; I was pleased to see privacy concerns were explicitly considered in several questions, such as, &#8220;What risks to privacy and civil liberties do commenters perceive in the application of these security practices?&rdquo;</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>For the Intel response, we wanted to provide as much information as possible on what we know about cyber risk management, while of course also protecting Intel&#8217;s proprietary information. Depending on the topic, different experts were assigned to answer a question, then review their answers with a broader group of experts to ensure accuracy. Each answer also had to accurately reflect Intel&#8217;s key messages: Ever-changing cybersecurity risks call for flexible and nimble risk-management based solutions; international alignment and harmonization is essential; the Framework must comprehend global privacy and civil rights practices; it must be technology neutral and not proscriptive; and that cybersecurity is a shared responsibility, but industry should lead in developing cybersecurity standards and best practices.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>Since most of us were fitting this work in with our regular jobs, it created quite a schedule crunch, but we completed the response by the aggressive deadline, April 8. You can read the Intel response in three parts: <a class="jive-link-external-small" href="http://csrc.nist.gov/cyberframework/rfi_comments/040813_intel_part_1_of_3.pdf" >1</a>, <a class="jive-link-external-small" href="http://csrc.nist.gov/cyberframework/rfi_comments/040813_intel_part_2_of_3.pdf" >2</a>, and <a class="jive-link-external-small" href="http://csrc.nist.gov/cyberframework/rfi_comments/040813_intel_part_3_of_3.pdf" >3</a>. The IT-SCC response, which addresses broader IT industry concerns, can be found <a class="jive-link-external-small" href="http://csrc.nist.gov/cyberframework/rfi_comments/040813_it_scc.pdf" >here</a>.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>The next NIST workshop will be held at Carnegie Mellon University in late May. At that workshop, contributors from all 18 critical U.S. infrastructure industries will see NIST&#8217;s first rough draft of what they gleaned from all the responses and what the Framework might look like. Should be an interesting discussion, to say the least. I am attending the workshop and will describe how it went in a future blog.</p></div><!-- [DocumentBodyEnd:183ae4ad-8463-4d41-a180-bdf6148036ca] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/-HlW6-bW-NM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/07/nist-developing-new-national-cyber-security-framework/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/07/nist-developing-new-national-cyber-security-framework</feedburner:origLink></item>
		<item>
		<title>All Eyes on HTML5</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/ulTgMKTq3EY/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/b7HIu5NWBkg/#comments</comments>
		<pubDate>Fri, 03 May 2013 18:11:57 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1107</guid>
		<description><![CDATA[<p>Visionmobile released a new info-graphic earlier this week that puts some spotlight back on HTML5. While HTML5 is in third place compared to Android and iOS for development and deployment platforms, the most interesting aspect of the survey is the &#8230; <a href="http://blogs.intel.com/application-security/2013/05/03/all-eyes-on-html5/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/03/all-eyes-on-html5/">All Eyes on HTML5</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/b7HIu5NWBkg/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/03/all-eyes-on-html5/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Visionmobile released a new <a href="http://www.visionmobile.com/blog/2013/04/infographic-developer-economics-2013-dev-tools-are-the-foundation-of-the-app-economy/">info-graphic</a> earlier this week that puts some spotlight back on HTML5. While HTML5 is in third place compared to Android and iOS for development and deployment platforms, the most interesting aspect of the survey is the &#8220;App Monetisation&#8221; panel.</p>
<p>I think the data here confirms what we intuitively already know &#8211; if you release your app on more platforms, all things being equal, you will have higher average monthly revenue. This is simply because you can expose your product to a larger unit demand. In other words, the ultimate app is the one that can quickly, easily and cheaply be consumed by users in across all of the walled gardens.</p>
<p>In the case of the survey, the smallest percentage of developers expose their app on 6 platforms but also capture significantly more revenue per month &#8211; nearly $5000.  If we flip the discussion around and talk about costs, while it is clear that more platforms equals more revenue, the cost drivers here are going to be significantly higher unless you employ some sort of cross platform toolset, and HTML5/JavaScript seems to fit this bill quite nicely.</p>
<p>What about Enterprises apps? We think that the combination of <a href="http://html5dev-software.intel.com/">HTML5 for Enterprise app development</a> coupled with an <a href="http://cloudsecurity.intel.com/api-management">API gateway</a> forms the basis of a reference architecture for low cost, cross-platform app development but if we tie in this new data from Visionmobile, it seems that independent developers may also have a lot to gain from HTML5/Javascript tools when it comes to putting money into their own pocket. If you missed the webinar on this subject, be sure to check it out <a href="https://cloudsecurity.intel.com/webinars/html5-cross-platform-security">here</a>.</p>
<p>&nbsp;</p>
<p>Blake</p>
<p>&nbsp;
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/03/all-eyes-on-html5/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/03/all-eyes-on-html5/">All Eyes on HTML5</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/b7HIu5NWBkg" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/ulTgMKTq3EY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/03/all-eyes-on-html5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/b7HIu5NWBkg/</feedburner:origLink></item>
		<item>
		<title>Turning Big Data into Big Answers</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/mLFqy1Sbozg/turning-big-data-into-big-answers</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/01/turning-big-data-into-big-answers#comments</comments>
		<pubDate>Wed, 01 May 2013 18:40:53 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=7990135c4863c8313c299c85686ce3c5</guid>
		<description><![CDATA[&#160;Talk live with an Intel IT Center expert: Sure, Big Data is a big deal. But with new sources and growing volumes of data flooding in daily, how do you turn all of that data into meaningful insights that give your business a competitive advantage?... <a href="http://communities.intel.com/community/openportit/blog/2013/05/01/turning-big-data-into-big-answers">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:18ae078a-6798-4c07-afb8-9a489e62d503] --><div class="jive-rendered-content"><p><a href="http://bit.ly/17tdwgv" ><img alt="05-Webinar-Open-Port-602px.jpg" class="jive-image" height="301" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15825-232155/602-301/05-Webinar-Open-Port-602px.jpg" style="margin: 0;" width="602"/></a></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>Talk live with an Intel IT Center expert: Sure, Big Data is a big deal. But with new sources and growing volumes of data flooding in daily, how do you turn all of that data into meaningful insights that give your business a competitive advantage?&nbsp; In this live interactive webinar, Intel IT experts Ajay Chandramouly and Ron Kasabian will distill what the Intel Big Data Solutions Group has learned about maximizing the value of big data analytics and the cloud. Bryce Olson, Business Strategist at Intel Corporation, will moderate the interactive discussion.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>Based on three years of planning and hands-on experience, they will provide practical steps for guiding your Big Data and Cloud initiatives. The discussion will include:</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><ul><li>How Intel is optimizing Apache Hadoop deployments</li><li>How Intel is using Big Data to bring new products to market faster</li><li>How predictive analytics are saving millions across the company</li></ul><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>Join this live forum, ask questions, and learn how to turn Big Data into hugely beneficial information your company can act on. Live May 15th at 9am PDT. <a class="jive-link-external-small" href="http://bit.ly/17tdwgv" >Register Here</a></p></div><!-- [DocumentBodyEnd:18ae078a-6798-4c07-afb8-9a489e62d503] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/mLFqy1Sbozg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/01/turning-big-data-into-big-answers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/01/turning-big-data-into-big-answers</feedburner:origLink></item>
		<item>
		<title>API Management for Healthcare</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/qXqRRoBTnOs/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/g5-MVM6tu_Q/#comments</comments>
		<pubDate>Wed, 01 May 2013 16:44:35 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1057</guid>
		<description><![CDATA[<p>It&#8217;s springtime and there is a buzz in the air.  The API Management market place is heating up.  Businesses are seeing the value in exposing data.  In the world of Healthcare IT, the drive to accelerate electronic health record adoption collides &#8230; <a href="http://blogs.intel.com/application-security/2013/05/01/api-ify-the-hie-what-api-management-can-do-for-healthcare/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/01/api-ify-the-hie-what-api-management-can-do-for-healthcare/">API Management for Healthcare</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/g5-MVM6tu_Q/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/01/api-ify-the-hie-what-api-management-can-do-for-healthcare/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>It&#8217;s springtime and there is a buzz in the air.  The <a title="Intel Expressway API Manager" href="http://cloudsecurity.intel.com/api-management" >API Management</a> market place is heating up.  Businesses are seeing the value in exposing data.  In the world of <a title="Healthcare" href="http://cloudsecurity.intel.com/health-information-exchange" >Healthcare</a> IT, the drive to accelerate electronic health record adoption collides with the API trend.  What market sector could benefit more from the cost control and revenue generating benefits of API Management than Healthcare? Exposing healthcare data is the key to driving innovation, reducing costs and generating new revenue streams. Intel Expressway API Manager (EAM) can make it happen.</p>
<h2><span style="font-size: medium"><span style="color: #4f81bd"><span style="font-family: Cambria">Innovate</span></span></span></h2>
<p>Meaningful Use is pushing for more exposure of clinical data.  If public health records can be made accessible, healthcare can be modernized.  But data must be protected from hackers and made available only to authorized users.  Intel&#8217;s API Management solution can secure services, provide threat defense, IaaS cloud scalability, authentication/authorization, data translation and high performance for RESTful APIs access. Intel is working with public health providers to expose patient data.  Intel Expressway <a title="Expressway Service Gateway" href="http://cloudsecurity.intel.com/service-gateway" >Service Gateway</a> brokers the user registration process a third party identity provider (IdP). OAuth tokens ensure that communication with the IdP is authorized.  The IdP generates SAML assertions for NYeC to use to secure subsequent transactions containing patient information.  NYeC&#8217;s drive to expose the data is an exciting process to see in motion.</p>
<h2><span style="font-size: medium"><span style="color: #4f81bd"><span style="font-family: Cambria">Reduce Cost</span></span></span></h2>
<p>EAM provides the data conversion needed to transform legacy web services to RESTful services.  Data transformation features enable XML to JSON and with Informatica’s potent data transformation services embedded in Expressway, HL7 V2 can be converted to mobile ready formats. Once the services are made available, the cost savings can be even greater. APIs enable self-service and fast to market application development. In the US, healthcare costs make up the largest component of the National budget and the numbers are still growing.  API Management for healthcare services can be a factor in controlling spending in this sector.</p>
<div id="attachment_1058" class="wp-caption alignnone" style="width: 451px"><a href="http://blogs.intel.com/application-security/files/2013/04/FedOutlays.jpg"><img class="size-medium wp-image-1058" src="http://blogs.intel.com/application-security/files/2013/04/FedOutlays-300x102.jpg" alt="" width="441" height="131" /></a><p class="wp-caption-text">http://www.usgovernmentspending.com/health_care_budget_2010_1.html</p></div>
<p>&nbsp;</p>
<h2><span style="font-size: medium"><span style="color: #4f81bd"><span style="font-family: Cambria">Generate Revenue</span></span></span></h2>
<p>Removing patient specific data from the clinical information adds another layer of security. Deidentification can be achieved as part of the API Management process by encrypting the <a title="Personally Identifiable Information" href="http://cloudsecurity.intel.com/pii-personally-identifiable-information" >Personally Identifiable Information</a> (PII). EAM provides powerful format preserving PII tools provided that will hide the PII from public view.  With anonymous healthcare data, the possibilities for innovation expand. Consider Aetna&#8217;s CarePass Developer Portal (powered by Mashery).  Healthcare APIs are available from Walgreens allowing mobile access to prescription refills, NutritionIx and Food Care are exposing nutrition data to power health and diet applications and Good Rx lists web services that help you find the lowest price for a pharmaceutical.  Imagine how the provider of these healthcare APIs can take advantage of the developer community to create applications that will drive new revenue.  The New York Times, Flixter and Netflix have shown what a good API strategy can do for growing business. The same revenue models can be applied to HIE. APIs allow for easy partnering EHRs with insurance providers, Physician groups with pharmacies, Patient portals with health clubs, HIE’s with labs and more.  Follow the HIE standards, securely expose the data and, as they say in API terms, Mash &#8216;em up!</p>
<p>Healthcare data exposed as APIs makes businesses sense for the healthcare industry.  The innovation that results from increased exposure of patient and clinical analysis data will generate new revenues beyond the short term bonuses from meaningful use incentives.  The changes that can come from simplifying healthcare for mobility can feed more data into decision support and can make API Management a big factor in improving patient outcomes. Join us at <a href="http://healthrefactored.com/">Health:Refactored</a> in Mountain View, May 13-14, and see Intel Expressway API Manager in action with a case study from Blue Cross Blue Shield Association.</p>
<h2><span style="font-size: medium"><span style="color: #4f81bd"><span style="font-family: Cambria">Resources</span></span></span></h2>
<p>Read the Intel Expressway <a title="Intel Expressway API Manager Datasheet" href="https://cloudsecurity.intel.com/datasheets/intel-expressway-api-manager" >API Manager</a> data sheet
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/05/01/api-ify-the-hie-what-api-management-can-do-for-healthcare/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/05/01/api-ify-the-hie-what-api-management-can-do-for-healthcare/">API Management for Healthcare</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/g5-MVM6tu_Q" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/qXqRRoBTnOs" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/01/api-management-for-healthcare/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/g5-MVM6tu_Q/</feedburner:origLink></item>
		<item>
		<title>It’s time to put users first</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/ybxKPstSS2U/it-s-time-to-put-users-first</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/05/01/it-s-time-to-put-users-first#comments</comments>
		<pubDate>Wed, 01 May 2013 13:00:50 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=2ec98cbb3eb48b3dc91461af7615f0f7</guid>
		<description><![CDATA[Managing the Changing IT Landscape: User-Centered ComputingAre you ready to let users determine what IT services you deliver? Like it or not, they&#8217;re already using their own devices, not to mention the cloud-based services they want. Wouldn't it ... <a href="http://communities.intel.com/community/openportit/blog/2013/05/01/it-s-time-to-put-users-first">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:ddcbe832-9cb1-40cc-bb93-aae033c15b1d] --><div class="jive-rendered-content"><p><span style="font-size: 12pt; font-family: Calibri, sans-serif;">Managing the Changing IT Landscape: User-Centered Computing</span></p><p><span style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"><br /></span></p><p>Are you ready to let users determine what IT services you deliver? Like it or not, <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/RAH9F3" >they&#8217;re already using their own devices</a></span>, not to mention the cloud-based services they want. Wouldn't it be easier to include them right from the start?&nbsp;&nbsp; </p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>I've been writing a lot on the importance of finding the<a class="jive-link-external-small" href="http://intel.ly/Ugpmc6" > <span style="text-decoration: underline;">right tool for the job</span></a>. At the heart of that idea is user-centered computing&#8212;an inclusive approach to managing consumerization that puts all users&#8217; needs first.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;">When I worked for Intel IT, we put this to action by moving away from the one-size-fits-all model to a customized approach that emphasizes the right fit and design for the job. We did this by:</p><p style="margin-bottom: 0.0001pt;"></p><ul style="list-style-type: disc;"><li>Conducting segmentation studies to understand job roles and how people work</li><li>Inviting employees to participate in pilot studies and early adopter programs to improve and stabilize IT solutions before full deployment </li><li>Conducting surveys that help:<ul style="list-style-type: disc;"><li>Measure customer satisfaction with existing IT products and services </li><li>Identify the services that are most important to employees </li><li>Solicit input on gaps and unfulfilled needs in our service portfolio</li></ul></li><li>Providing greater choice and flexibility by offering more options for primary computing devices </li><li>Establishing and supporting Bring Your Own Device (BYOD) and BYO-PC programs </li></ul><p style="margin-bottom: 0.0001pt;"></p><p style="margin-bottom: 0.0001pt;">This approach may seem radical, and it does involve <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/17vYIj1" >changing the culture of IT</a></span>. However, this change is necessary to fulfill the mission of IT: creating and delivering greater business value.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="margin-bottom: 0.0001pt;">Chris <br /> @chris_p_intel<br /> #UserCenteredComputing #Consumerization</p><p style="margin-bottom: 0.0001pt;"> <a class="jive-link-external-small" href="http://www.intel.com/itcenter" >IT Center</a> <span style="font-size: 11.0pt; font-family: 'Calibri','sans-serif';"> </span></p></div><!-- [DocumentBodyEnd:ddcbe832-9cb1-40cc-bb93-aae033c15b1d] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/ybxKPstSS2U" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/05/01/it%e2%80%99s-time-to-put-users-first/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/05/01/it-s-time-to-put-users-first</feedburner:origLink></item>
		<item>
		<title>Cloud-Aware Tokenization: Helping to Build PCI-Compliant Applications in the Cloud</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/wHD3HRaePhw/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IRW3xH8GdjI/#comments</comments>
		<pubDate>Tue, 30 Apr 2013 19:08:30 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1078</guid>
		<description><![CDATA[<p>Last year the Open Data Center Alliance published an excellent whitepaper that defined the concept of &#8220;cloud-aware&#8221; applications.  The ODCA paper sets forth the following recommendations: Everything is a Service Use RESTful APIs Separate Compute and Persistence Design for Failure &#8230; <a href="http://blogs.intel.com/application-security/2013/04/30/cloud-aware-tokenization/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/30/cloud-aware-tokenization/">Cloud-Aware Tokenization: Helping to Build PCI-Compliant Applications in the Cloud</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IRW3xH8GdjI/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/30/cloud-aware-tokenization/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Last year the Open Data Center Alliance published an excellent <a href="http://www.opendatacenteralliance.org/docs/DevCloudCapApp.pdf">whitepaper</a> that defined the concept of &#8220;cloud-aware&#8221; applications.  The ODCA paper sets forth the following recommendations:</p>
<ol>
<li>Everything is a Service</li>
<li>Use RESTful APIs</li>
<li>Separate Compute and Persistence</li>
<li>Design for Failure</li>
<li>Architect for Resilience</li>
<li>Operationalize Everything</li>
<li>Security at Every Layer</li>
</ol>
<p>I will likely revisit these concepts in future posts, but in this post I want to highlight how our multi-datacenter <a href="http://cloudsecurity.intel.com/tokenization">tokenization</a> function can help to build <a href="http://cloudsecurity.intel.com/pci-compliance">PCI-compliant</a> applications that are cloud-aware, hitting points 4, 5, and 7 above.  This is because we designed our tokenization broker as a cloud-aware application with built-in intelligence to work across disparate networks and datacenters while maintaining a low cost proxy implementation model.</p>
<h2> <strong>What is Tokenization?</strong></h2>
<p>For the uninitiated, tokenization is the process that removes <a href="http://cloudsecurity.intel.com/pii-personally-identifiable-information">personally-identifiable information (PII)</a> or any PAN (primary account number) from a record, replacing it with an encrypted, randomized, or hashed object (or &#8220;token&#8221;) that represents the PII.  The token-to-PII mapping is stored in a separate, highly-secured database, which has the added benefit of simplifying the audit process for the custodian of the data.  The token itself is meaningless, requiring a detokenization function to extract the original, cleartext data.</p>
<p><a href="http://blogs.intel.com/application-security/files/2013/04/TokenizationScope_generic.jpg"><img class="aligncenter size-full wp-image-1082" src="http://blogs.intel.com/application-security/files/2013/04/TokenizationScope_generic.jpg" alt="" width="530" height="118" /></a>A token is therefore only usable in limited contexts, compartmentalizing risk if it is compromised.  In layman&#8217;s terms, if someone steals my credit card number they can use it to make purchases anywhere until the card is canceled, but if they get the token that represents my credit card then the data is useless.  Tokenization is a best practice used to protect credit card numbers, social security numbers, and even names and addresses (for example in Personal Health Records).  It provides added security at the data layer, ensuring that customer data remains secure even if a transaction database is compromised. Tokenization also has unique applications for PCI compliance. Aside from security, tokenized credit card numbers enjoy reduced PCI scope in most cases, driving down business costs.</p>
<h2><strong>Why Multi-DC?</strong></h2>
<p>There are many reasons for an application to span data centers.  The most common reasons are to improve availability and performance (I touched on <a href="http://blogs.intel.com/application-security/2013/01/25/elastic-scaling-of-apis-in-the-cloud/">elastic scaling of APIs</a> in an earlier blog).  Also, multiple datacenters are often an outgrowth of business expansion as traditional organizations grow into new business models utilizing public, private or hybrid clouds.</p>
<p>To improve availability, many applications are deployed to different availability zones within a region.  This allows multiple instances of an application (or API) to run in parallel, with the ability to route around failures all the way up to the data center level (design for failure; architect for resilience).  Performance can be improved by adding additional regions (for example, east coast and west coast) to reduce latency between the user and the application.</p>
<p>There may also be business process drivers for multiple data centers.  Consider, for example, a retailer with a both online and brick-and-mortar businesses.  These two channels may be run from different data centers, headquartered in different cities.  However, customer satisfaction depends on being able to buy an item online and return or exchange it in store, and may even support in-store purchases being returned via the online channel.  This requires transaction information to be visible to both channels.  While this could be handled by calling out to the other channel&#8217;s API, the best customer experience will be delivered by recognizing a customer as a single entity across both channels, regardless of where that customer originated.  To do this, the retailer may have a single customer database that spans its brick &amp; mortar and online data centers.</p>
<h2> <strong>Multi-DC Tokenization</strong></h2>
<p>Since tokens uniquely identify data, it is critical that there is a one-to-one mapping between the tokens and the data they represent.  This effectively requires all participating data centers to agree upon roles for the tokenization process. This would seem to be at odds with the eventual consistency model I described earlier in this post. However, the importance of avoiding collisions or duplications in the tokenization process dictates that this state be shared and carefully coordinated across all sites with adequate performance and resiliency in the face of datacenter downtime.</p>
<p>Our approach relies on a combination of PAN partitioning and a distributed secure vault.</p>
<p>When a new request comes in, we route the request to the appropriate data center based on the PAN range.  The authoritative DC computes the token, returns it (via API), and stores the result in our distributed secure vault.  Subsequent references of the token can then be performed at any data center, once the secure vault synchronizes state, which happens nearly instantly (modulo network latency). On the off chance that the application attempts a read-after-write (i.e. detokenization request a few milliseconds after the tokenization request), it is possible that the secure vault will not yet be in sync &#8211; anticipating that, we will retry a failed request at the authoritative DC for the token.</p>
<p>By managing this shared token state independently of the application, the developer can treat the tokenization process as a black box. Data can be tokenized from nearly any source over any protocol and PAN data is extracted using common regular expressions or XPath at the application level. No SDKs or application changes are needed. The persistence state is effectively decoupled from compute, and the application&#8217;s business logic can be written as if it were a stateless app.  This reduces overhead that goes along with planning and testing for collisions, race conditions, and other corner cases, allowing the developer to spend more time focusing on their core business logic.</p>
<h2><strong>Summary</strong></h2>
<p>Multi-DC tokenization is a good use of the facade proxy pattern for API security.  Like our <a href="https://cloudsecurity.intel.com/demos/hadoop-security">touchless Hadoop security</a>, it allows an application to be secured without being modified.  APIs run in the cloud (for that matter, APIs run the cloud) &#8212; and thus they need to be cloud-aware.  Building all of that support into each application requires significant effort.  The proxy façade pattern allows developers to focus on their core business &#8211; the differentiating features &#8211; rather than investing time creating and maintaining non-differentiating capabilities.  With Expressway Token Broker&#8217;s cloud-aware tokenization, we manage your distributed token state so you don&#8217;t have to.</p>
<h2>Resources</h2>
<ul>
<li><a href="https://cloudsecurity.intel.com/white-papers/tokenization-for-pci-dss">Buyer&#8217;s Guide: Tokenization for PCI-DSS</a></li>
<li><a href="https://cloudsecurity.intel.com/white-papers/qsa-assessors-guide">QSA Assessor&#8217;s Guide</a></li>
</ul>
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/30/cloud-aware-tokenization/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>The post <a href="http://blogs.intel.com/application-security/2013/04/30/cloud-aware-tokenization/">Cloud-Aware Tokenization: Helping to Build PCI-Compliant Applications in the Cloud</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/IRW3xH8GdjI" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/wHD3HRaePhw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/30/cloud-aware-tokenization-helping-to-build-pci-compliant-applications-in-the-cloud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IRW3xH8GdjI/</feedburner:origLink></item>
		<item>
		<title>Intel Employees: A Special Tribute to a Special Teammate</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/K6gJz26Ut44/</link>
		<comments>http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/#comments</comments>
		<pubDate>Thu, 25 Apr 2013 20:43:15 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/jobs/?p=1954</guid>
		<description><![CDATA[<p>Note from the editor: You hear from me quite a bit, whether it’s through a blog post or as a response to a comment or an introduction to a guest blogger, but you don’t hear from two of my teammates &#8230; <a href="http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/">Intel Employees: A Special Tribute to a Special Teammate</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p> <a href="http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p><em>Note from the editor: You hear from me quite a bit, whether it’s through a blog post or as a response to a comment or an introduction to a guest blogger, but you don’t hear from two of my teammates who work tirelessly behind this blog and the Jobs at Intel website to ensure that you have a great experience. My teammates, Teresa and Christine, are the magicians behind the curtain—you don’t see them but they do A LOT of the work to keep the sites running. Today’s guest blogger is Teresa, the Web Product snad Services Manager for Intel’s Talent Enabling Solutions team aka she’s the magic behind our online employer presence. There are lots of different stages to your career: joining a company, getting new managers, transferring to a different group, growing in your role, being promoted, taking a lateral move, and leaving. People leave for different reasons, in this case, it’s one that we’re jealous of—retirement in Florida to pursue a different life adventure. Teresa has written a special post for Christine as she retires from Intel and starts her next life adventure. From all of us bloggers, contributors, viewers, and users—congratulations Christine! All the best with the new endeavor! </em></p>
<p>At Intel we have a term—‘Great Place to Work’ (GPTW). It’s also one of <a href="http://www.intel.com/lifeatintel/values/" >our values.</a> Each year we get a new badge calendar and on the flip side are listed the Intel values. GPTW lists bullets like <strong>Win and Have Fun</strong> and <strong>Work as a Team with Respect and Trust</strong>. I’ve worked for Intel 20 years now – I’m an ol’timer. I’m also kind of a sap, because when introducing myself in meetings or at conferences I also add “…and I’ve loved every minute!”—and though I created this blog, this is my first time contributing to it. I wanted to write a love letter of sorts but first I need to give a bit of background.</p>
<p>I’ve learned a lot about Intel and its culture over the years. At first I remember feeling like a fish out of water. There are so many brilliant and talented people that at first I was intimated. But it was because of those brilliant and talented people that I was pushed into the deep water. I raised my hand to work on a new project and my management team said, ‘go for it’ and off I went.  My project was that new “internet-web-thingy” and how would our Staffing team get on this “World Wide Web”. We wanted to market Intel jobs to the public in the new and exciting way. We had no idea what we were doing. I had no idea what I was doing. We put together a one pager that was really only a graphic – I pressed the ENTER key and off we went. It was 1994 – eons ago in the Internet age.  I was hooked! Our site grew into our global corporate <strong><a href="http://www.intel.com/jobs">Jobs at Intel site</a></strong>. We’ve added bells and whistles; tried all the fads and marketing tricks. Some worked – some tanked. I’ve worked on this site for most of my Intel career as developer, architect, and designer. I feel very maternal really. My goal has always been to show the world what it’s like to work at Intel and to grow a rewarding career – just like I’ve been able to do.</p>
<p>Along the way I’ve worked with several talented Content Editors/Managers. These are the people that write all the words that express to our visitors what Intel is really all about. At times I’ve worked with teams of people; at other times just one person. We partner with subject matter experts (SME) all over the globe who provide content. We also work with our college, business, HR and diversity teams assisting in getting their marketing campaigns, content and jobs out to the world.  Social media and mobile are new areas for us and we are learning everyday what works and what doesn’t. Content comes from every country we hire in and it is the job of the Content Editor to make it all come together and to make sure it sounds good. It’s a tough job – challenging, stressful, but extremely rewarding as well.</p>
<p>Now here’s my love letter…</p>
<p><a href="http://blogs.intel.com/jobs/files/2013/04/Doodlechristine.jpg"><img class="alignleft size-medium wp-image-1955" src="http://blogs.intel.com/jobs/files/2013/04/Doodlechristine-231x300.jpg" alt="" width="231" height="300" /></a></p>
<p>For the past seven years I’ve worked with Christine. She came to the job with a lot of questions, much stress and a dose of trepidation. She didn’t know if she could do the job and she worried it was too large for just one editor. I showed her around the house – where all the rooms were, where to find the life vest. I promised her that I would have her back and talk her down from the ledge if needed. I loved the job and I needed a strong editor to partner with who loved the work as well. I wanted her to succeed in every way. And succeed she did. Christine held her nose and jumped in the deep end with me. She managed a global stakeholder team, designed a work request process, juggled dozens of content projects and began the task of making the Jobs at Intel website world-class. Every word on our website was written or edited by Christine. I do the pretty pictures but content is king! She takes the messages we want to convey, along with the SMEs content and writes it in the Intel voice so that our visitors can get a feel for what it may be like to work for Intel. Every word.</p>
<p>On Friday, Christine is retiring from Intel. She found a beautiful stretch of beach and she and her husband will be planting their future in the sand. I’m losing my partner. My emotions are so extremely mixed. I’m so happy for her – so excited that she is finding her dreams coming true. But I’m also so sad because she has made my work life so much fun. Bouncing our creative energy around and then watching it come to life on the webpage has been so rewarding. It’s been like a marriage.  We have trust, we communicate, and we voice our opinions – go a bit mad at times but always come up with a solution. And we laugh. Christine is the kind of person that has 20 windows opened at the same time; she’s conversing with two people on IM while talking on the phone. (Her desktop looks like my real hubby’s garage [sorry sweetie, but it’s true]). At first I thought “Geez, how can you get anything done?” But this is how Christine works. Her brain is a file cabinet, and she can easily move from file to file. It’s amazing really.  She can find any file going back years. Amazing.</p>
<p>She is also so creative. What I like the most is she makes me better. She pushes me to find solutions, find a way to express what our customers need in new and exciting ways. She reminds me to breathe when the days are full and the schedule dates are looming. She is the Ying to my Yang, my Opus, my Thelma, my Snoopy – she’s jelly and I’m the peanut butter. I do love her and will remember my years working with her as the best (so far).</p>
<p>&nbsp;<br />
We don’t always give thanks. We forget to recognize. Even at Intel, thank you is not always stated because the work speaks for us. But I wanted a way to say “Thank you” that would really convey my gratitude.  Oh sure there’s going to be a party, laughs will be had, margaritas will be drunk, and hugs will be exchanged. We will toast and we will laugh. (I’ll cry later.)Her friends will gather and we will send her off well. But this is my way of sharing my gratitude and recognition in a way that would be truly unique—and what better way than to do it through a project that we both worked on together and one that would share her legacy for the world to see!</p>
<p>&nbsp;<br />
On behalf of Intel, I want to say <strong><em>Thank You Christine</em></strong>! I have had so much fun working with you. Thank you for the respect and the trust. Thanks for thinking of our visitors first and trying always to provide the best possible experience. Thank you for your skill, your partnership and for your passion for the job. It was so appreciated. I wish you and Jeff the greatest happiness as you journey onward. Our “marriage” may be over, but our friendship is lifelong.</p>
<p><strong><span style="text-decoration: underline">YOU are</span></strong> the reason Intel is a Great Place to Work!</p>
<p><em>You&#8217;ve heard it before, but here&#8217;s the proof. People truly are Intel&#8217;s greatest asset and the reason why many of us come into work everyday.</em></p>
<p>The post <a href="http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/">Intel Employees: A Special Tribute to a Special Teammate</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/K6gJz26Ut44" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogs.intel.com/jobs/2013/04/25/intel-employees-a-special-tribute-to-a-special-teammate/</feedburner:origLink></item>
		<item>
		<title>Moving The Desktop PC Forward: Part 1</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/x69RePEx45M/moving-the-desktop-pc-forward-part-1</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/24/moving-the-desktop-pc-forward-part-1#comments</comments>
		<pubDate>Wed, 24 Apr 2013 18:09:24 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=fa70c82e7fa160e88971b03c120da1a9</guid>
		<description><![CDATA[The Desktop PC has been the workhorse of the computer industry ever since the personal computer was first invented. It offers the highest performance and greatest configuration flexibility of any PC form factor (which is why it remains popular with the... <a href="http://communities.intel.com/community/openportit/blog/2013/04/24/moving-the-desktop-pc-forward-part-1">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:323664f5-bc12-4f60-b6fb-759c62a39e3c] --><div class="jive-rendered-content"><p>The Desktop PC has been the workhorse of the computer industry ever since the personal computer was first invented. It offers the highest performance and greatest configuration flexibility of any PC form factor (which is why it remains popular with the enthusiast community), but when compared with many of the sleek new devices available today it often falls short on style. The typical tower desktop PC, with a tangle of wires running out the back, has been relegated to the office cubicle or back room of the house &#8211; kept out of view of polite company.&nbsp; For those of us who like the configurability of the tower desktop PC it&#8217;s time that we look for ways to move the platform forward into the realm of stylish technologies that people expect today.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>The good news is that many PC makers are actively working on solutions to this problem. One exciting development is the increased number of All-In-One (AIO) PCs available today (the Apple iMac* or HP Touchsmart* being two popular examples). These AIO PCs bring a sense of style that ends the desktop PC&#8217;s exile to the den and makes it a welcome addition to any area of the home or office. If you don&#8217;t need the mobility of a notebook then these AIO PCs can give you a large screen, solid performance, and the added security of a stationary PC &#8211; all in a sleek package.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>But what if you still want the power and flexibility that comes from the traditional tower desktop PC?&nbsp; Are you forever relegated to the fashion-challenged corners of the PC world? I believe that there are some lessons we can learn from the PC enthusiast community that can bring modern style to the tower PC without sacrificing its core strengths.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>PC Enthusiasts spend a great deal of effort designing and building their dream system, and they like to show off the end result. Unlike a poorly designed do-it-yourself PC where a tangle of wires connects the components inside, the PC Enthusiast community has become very adept at cable management. They combine groups of cables together &#8211; sometimes with an outer sheathing layer &#8211; and route them in such a way that they don&#8217;t spoil the aesthetics of the system interior. This technique is routinely used to solve cable issues inside of the case, but could easily be applied to the problem that exists outside a typical desktop PC.</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p>To get your creative ideas flowing, here&#8217;s an example of how this could work. A basic configuration for a tower desktop PC would require a number of wires running between the tower base and the monitor. The exact number of wires depends on the connections being used. Here are two examples for consideration:</p><p><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15816-232034/Fig1.png"><img alt="Fig1.png" class="jive-image-thumbnail jive-image" height="137" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15816-232034/602-137/Fig1.png" style="display: block; margin-left: auto; margin-right: auto;" width="602"/></a></p><p>Starting with the basic principles of cable management, the first step to taming these configurations is to combine the multiple wires into a single cable &#8211; thereby eliminating the typical rat&#8217;s nest of wires. After combining the wires using commonly available wrapping materials, our examples then become:</p><p><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15816-232035/Fig2.png"><img alt="Fig2.png" class="jive-image-thumbnail jive-image" height="137" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15816-232035/602-137/Fig2.png" style="display: block; margin-left: auto; margin-right: auto;" width="602"/></a></p><p>Since the monitor I/O connections are located on the back side, this cable can be constructed so that the point where the cable divides into individual connectors is well hidden, and only a single cable appears to run to the monitor.&nbsp; Congratulations!&nbsp; You&#8217;ve just eliminated the mess of wires that we all just assumed was part of owning a desktop PC.</p></div><!-- [DocumentBodyEnd:323664f5-bc12-4f60-b6fb-759c62a39e3c] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/x69RePEx45M" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/24/moving-the-desktop-pc-forward-part-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/24/moving-the-desktop-pc-forward-part-1</feedburner:origLink></item>
		<item>
		<title>Ultrabook™ gets down to business</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/QQvIptxmn-k/ultrabook-gets-down-to-business</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/24/ultrabook-gets-down-to-business#comments</comments>
		<pubDate>Wed, 24 Apr 2013 13:01:14 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=39b9e02d682b6b9686a83781f386aa08</guid>
		<description><![CDATA[_Managing the Changing IT Landscape: Ultrabooks for Business&#160;If you&#8217;ve been reading my blogs, you know that finding the right tool for the job is an ongoing theme. And it deserves the attention ... in a consumerized IT world, there are simpl... <a href="http://communities.intel.com/community/openportit/blog/2013/04/24/ultrabook-gets-down-to-business">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:22eb1ccd-570a-42c5-a5b0-620bc7b40b29] --><div class="jive-rendered-content"><p><span style="font-size: 12pt;">_Managing the Changing IT Landscape: Ultrabooks for Business</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">If you&#8217;ve been reading my blogs, you know that <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/Ugpmc6" >finding the right tool for the job</a></span></span><span style="font-size: 10pt;"> is an ongoing theme. And it deserves the attention ... in a consumerized IT world, there are simply more choices for business computing users. And while users want to choose, they expect the business to provide and support the technology needed to get work done. It is IT&#8217;s role, in partnership with users, to find the right balance between security, form factor, and performance. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 10pt;">Today&#8217;s users want thinner, lighter, more responsive, touch-enabled PCs. Yet for the past year, Ultrabook&#8482; devices&#8212;a new category of ultra-mobile PCs&#8212;have not met many of the requirements for <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/YJDzzL" >business-class computing</a></span>, leaving IT with few options. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 10pt;"><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15806-232000/business+ultrabook+benefits.jpg"><img alt="business ultrabook benefits.jpg" class="jive-image" height="286" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15806-232000/418-286/business+ultrabook+benefits.jpg" width="418"/></a></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 10pt;"><strong>Finally, great design that&#8217;s ready to work </strong></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 10pt;">The Intel&reg; Core&#8482; vPro&#8482; processor-based Ultrabook device delivers on all counts. It provides embedded security that protects your data, devices, and access while keeping threats out. And it&#8217;s sleek and portable, at less than an inch thick, but with a hardened chassis and stronger hinges so it can withstand the rigors of business travel. It&#8217;s also ready when you are, with a quick tap to the touch screen to get started.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 10pt;"> </span>&nbsp;</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">In response to the requests of our own employees, Intel IT has begun the transition from traditional notebooks to Ultrabook devices. Listen to the <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/XR9QEk" >Intel IT Ultrabook podcast</a></span></span><span style="font-size: 10pt;"> to learn more, and check out the latest options in <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/11vaV5c" >Ultrabooks for business</a></span></span><span style="font-size: 10pt;">. </span></p><p><br /><span style="font-size: 10pt;">Chris </span><br /><span style="font-size: 10pt;">@chris_p_intel</span><br /><span style="font-size: 10pt;">#Consumerization #ultrabook #4biz #ultrabook4biz </span></p><p><span style="font-size: 10pt;">intel.com/itcenter</span></p></div><!-- [DocumentBodyEnd:22eb1ccd-570a-42c5-a5b0-620bc7b40b29] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/QQvIptxmn-k" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/24/ultrabook%e2%84%a2-gets-down-to-business/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/24/ultrabook-gets-down-to-business</feedburner:origLink></item>
		<item>
		<title>Inside IT: Evaluating McAfee Deep Defender</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/tOf_ptbEBYw/inside-it-evaluating-mcafee-deep-defender</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/19/inside-it-evaluating-mcafee-deep-defender#comments</comments>
		<pubDate>Sat, 20 Apr 2013 04:27:10 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=960ce1082731d835b2b66b6198bc937e</guid>
		<description><![CDATA[The evolution of threats to the security of the enterprise has driven innovation in how that enterprise defends itself. New tools need to be developed to meet today&#8217;s threat landscape. McAfee has introduced such a tool, Deep Defender. It&#8217;s ... <a href="http://communities.intel.com/community/openportit/blog/2013/04/19/inside-it-evaluating-mcafee-deep-defender">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:6b9822d5-301e-482e-b94f-6db7262877cc] --><div class="jive-rendered-content"><p>The evolution of threats to the security of the enterprise has driven innovation in how that enterprise defends itself. New tools need to be developed to meet today&#8217;s threat landscape. McAfee has introduced such a tool, Deep Defender. It&#8217;s designed to detect kernel-based attacks that other traditional software security solutions would miss. In this podcast we talk with Intel IT Security Specialist Greg Bassett and Project Manager Stephanie Mahvi as they discuss the pilot study the company conducted to evaluate <a class="jive-link-external-small" href="http://connectedsocialmedia.com/10283/inside-it-evaluating-deep-defender/" >McAfee Deep Defender </a>for the enterprise.</p></div><!-- [DocumentBodyEnd:6b9822d5-301e-482e-b94f-6db7262877cc] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/tOf_ptbEBYw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/19/inside-it-evaluating-mcafee-deep-defender/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/19/inside-it-evaluating-mcafee-deep-defender</feedburner:origLink></item>
		<item>
		<title>From ESBs to API Portals: an Evolutionary Journey Part 4</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/K2qdFMeue0k/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/3-lq8RQDgUA/#comments</comments>
		<pubDate>Thu, 18 Apr 2013 20:50:22 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1021</guid>
		<description><![CDATA[<p>The  continuing transformation of the IT industry around the externalization of  service components constitutes an exercise in abstraction.  The transformation assumes that any IT  application can be recursively decomposed into constituent services.  An application that has been re-architected  or engineered &#8230; <a href="http://blogs.intel.com/application-security/2013/04/18/esbs-apis-application-security/">Read&#160;more&#160;<span>&#62;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/18/esbs-apis-application-security/">From ESBs to API Portals: an Evolutionary Journey Part 4</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/3-lq8RQDgUA/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/18/esbs-apis-application-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>The  continuing transformation of the IT industry around the externalization of  service components constitutes an exercise in abstraction.  The transformation assumes that any IT  application can be recursively decomposed into constituent services.  An application that has been re-architected  or engineered this way is known as a <em>composite </em> application.</p>
<p>As with  any abstraction exercise, the devil is in the details.  When a particular capability is to be  replaced with a service, just as good is not sufficient to trigger change; it  needs to be much better to make the change justifiable from a business  perspective, anywhere from 3X to 10X to overcome the change hysteresis or the  incumbent alternative stays.</p>
<p>One  challenge is that in many cases there is no tradition in the organization of  measuring service components.  For  instance if a replacement service is said to be more energy efficient and it  comes with the metrics to prove it, these numbers are not useful if the contracting organization does not keep energy consumption statistics at the level of  granularity of the service offering: if the available historical data is at the  power distribution unit (PDU) level measuring consumption at the rack or even  row level, this information is of little use if the unit of delivery for a  service is a virtual machine (VM) and the provider furnishes energy data on a  per VM basis.</p>
<p>The  semantic gap between VM power and PDU power could be in principle bridged by  aggregating VM power into rack power.  However doing so would require significant research and would difficult  to do without industry consensus because the actual numbers would be dependent  on the measurement method.</p>
<p>One of the most  obvious metrics for a service is pricing.  For instance one could use the total cost of ownership (TCO) of a  storage appliance to derive a cost per byte over the lifetime of the  appliance.  This number can be compared  with the cost of a cloud storage service offering.  The cost of the service may be accrued on a  monthly basis, where the cost of the appliance comes in a big chunk of  petabytes over the 3 to 5-year lifetime of the appliance.  This suggests that there are more dimensions  in the process of making a decision between doing nothing or breaking up the  application into service components and start factoring out these components,  SOA style or externalizing the components through cloud service providers.  What are these dimensions?  Let’s explore a few.</p>
<h2>Performance and Quality  of Service</h2>
<p>Assuming that a prospective service alternative passes the  cost test the IT organization will look at performance.  It will be of little consolation if a service offering saves money if the quality of service (QoS) deteriorates to the point  that complains pile up.  The expectation  is that service offerings tend to be remote and hence result in higher latency  due to distance and lower bandwidth due to network limitations.  A cloud bursting solution may be implemented via a VPN link to remote resources offered by a service provider.  This link is a potential weakness, inducing a “tromboning” or barbell effect with two large resources connected through a  relatively thin tether, resulting in large latencies between entities connected  across the tether.</p>
<p>Performance deserves a careful consideration because  performance behaviors tend to be highly discontinuous.  For instance, if a service offering doubles storage latency, this may trigger transaction timeouts.  Because of the transaction retries, the  actual latencies experienced by the end users served by the IT organization may  not just double, but increase by an order of magnitude.   On the other hand, a global company  replacing a centralized database location with storage from a provider may  actually end up with <em>improved</em> QoS if  the provider caches and mirrors the data in the appropriate locations.</p>
<p>Another dimension of performance is scalability.  In the industry cloud computing is economically feasible because of specialization: the assumption is that one  entity able to fulfill a specific function on behalf of a community of service customers more efficiently than each customer separately through resource pooling and specialized expertise.  Therefore the service provider can deliver the function at a lower cost than the in-sourced alternative enough and still make a profit to stay in business.  The size of the pooled resources needs to be larger than the largest request expected from any of the customers; otherwise there will be cases where the provider will not be able to honor a request.</p>
<h2>Security</h2>
<p>Security is a first order concern on par with performance and cost.  It relates to preserving the privacy and integrity of the data and governance, risk and compliance (GRC) practices.  Security is often cited as a roadblock to cloud adoption in the industry. An approach to addressing this conundrum is to look at the problem as a continuum, not as a black or white issue and to look at capabilities available today.  Different application deployment models have different levels of security associated with them.  A classification of infrastructure deployment from the most to least secure could be as follows:</p>
<p>1)      Corporate assets deployed in corporate infrastructure</p>
<p>2)      Private cloud on corporate premises</p>
<p>3)      Provider hosted private clouds</p>
<p>4)      Public clouds</p>
<p>One solution to improve <a href="http://cloudsecurity.intel.com">cloud security</a> outcomes while minimizing cost is to define different types of data and institute a policy for the deployment of the data.  One example would be to have company secrets under #1, corporate e-mail stores under #2, CRM data under #3 and product brochures under #4.</p>
<h2>IT and Business Process Standardization</h2>
<p>This is a big one.  One  of the purposes of an ESB is to ensure there are commonly enterprise-wide procedures (“patterns” in SOA speak) for functions such as pub-sub and event notification.  For a single enterprise a single, company-wide proprietary ESB implementation, either cobbled up in-house or from a single vendor is a workable solution.  Extending this notion across multiple companies and providers is much harder. Arguably cloud computing is still an<br />
emerging discipline with the standards to enable these capabilities not yet in place.</p>
<p>Even the simpler problem of moving a workload from one hypervisor environment is currently a nontrivial undertaking.  The author had the privilege of serving as an architect for a proof of concept exercise sponsored by T-Systems.  The goal of the exercise was to demonstrate the ability of moving virtual machines across hypervisor environments using publicly available conversion tools.  This was a straight implementation of the <a href="http://www.opendatacenteralliance.org/docs/Virtual_Machine_(VM)_Interoperability_in_a_Hybrid_Cloud_Environment_Rev1.2.pdf">VM Interoperability Usage Model</a> as defined by the Open Data Center Alliance.  We used four of the most well-known hypervisor environments. We found roadblocks across<br />
most conversion paths.  Moving VMs to public cloud providers posed additional challenges because of the degree of para-virtualization or customization in public vendors’ hypervisor environments.</p>
<h2>Metaservices</h2>
<p>In addition to the intrinsic functional capabilities implemented by servicelets, composite applications need a number of ancillary capabilities: service customers need to find them.  A service registry would allow service provider to publish their offerings and users to discover, assess and bind the<br />
service offerings to their applications.</p>
<p>Another metaservice is data encryption and transformation: data needs to be striped, replicated, compressed, encrypted and replicated to meet target quality criteria.  On the business side reliable, non-repudiable mechanisms for billing and cost settlement that work across composite applications.  For some customers the ability to do audit trails or even cloud forensics is a must have feature.  Unfortunately the state of the art leaves much to be desired, as panelists declared at a recent <a href="http://www.networkworld.com/news/2013/030613-cloud-forensics-267447.html">RSA Conference</a>.</p>
<h2>Epilog</h2>
<p>In the next installment we’ll take a look at how Intel® Expressway <a href="http://cloudsecurity.intel.com/api-management">API Manager</a> and Intel® Expressway <a href="http://cloudsecurity.intel.com/service-gateway">Service Gateway</a> offer brokerage, discovery and security services as a present day embodiment of an ESB.  In so doing <a href="http://cloudsecurity.intel.com/api-management">API management</a> addresses some of the challenges for the implementation and deployment of composite applications mentioned above, not just for a single enterprise, but for whole ecosystems comprising both developers and end user communities.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/18/esbs-apis-application-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/18/esbs-apis-application-security/">From ESBs to API Portals: an Evolutionary Journey Part 4</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/3-lq8RQDgUA" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/K2qdFMeue0k" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/18/from-esbs-to-api-portals-an-evolutionary-journey-part-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/3-lq8RQDgUA/</feedburner:origLink></item>
		<item>
		<title>Intel vPro Technology: Built to fly business class</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/f_Q6i_JBYEw/intel-vpro-technology-built-to-fly-business-class</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/17/intel-vpro-technology-built-to-fly-business-class#comments</comments>
		<pubDate>Wed, 17 Apr 2013 12:59:00 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=9312560642aa94a890b9ec4881d47df8</guid>
		<description><![CDATA[Managing the Changing IT Landscape: Business-Class Technology &#160;I recently blogged about how I define business-class technology and what separates it from the pack. It&#8217;s no longer a luxury, but a necessity (unlike that upgrade from coach &#38;hel... <a href="http://communities.intel.com/community/openportit/blog/2013/04/17/intel-vpro-technology-built-to-fly-business-class">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:571c5ce8-7741-4aef-b381-b425bcd5b659] --><div class="jive-rendered-content"><p><span style="font-size: 12pt;">Managing the Changing IT Landscape: Business-Class Technology</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">I recently blogged about how I define <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/YJDzzL" >business-class technology</a></span> </span><span style="font-size: 12pt;">and what separates it from the pack. It&#8217;s no longer a luxury, but a necessity (unlike that upgrade from coach &hellip; definitely a &#8220;nice to have&rdquo;).<span style="color: #8064a2;"> </span></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 12pt;">IT professionals need to protect sensitive data while giving users the mobile tools they need to innovate and collaborate. <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/ZlYKHE" >Intel vPro technology</a></span> </span><span style="font-size: 12pt;">has the chops as business-class technology that delivers this balance: It&#8217;s designed to strengthen security and increase productivity across your business.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><strong style="font-size: 12pt;">An inside look: How Intel saves time, money</strong></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p><span style="font-size: 12pt;"><a class="jive-link-external-small" href="http://www.intel.com/IT" >Intel IT</a> has been using Intel vPro-based processors as the Intel corporate standard, and they recently revealed <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/ZwxKRP" >four specific use cases</a></span>. </span><span style="font-size: 12pt;"> The bottom line? With powerful remote management capabilities, they&#8217;ve cut costs and reduced downtime, resulting in greater productivity across the business&#8212;even though IT is present at only about one-third of Intel&#8217;s physical sites. </span></p><p><span style="font-size: 12pt;"><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15792-231959/vpro+use+cases+infographic.jpg"><img alt="vpro use cases infographic.jpg" class="jive-image" height="403" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15792-231959/403-403/vpro+use+cases+infographic.jpg" width="403"/></a></span></p><p><span style="font-size: 12pt;">Consider this:</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><ul><li><span style="font-family: arial,helvetica,sans-serif; font-size: 12pt;">We&#8217;ve reduced the time to resolve password resets by 80 percent.</span></li><li><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: 12pt;">On average, we&#8217;re saving remote employees more than $100 (U.S. dollars) on shipping and more than 10 hours of employee downtime with Keyboard-Video-Mouse (KVM) Remote Control and ISO mounts.</span> </span></li></ul><p><span style="font-family: arial,helvetica,sans-serif;">&nbsp; </span></p><p><span style="font-size: 12pt;">Are you using Intel vPro technology in your business? If so, what benefits have you realized from this technology? </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"> &nbsp;</p><p>Chris <br />@chris_p_intel<br />#Consumerization #BusinessClass</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p></div><!-- [DocumentBodyEnd:571c5ce8-7741-4aef-b381-b425bcd5b659] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/f_Q6i_JBYEw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/17/intel-vpro-technology-built-to-fly-business-class/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/17/intel-vpro-technology-built-to-fly-business-class</feedburner:origLink></item>
		<item>
		<title>Betwixt and Between – Service Gateway for Enterprise Mobile Applications</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/xGvzECJ7aZE/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-64fWOC8-Ds/#comments</comments>
		<pubDate>Tue, 16 Apr 2013 14:46:47 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=1033</guid>
		<description><![CDATA[<p>Over the next several posts, I will explore some of the core patterns for Service Gateways that provide access to Enterprise Mobile Applications that need to leverage enterprise apps and data. Before I go there &#8211; a word about risk. &#8230; <a href="http://blogs.intel.com/application-security/2013/04/16/betwixt-and-between-service-gateway-for-enterprise-mobile-applications/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/16/betwixt-and-between-service-gateway-for-enterprise-mobile-applications/">Betwixt and Between &#8211; Service Gateway for Enterprise Mobile Applications</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-64fWOC8-Ds/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/16/betwixt-and-between-service-gateway-for-enterprise-mobile-applications/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Over the next several posts, I will explore some of the core patterns for <a href="http://cloudsecurity.intel.com/service-gateway" >Service Gateways</a> that provide access to <a href="http://cloudsecurity.intel.com/enterprise-mobile-applications">Enterprise Mobile Applications</a> that need to leverage enterprise apps and data. Before I go there &#8211; a word about risk.<a href="https://cloudsecurity.intel.com/white-papers/mobile-middleware-buyers-guide" > Mobile security is a hot topic</a>. Is Android less secure than iOS? What about rooted devices? How should enterprise deal with BYOD? How do mobile dev teams write secure code for mobile platforms? And the list goes on and on, there are plenty of important questions to ask.</p>
<p>Amidst all these gnarly big and small questions on technical security for enterprise mobile applications. its vital to remain focused on risk. And where is the risk for enterprise mobile applications? On the apps, identity, and data housed on the numerous mobile devices? Sure. There&#8217;s risk on individual mobile apps and devices, but the lion&#8217;s share of data, functionality and identity is on the server side, and that&#8217;s where the lion&#8217;s share of the risk is too.</p>
<p>Boundary crossings are a key focus area for security architects. The Enterprise Service Gateway defines the boundary between &#8220;external&#8221; systems and &#8220;internal&#8221; systems (note &#8211; I am not sold that this is a valid distinction in many instances but its commonly used and holds up for the purposes of this pattern). The transition between external and internal confronts the security architect with a number of design choices. We can divide the message exchanges into two sets</p>
<p>1. Mobile device -&gt; Gateway: asynchronous Web service calls via REST</p>
<p>2. Service Gateway -&gt; Enterprise backend app servers: synchronous and asynchronous calls via REST, JMS, SOAP, and more</p>
<p>The inbound calls to the Service Gateway usually follow a simple message exchange pattern (albeit its asynchronous which is something new to many enterprises but we&#8217;ll save that for another day), whereas the Gateway -&gt; Enterprise message exchange patterns can run the gamut. In effect, the external services simplify the experience for the user and the internal services- well they just go where the data is.</p>
<p>The implications here shed light on the core utility of the gateway. The gateway is the location to implement three sets of security policies.</p>
<p>1. External security policy: for the Mobile device -&gt; Service Gateway message exchanges</p>
<p>2. Internal security policy: for the Service Gateway -&gt; Enterprise backend message exchanges</p>
<p>3. External &lt;-&gt; Internal mapper security policy: to facilitate the right security and identity services for each boundary transition</p>
<p>Security is about reducing vulnerabilities (access control services) and coping with threats (hardening, defensive services).  Service Gateways play a key role in each.</p>
<p>In the case of access control and identity services, the identity protocols and tokens that are used by the mobile device are usually validated and terminated at the gateway. The gateway then maps the relevant user identity, such as username and attributes, and instantiates a second protocol to communicate with the enterprise backend.</p>
<p>In the case of defensive services, enterprise applications are not hardened for external access, after all that&#8217;s why there is a DMZ. Inbound calls, messages, and data must be inspected for malicious code targeting the enterprise.  In effect the Service Gateway is what enables the internal services to be consumed externally.</p>
<p>To make sure mobile security is effective, from a big picture, strategic perspective its important to keep in mind the vital role of the gateway in managing risk on both the mobile device and the enterprise backend. To execute tactically its important to divide the Gateway&#8217;s role in to how it works for each separate policy zone, and how it maps between the zones.  So many projects, start out assuming that mobile is just another front end to hook up to existing middle tiers &#8211; it isn&#8217;t. To get an idea on some key differences, I highly recommend this <a href="https://cloudsecurity.intel.com/white-papers/mobile-middleware-buyers-guide" >Mobile Middleware White Paper</a> as a solid read for more on the subject.  In the next post we&#8217;ll look at some policy options for each zone.</p>
<p>&nbsp;
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/16/betwixt-and-between-service-gateway-for-enterprise-mobile-applications/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/16/betwixt-and-between-service-gateway-for-enterprise-mobile-applications/">Betwixt and Between &#8211; Service Gateway for Enterprise Mobile Applications</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/-64fWOC8-Ds" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/xGvzECJ7aZE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/16/betwixt-and-between-%e2%80%93-service-gateway-for-enterprise-mobile-applications/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/-64fWOC8-Ds/</feedburner:origLink></item>
		<item>
		<title>Join me at the Intel IT Center Experts Tour in Folsom CA on June 13th 2013</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/XBTbbczbM08/join-me-at-the-intel-it-center-experts-tour-in-folsom-ca-on-june-13th-2013</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/12/join-me-at-the-intel-it-center-experts-tour-in-folsom-ca-on-june-13th-2013#comments</comments>
		<pubDate>Fri, 12 Apr 2013 18:40:32 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=9afe6d3ef39d5e1c24b8159d490a0432</guid>
		<description><![CDATA[Fellow security professionals, come join me at the Intel IT Center Experts tour in Folsom CA, June 13th 2013.&#160; I will be one of the many speakers discussing challenges and experiences gained by Intel's IT organization.&#160; This is an opportunity... <a href="http://communities.intel.com/community/openportit/blog/2013/04/12/join-me-at-the-intel-it-center-experts-tour-in-folsom-ca-on-june-13th-2013">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:a6fda88c-c1b7-452a-a1d9-3d267d91fb18] --><div class="jive-rendered-content"><p><span style="color: #000000; font-size: 12pt;">Fellow security professionals, come join me at the Intel IT Center Experts tour in Folsom CA, June 13th 2013.&nbsp; I will be one of the many speakers discussing challenges and experiences gained by Intel's IT organization.&nbsp; This is an opportunity to ask questions and share insights.&nbsp; </span></p><p><a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15789-231931/Intel+IT+Center+Experts+Tour+2013+Invite.jpg"><img alt="Intel IT Center Experts Tour 2013 Invite.jpg" class="jive-image-thumbnail jive-image" height="464" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15789-231931/620-464/Intel+IT+Center+Experts+Tour+2013+Invite.jpg" width="620"/></a></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><strong style="font-size: 12pt;">Complete <a class="jive-link-external-small" href="http://intelamg.regsvc.com/t4&amp;lc=intel" >Tour Listing Link </a></strong></p><p><strong style="font-size: 12pt;">Direct Registration Link for the <a class="jive-link-external-small" href="https://secure1.regsvc.com/registration/regPage.aspx?visit=ed286fe4-e994-4d0e-a945-d8550d211b79&amp;db=29d3ca22-240c-4bff-80f3-4619ccfc83b0&amp;servertype=5&amp;Loc=en-US&amp;eventID=15&amp;pageID=622" >Folsom 06/13/2013 session</a></strong></p><p><span style="color: #585956; font-family: 'Verdana','sans-serif'; font-size: 8.5pt; mso-bidi-font-family: 'Times New Roman'; mso-fareast-font-family: Calibri; mso-fareast-theme-font: minor-latin; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"><a class="jive-link-external-small" href="https://secure1.regsvc.com/registration/index.aspx?TYPE=t&amp;ID=4&amp;LC=&amp;LC=intel&amp;PIN=&amp;REF=&amp;dbGUID=29D3CA22-240C-4BFF-80F3-4619CCFC83B0&amp;" >https://secure1.regsvc.com/registration/index.aspx?TYPE=t&amp;ID=4&amp;LC=&amp;LC=intel&amp;PIN=&amp;REF=&amp;dbGUID=29D3CA22-240C-4BFF-80F3-4619CCFC83B0&amp;</a></span> </p><p><span style="color: #000000; font-size: 12pt;"><strong>Folsom Event Details:</strong></span></p><p style="padding-left: 30px;"><span style="color: #000000; font-family: 'Verdana','sans-serif'; font-size: 10pt;">June 13th 2013 8:00 AM - 2:00 PM<br />Intel Corporation<br />1900 Prairie City Road Building FM-7<br />Folsom, CA 95630</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;"><strong style="font-size: 12pt;">Folsom Tour Event Topics:</strong></span></p><p><span style="color: #000000;">&nbsp; <strong style="font-size: 10pt; font-family: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman';">The Future of Enterprise IT &#8211; Enabling New Uses, Trends and Technologies</strong><span style="font-family: 'Verdana','sans-serif'; font-size: 10pt; mso-fareast-font-family: 'Times New Roman';"><br />&nbsp;&nbsp;&nbsp;&nbsp; <em>Presented by one of Intel IT&#8217;s Client Technology Evangelists</em><br />&nbsp;&nbsp;&nbsp;&nbsp; IT organizations must define and drive the right balance between their<br />&nbsp;&nbsp;&nbsp;&nbsp; employees&#8217; expectations and their companies' business objectives, and then<br />&nbsp;&nbsp;&nbsp;&nbsp; look for opportunities to implement solutions that address tomorrow's<br />&nbsp;&nbsp;&nbsp;&nbsp; needs as well as today's challenges. What are the new disruptive<br />&nbsp;&nbsp;&nbsp;&nbsp; technologies or mobility trends that IT needs to prepare for? How does<br />&nbsp;&nbsp;&nbsp;&nbsp; security need to change to meet the needs of the new IT world? How are<br />&nbsp;&nbsp;&nbsp;&nbsp; generational culture changes impacting the IT organization's response to<br />&nbsp;&nbsp;&nbsp;&nbsp; IT consumerization? And finally what are the skill sets your IT shop<br />&nbsp;&nbsp;&nbsp;&nbsp; should be focusing on moving forward? Models like BYOD and COPE are addressed<br />&nbsp;&nbsp;&nbsp;&nbsp; as well as infrastructure impacts. </span></span></p><p><br /><span style="color: #000000;">&nbsp; <strong style="font-size: 10pt; font-family: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman';">Intel IT Cloud Journey and Overview</strong><span style="font-family: 'Verdana','sans-serif'; font-size: 10pt; mso-fareast-font-family: 'Times New Roman';"><br />&nbsp;&nbsp;&nbsp;&nbsp; <em>Presented by one of Intel IT&#8217;s Cloud Enterprise Architects</em><br />&nbsp;&nbsp;&nbsp;&nbsp; Cloud technologies are moving at a rapid pace. Enterprises are wrestling<br />&nbsp;&nbsp;&nbsp;&nbsp; with private vs. public vs. hybrid cloud solutions. The need for high<br />&nbsp;&nbsp;&nbsp;&nbsp; levels of customizability, flexibility, and agility will drive many<br />&nbsp;&nbsp;&nbsp;&nbsp; enterprises to the public cloud. The foundation for this vision will be<br />&nbsp;&nbsp;&nbsp;&nbsp; defined by an open approach that delivers best of breed technologies +<br />&nbsp;&nbsp;&nbsp;&nbsp; flexibility + choice from data center to client. This session will cover<br />&nbsp;&nbsp;&nbsp;&nbsp; the cutting edge cloud progress that Intel has made internally within our<br />&nbsp;&nbsp;&nbsp;&nbsp; own IT organization as well as what to expect in 2013. </span></span></p><p><br /><span style="color: #000000;">&nbsp; <strong style="font-size: 10pt; font-family: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman';">Cybersecurity Briefing: Trends, Solutions and Opportunities</strong><span style="font-family: 'Verdana','sans-serif'; font-size: 10pt; mso-fareast-font-family: 'Times New Roman';"><br />&nbsp;&nbsp;&nbsp;&nbsp; <em>Presented by one of Intel&#8217;s Enterprise Technologists</em><br />&nbsp;&nbsp;&nbsp;&nbsp; Inadequate security remains the number-one concern about cloud computing.<br />&nbsp;&nbsp;&nbsp;&nbsp; Find out what Intel is doing now to manage information security and risk,<br />&nbsp;&nbsp;&nbsp;&nbsp; learn the rationale behind Intel&#8217;s 2011 acquisition of McAfee Inc., and<br />&nbsp;&nbsp;&nbsp;&nbsp; discover the new opportunities this collaboration brings your company. </span></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;"><strong style="mso-bidi-language: AR-SA; mso-fareast-language: EN-US; mso-bidi-font-family: 'Times New Roman'; font-size: 10pt; mso-ansi-language: EN-US; font-family: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman';">&nbsp; Deploying Microsoft Windows* 8 in the Enterprise</strong><span style="font-family: 'Verdana','sans-serif'; font-size: 10pt; mso-bidi-font-family: 'Times New Roman'; mso-fareast-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"><br /><em>&nbsp;&nbsp;&nbsp;&nbsp; Presented by one of Intel IT&#8217;s Business Client Product Line Managers</em></span></span></p></div><!-- [DocumentBodyEnd:a6fda88c-c1b7-452a-a1d9-3d267d91fb18] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/XBTbbczbM08" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/12/join-me-at-the-intel-it-center-experts-tour-in-folsom-ca-on-june-13th-2013/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/12/join-me-at-the-intel-it-center-experts-tour-in-folsom-ca-on-june-13th-2013</feedburner:origLink></item>
		<item>
		<title>Culture’s impact on Innovation</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/xpGQpMwbPuc/cultures-impact-on-innovation</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/11/cultures-impact-on-innovation#comments</comments>
		<pubDate>Thu, 11 Apr 2013 22:32:24 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=883d17bbff44b7b45756c401bfc05069</guid>
		<description><![CDATA[In my initial overview, I stated that I felt that there were 3 items necessary for innovation.&#160; The first, the resources, I covered in my first entry. This one is geared towards the second which is the Culture to support innovation.&#160;THE CULTU... <a href="http://communities.intel.com/community/openportit/blog/2013/04/11/cultures-impact-on-innovation">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:92b696a1-ad42-4e08-bc1a-0ed060756dd2] --><div class="jive-rendered-content"><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">In my initial overview, I stated that I felt that there were 3 items necessary for innovation.&nbsp; The first, the resources, I covered in my first entry. This one is geared towards the second which is the Culture to support innovation.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">THE CULTURE</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><div><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">It is easy for many organizations to say that they support innovation.&nbsp; They discuss how they are going about it and how they are providing some resources towards the effort.&nbsp; But when you pull back the surface, you find that they are not really supporting it.&nbsp; Their reward systems that do not support innovation just stifle it.&nbsp; They have review systems designed to ensure only completed projects and programs are recognized and they only reward success.&nbsp; Lastly, they only look at today's results and not towards the future.&nbsp; The talk says "go innovate," but the walk clearly supports only taking risks that will ensure success.</span></div><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">By only supporting the incremental improvements within the organization, we take no risks.&nbsp; This will force teams to think about small next steps and will in turn hamper our organizations ability to drive innovative thinking.&nbsp; This keeps us&nbsp; away from the art of the possible.&nbsp; Here at Intel, we use possibility thinking in order to keep the innovation going.&nbsp; Possibility thinking is starting with a clear definition of where you want to be and then spending time trying to figure out what has to happen to make it true. Not focusing on the next single improvement, but rather the whole picture first.&nbsp; This frees us from the constraints of the current system and processes and allows for a more open field of possible routes to get to a solution.&nbsp; I like to think of it as the difference between a great sprint hurdler and a fair one...A great one focuses on the finish line and the hurdles are where they know them to be; a fair one only focuses on the next hurdle. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">This helps set the mindset, but does not always lead to success.&nbsp; In order to drive towards innovative thinking, failure has to be an option.&nbsp; Understanding that the lessons that you learn from failure leads to success is the key to any learning organization.&nbsp; When you are a child, you do lots of things you should not, but through learning the hard way, you find the paths that work.&nbsp; Within companies, we need to do the same.&nbsp; If every project&nbsp; was exactly the same, every issue was exactly the same, all the same people were involved and no human error possible, then maybe we could follow exactly the same method to get to the same result.&nbsp; But in my experience, that is seldom the true.&nbsp; Budgets are different, new people come onto the projects, new businesses are being driven, new capabilities are desired, and these force us into coming up with new capabilities and solutions.&nbsp; Also, in my experience, any successful project or innovation is made up of lots of failure to achieve the results.&nbsp; Support of these failures is critical to their ultimate success.&nbsp; Innovation happens more frequently.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Support of failure does not mean that you need to build out a new reward system that provides monetary compensation for each failure&nbsp; Congratulations Bob that is your third failure this week, here is your bonus!"&nbsp; It means that you recognize it, don't spend time looking for who is at fault and penalize everyone, but focus on what was learned from the failure and how to overcome it.&nbsp; How can you avoid it in the future and strive for better results?&nbsp; This is one reason that small companies or newer companies can innovate faster in many cases.&nbsp; They do not have the time to search for all the guilty parties and punish them in their reviews, they have to continuously evolve and deliver quickly, which forces them to adapt and learn from these mistakes.&nbsp; They are also very focused on the goal and not always married to the path to deliver.&nbsp; This frees them from the constraints and allows for more dynamic approaches.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">The third, and hardest part of innovation culture is to simply stop things.&nbsp; When innovations are not panning out, delivering the results expected, or driving to the capability you thought, you need to stop the work and simply move on.&nbsp; This is much harder for people and organizations to do as any innovation begins with a passionate individual or group that truly invests in the direction.&nbsp; Stopping this is a bit like stopping an aircraft carrier in&nbsp; that it takes time and much directed energy to stop.&nbsp; While very difficult, it is a critical step in managing those critical resources you have directed towards innovation. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Here in Intel IT, we build stage gates to manage our ability to stop things.&nbsp; We look at innovation in four steps:</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri; mso-fareast-font-family: Calibri;"><span class="pasted-list-info">1.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Basic Research - Where we are scanning technologies, futurists, research companies and some universities for leading-edge thought on what we might want to work on next. (10% of our time in IT Labs, with no expectation of yield)</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri; mso-fareast-font-family: Calibri;"><span class="pasted-list-info">2.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Proof of technology - Where we bring in capability and test our hypothesis on whether this will work to help us solve problems (30% of our time, with an expectation of about 50% yield)</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri; mso-fareast-font-family: Calibri;"><span class="pasted-list-info">3.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Proof of concepts - This is where we know what we would like to solve based on the capabilities we discovered in the proof of technologies, and we assign goals to the business case and test in live situations (30% of our time, with an expectation of about 60-70% yield)</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri; mso-fareast-font-family: Calibri;"><span class="pasted-list-info">4.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Pilot/transfer - This is where we work with our services delivery groups </span><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">to do the final proof and production implementation of the&nbsp; capability (30% of our time, with about a 90% yield)</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">Our process is completely supported by our reward system and our culture to ensure that we focus on our big business problems and deliver solutions to help move us faster.&nbsp; We also are lucky that here at Intel, innovation is in our DNA.&nbsp; We keep in mind some wise words of one of our original founders, Robert Noyce.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="mso-bidi-font-family: Calibri; font-size: 11pt; font-family: 'Calibri','sans-serif';"><em>Don't be encumbered by the past, go off and do something wonderful! - Robert Noyce </em></span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: 'Calibri','sans-serif'; font-size: 11pt; mso-bidi-font-family: Calibri;">In my next entry, I will discuss the problems and how you need to think in order to guide any innovation process.</span></p></div><!-- [DocumentBodyEnd:92b696a1-ad42-4e08-bc1a-0ed060756dd2] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/xpGQpMwbPuc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/11/cultures-impact-on-innovation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/11/cultures-impact-on-innovation</feedburner:origLink></item>
		<item>
		<title>Information Security – it’s not only about the technical controls!</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/a43gD_sCMi8/information-security-it-s-not-only-about-the-technical-controls</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/11/information-security-it-s-not-only-about-the-technical-controls#comments</comments>
		<pubDate>Thu, 11 Apr 2013 20:49:41 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=1b56a0295d5d42b66107330261b74bfd</guid>
		<description><![CDATA[Security means many different things in different contexts. With Information Security, it should be about protection of an asset from a known threat. But many times there are biases to security solutions based on controls that are predetermined. The mo... <a href="http://communities.intel.com/community/openportit/blog/2013/04/11/information-security-it-s-not-only-about-the-technical-controls">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:3b397f26-2f22-4f4a-b826-991b8869fb2e] --><div class="jive-rendered-content"><p><span style="font-size: 10pt;">Security means many different things in different contexts. With Information Security, it should be about protection of an asset from a known threat. But many times there are biases to security solutions based on controls that are predetermined. The most important questions that should be asked before the how part is defined for a security solution are; </span></p><p><span style="font-size: 10pt;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></p><ol><li><span style="font-size: 10pt;">Why is there a need to establish security? It&#8217;s an important premise that you determine the value of information to your organization and to your adversaries.</span></li><li><span style="font-size: 10pt;">Secondly, who are you protecting this information from? If one is to protect something, one has to identify what the threats are, so as to take appropriate steps to mitigate them.</span></li><li><span style="font-size: 10pt;">Thirdly, protection or prevention is one aspect of security controls. Considere detective and corrective mitigating controls addition to preventative mechanisms that could fail. </span></li></ol><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">Because of biases in specialty areas, there could be a tendency to emphasize specific technical controls in defining a security solution. This leaves a great deal of ambiguity and more fuel for fear, uncertainty, and doubt that plagues the field of protecting computer information systems. And as Matthew Rosenquist described in one of his blog posts last year when asked for one word to describe the biggest challenge in information security these days, he used the word <a class="jive-link-blog-small" data-containerId="1002" data-containerType="37" data-objectId="15117" data-objectType="38" href="http://communities.intel.com/community/openportit/blog/2012/03/26/one-word-to-describe-the-biggest-challenge-of-information-security">ambiguity</a>. While many security researchers are trying to find the latest security flaw, other security professionals are trying to determine how the next security tools provide better technical protection capabilities. But it&#8217;s important to realize that information security is not only about the technical solution, it should be a business decision first.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">Information Security is not only about technical threats and so technical security controls should not be the first consideration for protection. Technology is often among several other countermeasures used to implement a security solution after defining what it is that needs protecting and from whom it needs protection. This is where administrative controls should be considered first so that the definition of what needs to protect can be defined through procedural controls. Some industries have policies, standards and guidelines that must be followed based on the type (classification) of information, but risk should be evaluated based on threats in context of the environment for which the information made available through processes, transferred, stored, or destroyed. A defense-in-depth strategy should be considered during the earliest stages of the development lifecycle&nbsp; but oftentimes there are changes to the environment that are made well after the deployment of a system or software solution that can introduce risk from new threats or greater exposure to existing ones. Before administrative controls are defined, a risk assessment should be completed to analyze the threats for which any system is vulnerable to. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">The real value of a risk assessment is that some systems may process information that is not under industry regulations for protection but still have value to an organization. In many cases an organization will focus on risk from audit failures and apply most of the security dollars to mitigate risks defined by audit report because information classification levels require regulatory protection such as Sarbanes-Oxley Act (SOX),&nbsp; PCI Data Security Standard (DSS), or Health Insurance Portability and Accounting Act (HIPAA) just to name a few. But information of value does not only fall under classifications that have industry standards for protection levels. The risk assessment is a way to have dialog amongst the team and is helpful to communicate with management across the board for all information protection requirements becuase ultimately it is a business decision to implement security controls. Additionally,</span><span style="font-size: 10pt;"> security controls can be protective but detective and corrective security controls should always be a consideration for a <a class="jive-link-external-small" href="http://en.wikipedia.org/wiki/Defense_in_depth_(computing)" >Defense-In-Depth</a> security strategy. </span><span style="font-size: 10pt;">One strategy that is taking a more reasonable approach to increasing the level of information assurance is the focus on the threat rather than the vulnerability through the use of a <a class="jive-link-blog-small" data-containerId="1002" data-containerType="37" data-objectId="12982" data-objectType="38" href="http://communities.intel.com/community/openportit/blog/2010/01/05/whitepaper-prioritizing-information-security-risks-with-threat-agent-risk-assessment">Threat Agent Risk Assessment</a> methodology developed by Intel. This approach places emphasis on what is reasonably possible from a threat perspective in order to address the most likely events. </span></p></div><!-- [DocumentBodyEnd:3b397f26-2f22-4f4a-b826-991b8869fb2e] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/a43gD_sCMi8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/11/information-security-%e2%80%93-it%e2%80%99s-not-only-about-the-technical-controls/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/11/information-security-it-s-not-only-about-the-technical-controls</feedburner:origLink></item>
		<item>
		<title>From Collecting Coffee Beans to Advising the Government</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/qVZrEybLTQg/</link>
		<comments>http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/#comments</comments>
		<pubDate>Thu, 11 Apr 2013 14:38:31 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/jobs/?p=1938</guid>
		<description><![CDATA[<p>Note from the editor: Every Intel employee has a story behind their career path and how they got to where they are. Today we bring you Carlos&#8217;s story which is not only about his Intel career, but how he went &#8230; <a href="http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/">From Collecting Coffee Beans to Advising the Government</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p> <a href="http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p><em>Note from the editor: Every Intel employee has a story behind their career path and how they got to where they are. Today we bring you Carlos&#8217;s story which is not only about his Intel career, but how he went from collecting coffee beans in Costa Rica to advising the Costa Rican government.  </em></p>
<p><em></em>It is noon on Friday and we just finished one of four sessions to train seven people from Ministry of Economy, Trade and Industry from the Costa Rican Government, aka MEIC. I feel a sense of pride and happiness, because this Intel volunteer activity (just one part of a larger project that a team has been working on for over a year) will not only benefit a community, it will benefit a whole country, my country.</p>
<p>The training included basic tools and knowledge in Project Management. By holding this training with this government team, they’ll be able to use what they learned to improve Business Process Management as a strategy, allowing my country to reduce its bureaucracy, be more competitive worldwide and make it more attractive for foreign investment.</p>
<p>But how did I get to this point of influence? That is a story that starts back in my hometown, Naranjo in the province of Alajuela, when I was a teenager.</p>
<p>When I was 12 years old, I was in my third year of high school and during a class break I asked myself,”What do I want to do with my life from this date to the future?” I set a few goals for myself at that point, the four most relevant for my professional development were: to get a technical degree as Electrician, the second to get a bachelor degree on electronics, the third one to work on a company that would allow me to grow professionally and the last one to live in another country with different culture and different language with my family, working there and being successful on that experience. I said, “If I can complete all of them (four professional and four personal goals) by the time I’m 60 years old, I’d consider myself a successful person.”</p>
<p><span id="more-1938"></span></p>
<p>The first step: register in a technical high school to get the title of Electricity Technician. To do that, I had to leave the comfort zone of living under my parents´ protection. I had to move and live in another city.</p>
<p>The next two steps came together: working and save money to pay for part of the tuition fees to study Electronics Engineering at Technical Institute from Costa Rica (ITCR). This, in my opinion, is the best public university for the career in engineering I wanted to pursue and I was right&#8211;it opened many doors for me.</p>
<p>As an engineer, I was able to achieve another goal: to fly on an airplane and visitdifferent countries. As a child, this idea seemed impossible because I came from a poor family. My mother worked as a seamstress at home to help earning extra money to raise three boys, my two brothers and me. My father worked at a local gas station but his earnings were not enough for our family. That is why my brothers and I decided to work at a coffee plantation during our vacations around the sunny seasons, collecting ripe coffee beans to earn money to pay for our books, notebooks, uniforms and all the materials we’d need and use during the school year. All of that taught us the value of honest work, saving money and defining priorities for life.</p>
<p><a href="http://blogs.intel.com/jobs/files/2013/04/100_0221.jpg"><img class="alignleft size-medium wp-image-1939" src="http://blogs.intel.com/jobs/files/2013/04/100_0221-300x224.jpg" alt="" width="300" height="224" /></a>I achieved my last goal when I started working at Intel in 2004. More than just visiting, I wanted to live in another country, immerse myself in a different culture with a foreign language and to do this with my family and while being successful during that experience. This goal was accomplished in two steps. The first one allowed my family and me to live in Santa Clara, California for little longer than than 6 months. And what an amazing experience it was! My children went to public schools there and learned the basics and fundamentals of the English language. However this was just preparation for what I considered was the true achievement of my goal. Three months after returning from California, my manager asked me to move to Israel for a year with my family.</p>
<p>I still remember my kids’ faces when we arrived at the airport in Israel. Everything everywhere was written in Hebrew and we did not know even know how to say “hello” in Hebrew! If that was hard, just imagine the experience going to the supermarket and trying to buy groceries!</p>
<p>However with time, we learned. We were able to visit many places. We learned bits of Hebrew and were able to make basic requests at stores, pharmacies, etc. We even crossed the border during our time in Israel and went to Jordan to visit Petra, one of the new Seven Wonders of the World. My kids attended the unique English school available in Israel, but to do that I had to drive 160 Km a day to go to Intel´s site in <a href="http://www.intel.com/jobs/israel/sites/haifa.htm">Haifa</a> from our house located close to Tel Aviv in a placed called Kfar Shmariahu. The technical knowledge I picked up during my time in Israel made me grow to a point where I could participate in several Intel conferences, allowing me to visit other continents and countries and earning significant awards at those conferences as well.</p>
<p>When we returned back from those assignments, I was just 33 years old and I had accomplished all my major goals. Wow. So there I was leaving my comfort zone, I sat to rethink my life, again.</p>
<p>That’s when, using the scholarship that Intel gave me, I was able pursue a master’s degree in Project Management from a private university. After getting my master’s degree, I joined the team in charge of understanding how to implement Business Process Management (BPM) in my department at the time, Quality and Reliability. Soon after, I took the leadership of that team and led my own managers and department to get BPM certification following a Project Management structure. Last year I moved to Technical Training Department, where I made significant changes in the courses we offer technician’s at Intel’s Costa Rica factory to empower them to increase their knowledge in different technical areas. In tandem, I started working as a professor a few years ago, teaching Project Management at the same university I got my Master’s degree.</p>
<p>Using the set of skills I developed from Project Management, Business Process Management, teaching experience and my desire to grow, I joined the volunteer team working with MEIC. Now I lead one of the sub teams, the one that teaches how by using PM and BPM, we can make a better country. That’s how I’ve gotten to where I am today—only time will tell what growth and opportunities the future will bring.</p>
<p>The post <a href="http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/">From Collecting Coffee Beans to Advising the Government</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/qVZrEybLTQg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogs.intel.com/jobs/2013/04/11/from-collecting-coffee-beans-to-advising-the-government/</feedburner:origLink></item>
		<item>
		<title>Ten things to know about business-class technology</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/t4k_4hzvu7w/ten-things-to-know-about-business-class-technology</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/10/ten-things-to-know-about-business-class-technology#comments</comments>
		<pubDate>Wed, 10 Apr 2013 13:00:36 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=3ccedf1b3035cbb98d2394bc3fa05993</guid>
		<description><![CDATA[Managing the Changing IT Landscape: Business-Class Technology&#160;In a recent blog post, I proposed the idea that business-class technology is not a luxury. When it comes to protecting sensitive company information and IP, as well as customer data, it... <a href="http://communities.intel.com/community/openportit/blog/2013/04/10/ten-things-to-know-about-business-class-technology">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:6046c010-2160-4659-b5cb-7ac30c1c2e55] --><div class="jive-rendered-content"><p><span style="font-size: 12pt;">Managing the Changing IT Landscape: Business-Class Technology</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">In a recent blog post, I proposed the idea that <a class="jive-link-external-small" href="http://intel.ly/11DIKQP" >business-class technology is not a luxury</a>. When it comes to protecting sensitive company information and IP, as well as customer data, it&#8217;s critical to have the right technology in place.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">But what makes technology business-class? In my mind, these are the top 10 features and capabilities that address the needs of both users and IT. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><ol><li><span style="font-size: 10pt;"><strong>Durability</strong> <strong>&#8211;</strong> Can handle daily wear and tear over a PC refresh cycle of three to four years; reinforced hardware (screen, chassis)</span></li><li><span style="font-size: 10pt;"><strong>High performance &#8211;</strong>&nbsp; Can manage multitasking and simultaneous app use</span></li><li><span style="font-size: 10pt;"><strong>Scalability</strong> <strong>&#8211;</strong>Ability to support new operating systems and apps during life cycle</span></li><li><span style="font-size: 10pt;"><strong>Security technologies</strong> <strong>&#8211;</strong> Protection for users and IT in a dynamic threat landscape</span></li><li><span style="font-size: 10pt;"><strong>Management tools</strong> <strong>&#8211;</strong> Ability for IT to manage <span style="text-decoration: underline;">all</span> devices (tablets, phones, notebooks, desktops, etc.) regardless of operational state or location</span></li><li><span style="font-size: 10pt;"><strong>Identity protection</strong> <strong>&#8211;</strong> Ability to protect users online and safeguard corporate network access </span></li><li><span style="font-size: 10pt;"><strong>Data protection</strong> <strong>&#8211;</strong> Powerful encryption technologies to guard sensitive business data</span></li><li><span style="font-size: 10pt;"><strong>Antitheft capabilities</strong> <strong>&#8211;</strong> Ability to lock or wipe a device that is lost or stolen </span></li><li><span style="font-size: 10pt;"><strong>Appeal for users</strong> <strong>&#8211;</strong> Ease of use with an intuitive interface, a lightweight form factor, long battery life, and a sleek design </span></li><li><span style="font-size: 10pt;"><strong>Interoperability</strong> <strong>&#8211;</strong>Standards-based systems with Ethernet, USB, solid-state drives (SSDs), and strong Wi-Fi</span></li></ol><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-size: 10pt;">What capabilities does your organization look for in business-class technology? Is anything missing from this list? </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="font-family: arial,helvetica,sans-serif;"><span style="font-size: 10pt;">Chris </span><br /><span style="font-size: 10pt;">@chris_p_intel</span><br />#Consumerization #BusinessClass</span></p></div><!-- [DocumentBodyEnd:6046c010-2160-4659-b5cb-7ac30c1c2e55] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/t4k_4hzvu7w" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/10/ten-things-to-know-about-business-class-technology/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/10/ten-things-to-know-about-business-class-technology</feedburner:origLink></item>
		<item>
		<title>Complexity Management with Tokenization</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/bGZQoDwOMDQ/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IaWwU03u67Y/#comments</comments>
		<pubDate>Mon, 08 Apr 2013 23:21:09 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=989</guid>
		<description><![CDATA[<p>Tokenization is a major trend in application and data security and Gateways are an ideal location to deploy tokenization services. Tokenization replaces sensitive data with benign data. The classic example here is PCI DSS, and the business value of tokenization &#8230; <a href="http://blogs.intel.com/application-security/2013/04/08/complexity-management-with-tokeninzation/">Read&#160;more&#160;<span>&#62;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/08/complexity-management-with-tokeninzation/">Complexity Management with Tokenization</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IaWwU03u67Y/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/08/complexity-management-with-tokeninzation/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>Tokenization is a major trend in application and data security and Gateways are an ideal location to deploy tokenization services. <a href="http://cloudsecurity.intel.com/tokenization" >Tokenization</a> replaces sensitive data with benign data. The classic example here is PCI DSS, and the business value of tokenization is summed up here:</p>
<p><a class="asset-img-link" href="http://1raindrop.typepad.com/.a/6a00d83451c75869e2017c3859b6f5970b-popup"><img class="asset  asset-image at-xid-6a00d83451c75869e2017c3859b6f5970b" src="http://1raindrop.typepad.com/.a/6a00d83451c75869e2017c3859b6f5970b-320wi" alt="Thumb_Tokenization" /></a></p>
<p>Now I am no graphic designer, but let me take advantage of the Chinese saying that &#8220;1,001 words is worth more than a picture.&#8221; As much as I like the graphic above it does not tell the whole story. The 2/3 of the graphic starting from the left is &#8220;PCI Scope&#8221;, the 1/3 on the right is outside PCI scope. In my experience the value of tokenization and gateways is that its more like 10-20% of the system is isolated down to in scope for PCI and the remaining 80-90% is &#8220;out of PCI scope&#8221; &#8211; *this* is the value of tokenization &#8211; it abstracts away a ton of complexity. As we discussed in the last post, <a href="http://blogs.intel.com/application-security/2013/03/25/remember-your-helmet/" >complexity</a> is the main enemy for security people. Tokenization services are a good way to not eliminate but massively reduce the sprawl of sensitive data and in doing so reduces the burden of complexity across the system because the rest of the system isn&#8217;t dragged into scope.</p>
<p>The reality is that most of the system does not need to access sensitive data such as payment information, it only needs to be able to reference authorization codes and the like. There are so many ways to mess up code that simply removing the sensitive data in as many places as possible is frequently the single most effective security mechanism. To quote <a href="http://en.wikipedia.org/wiki/Ken_Thompson" >Ken Thompson</a>, &#8220;when in doubt use brute force.&#8221; What&#8217;s simpler &#8211; A) exhaustive audits, quarterly vulnerability assessments, section 10 level audit logging, and the full compliance check box olympics across your whole systems or B) brute force &#8211; isolate sensitive data, audit that island and expose only tokens and authorization codes to the rest? Its not even close.</p>
<p>The counterargument to the above is that a gateway introduces a new layer in the system and so its another middleboxen for the app server to talk to, another system on the critical path. Fair enough, but its there for a reason same as the app server is in the middle tier. The appserver is in the middle tier so that business logic and rules are centralized and reused. This is the same rationale for tokenization on a gateway &#8211; centralize the token generation and verification. Do you want all your developers writing code for generating and verifying tokens? Not bloody likely.</p>
<p>Tokenization is a major trend in security because it allows systems to reduce the sprawl of sensitive data and the attendant vulnerability and audit issues. Gateways are the ideal way to deploy tokenization because</p>
<p>1) the internal core operations of token generation and verification are too important to be left to individual developers. They are generic enough that they can be reused.</p>
<p>2) the external interfaces to the tokenization servicess- generate token and verify a token &#8211; are very simple</p>
<p>This is a mix that solves important security problem in a simple way and in a way that scales. Frankly there are not too many times in security architecture where this is the case and that makes <a href="https://cloudsecurity.intel.com/white-papers/tokenization-for-pci-dss" >tokenization</a> on gateways is a design pattern for the long haul.
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/08/complexity-management-with-tokeninzation/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/08/complexity-management-with-tokeninzation/">Complexity Management with Tokenization</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/IaWwU03u67Y" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/bGZQoDwOMDQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/08/complexity-management-with-tokenization/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/IaWwU03u67Y/</feedburner:origLink></item>
		<item>
		<title>HTML5 and API Gateways</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/McebavCzjnc/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/LkGV4zemp_M/#comments</comments>
		<pubDate>Mon, 08 Apr 2013 21:24:13 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=981</guid>
		<description><![CDATA[<p>So, here are some questions that have been on my mind lately: How can Enterprises reduce cost drivers for mobile enablement? Can APIs and HTML5 provide the basis for a long term mobile strategy? Can Enterprises avoid lock-in with mobile &#8230; <a href="http://blogs.intel.com/application-security/2013/04/08/html5-apis-and-expressway/">Read&#160;more&#160;<span>&#62;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/08/html5-apis-and-expressway/">HTML5 and API Gateways</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/LkGV4zemp_M/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/08/html5-apis-and-expressway/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>So, here are some questions that have been on my mind lately:</p>
<ul>
<li>How can Enterprises reduce cost drivers for mobile enablement?</li>
<li>Can APIs and HTML5 provide the basis for a long term mobile strategy?</li>
<li>Can Enterprises avoid lock-in with mobile walled gardens? Should they? Why?</li>
<li>What would the architecture look like?</li>
</ul>
<p>If you are interested in exploring some of these topics,please join me and my colleagues <a href="https://engage.vevent.com/index.jsp?eid=474&amp;seid=6889&amp;code=intel">later this week</a> for a webinar at SC World Congress eSymposium. Hope to see you there!</p>
<p>&nbsp;</p>
<p>Blake</p>
<p>&nbsp;
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/08/html5-apis-and-expressway/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/08/html5-apis-and-expressway/">HTML5 and API Gateways</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/LkGV4zemp_M" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/McebavCzjnc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/08/html5-and-api-gateways/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/LkGV4zemp_M/</feedburner:origLink></item>
		<item>
		<title>Security Does Not Need to be Complex to be Effective</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/kRWkd-oip-c/security-does-not-need-to-be-complex-to-be-effective</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/08/security-does-not-need-to-be-complex-to-be-effective#comments</comments>
		<pubDate>Mon, 08 Apr 2013 18:12:39 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=40be3cb4169d4e8e71e0193060505155</guid>
		<description><![CDATA[Even a 10 year old little girl can prove this fact:&#160; A 10-year-old girl thwarted an abduction attempt after asking a stranger for a code word that he did not know.A man approached a 10 year old girl outside a public school and attempted to lure th... <a href="http://communities.intel.com/community/openportit/blog/2013/04/08/security-does-not-need-to-be-complex-to-be-effective">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:10bb55ee-11d0-43f5-a292-202b35bde3fd] --><div class="jive-rendered-content"><p><span style="color: #000000;">Even a 10 year old little girl can <a class="jive-link-external-small" href="http://toronto.ctvnews.ca/attempted-child-abduction-thwarted-when-girl-asks-stranger-for-code-word-1.1204634#ixzz2PtQoJlBy" >prove this fact</a>:&nbsp; <a href="http://communities.intel.com/servlet/JiveServlet/showImage/38-15775-231898/Caution.jpg"><img alt="Caution.jpg" class="jive-image" height="114" src="http://communities.intel.com/servlet/JiveServlet/downloadImage/38-15775-231898/143-114/Caution.jpg" style="float: right;" width="143"/></a></span></p><p style="padding-left: 30px;">A 10-year-old girl thwarted an abduction attempt after asking a stranger for a code word that he did not know.</p><p style="padding-left: 30px;">A man approached a 10 year old girl outside a public school and attempted to lure the girl into his vehicle.&nbsp; The man told the girl her parents had sent him to pick her up.&nbsp; But the girl and her parents had setup a shared secret code-word for anyone authorized to pick her up from school.&nbsp; </p><p style="padding-left: 30px;">The girl asked for the code word but the suspect got it wrong.&nbsp; She told him it was incorrect and he drove away.&nbsp; </p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">I applaud the parents for a job well done in implementing a simple and effective security solution and to the little girl who deftly executed to it, likely without the need of understanding the grim impacts of failure.&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">In the security and technology industry, we can learn volumes from this encounter.&nbsp; First, a security savvy person is far more effective than a stack of technical security controls.&nbsp; Second, complexity does not guarantee effectiveness.&nbsp; In fact, simplicity can be more cost efficient and easier to implement. An elegant solution, is one which is accepted, applied, and delivers the preferred result.&nbsp;&nbsp; </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;">&nbsp;</p><p><span style="color: #000000;">As security professionals, we have an opportunity to meet these requirements to deliver an optimal solution through a marriage of inherent human and technical considerations.&nbsp; We must not forget, computer security is a combination of both.&nbsp; The very best solutions enhance the user&#8217;s ability to be secure without being cumbersome.&nbsp; Pure elegance.</span></p></div><!-- [DocumentBodyEnd:10bb55ee-11d0-43f5-a292-202b35bde3fd] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/kRWkd-oip-c" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/08/security-does-not-need-to-be-complex-to-be-effective/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/08/security-does-not-need-to-be-complex-to-be-effective</feedburner:origLink></item>
		<item>
		<title>Mobile Middleware for the Enterprise: API Security Considerations</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/xCuEFzco6ys/</link>
		<comments>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/8BuMWPeo4Pk/#comments</comments>
		<pubDate>Thu, 04 Apr 2013 21:58:47 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/application-security/?p=961</guid>
		<description><![CDATA[<p>A few weeks ago I blogged about different Mobile Middleware usage models for enterprise.  Continuing that thread, this post will drill down into API security considerations for enterprise mobile apps. Mobile applications are typically intended for use outside of the &#8230; <a href="http://blogs.intel.com/application-security/2013/04/04/mobile-friendly-security/">Read&#160;more&#160;<span>&#62;</span></a></p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/04/mobile-friendly-security/">Mobile Middleware for the Enterprise: API Security Considerations</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p> <a href="http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/8BuMWPeo4Pk/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/04/mobile-friendly-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
<p>A few weeks ago I blogged about different <a href="http://blogs.intel.com/application-security/2013/02/15/mobile-middleware-for-enterprise/">Mobile Middleware</a> usage models for enterprise.  Continuing that thread, this post will drill down into <a href="http://cloudsecurity.intel.com/api-security">API security</a> considerations for enterprise mobile apps.</p>
<p>Mobile applications are typically intended for use outside of the corporate network.  This requires the enterprise to expose APIs and web services to the Internet, where previously they were made inaccessible by the corporate firewall.  While it is a good practice to protect even inward-facing services, the likelihood of a malicious attack is orders of magnitude higher for external-facing APIs.</p>
<p>Even if these services were previously exposed through a web portal, additional security must be considered.  Most modern web portals adopt some variation on the <a href="http://en.wikipedia.org/wiki/Multitier_architecture">classic three-tier architecture</a>, in which only the presentation tier is exposed to the Internet.  On the other hand, many web services place business logic at the endpoint, exposing the server.  Furthermore, the API server will have access to a database, so a compromised server can lead more directly to data loss.</p>
<div id="attachment_962" class="wp-caption aligncenter" style="width: 665px"><a href="http://blogs.intel.com/application-security/files/2013/04/3-tier.png"><img class="size-large wp-image-962" src="http://blogs.intel.com/application-security/files/2013/04/3-tier-1024x335.png" alt="" width="655" height="214" /></a><p class="wp-caption-text">Classic 3-tier web hosting architecture</p></div>
<p>A services gateway allows the enterprise to minimize the attack surface for the mobilization program.  Rather than having to protect one or more servers for each external-facing API, the proxy model results in a single server or cluster responding to external traffic.  The actual web services can then be further restricted, only allowing connections to the gateway and to internal systems inside the DMZ or corporate intranet.</p>
<div id="attachment_964" class="wp-caption aligncenter" style="width: 665px"><a href="http://blogs.intel.com/application-security/files/2013/04/two-tier.png"><img class="size-large wp-image-964" src="http://blogs.intel.com/application-security/files/2013/04/two-tier-1024x411.png" alt="" width="655" height="262" /></a><p class="wp-caption-text">Mobile-optimized two-tier hosting model</p></div>
<p>A variation on this model, illustrated by the figure below, uses a pair of gateways to securely expose internal APIs while eliminating the need for a duplicate instance of the API deployed to the DMZ.  This involves deploying one gateway inside the DMZ and a second gateway inside a secure enclave.  Inbound traffic is permitted to access the first instance, while the second instance only accepts traffic from the first.  It should be noted that this is only feasible with gateways that can be deployed on-premise due to the need to securely host one gateway inside the secure enclave.</p>
<div id="attachment_963" class="wp-caption aligncenter" style="width: 665px"><a href="http://blogs.intel.com/application-security/files/2013/04/multi-gateway.png"><img class="size-large wp-image-963" src="http://blogs.intel.com/application-security/files/2013/04/multi-gateway-1024x706.png" alt="" width="655" height="451" /></a><p class="wp-caption-text">Dual-gateway security for Intranet-hosted services</p></div>
<p>Use of a security gateway also makes it easier to implement and enforce consistent security policies for all APIs.  Instead of adding custom code to each API or tuning each server individually, a consistent set of checks can be performed at the gateway layer.  For example, an enterprise can define a package of checks that includes SQL injection scanning, overflow scanning, and cross-site scripting prevention.</p>
<p>For more on the security and other benefits of the gateway facade, download <a href="https://cloudsecurity.intel.com/white-papers/api-patterns-for-cloud-mobile">API Patterns for Cloud and Mobile</a> from CITO Research&#8217;s Chief Analyst, Dan Wood (foreword by John Musser of <a href="http://www.programmableweb.com">ProgrammableWeb</a>).
<div class='wpfblike' style='height: 0px;'><fb:like href='http://blogs.intel.com/application-security/2013/04/04/mobile-friendly-security/' layout='button_count' show_faces='false' width='100' action='recommend' colorscheme='light' send='false' /></div>
</p><p>The post <a href="http://blogs.intel.com/application-security/2013/04/04/mobile-friendly-security/">Mobile Middleware for the Enterprise: API Security Considerations</a> appeared first on <a href="http://blogs.intel.com/application-security">Application Security</a>.</p><img src="http://feeds.feedburner.com/~r/IntelApplicationSecurity/~4/8BuMWPeo4Pk" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/xCuEFzco6ys" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/04/mobile-middleware-for-the-enterprise-api-security-considerations/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelApplicationSecurity/~3/8BuMWPeo4Pk/</feedburner:origLink></item>
		<item>
		<title>Inside IT: Balancing Security and User Experience</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/HG9CZKo4QPo/inside-it-balancing-security-and-user-experience</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/03/inside-it-balancing-security-and-user-experience#comments</comments>
		<pubDate>Wed, 03 Apr 2013 23:03:59 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=c0d88a52bb269a4dc6b2d653543c675b</guid>
		<description><![CDATA[Intel has implemented a new granular trust model to improve security throughout the enterprise. It&#8217;s designed to support key initiatives like IT consumerization and cloud computing. At the same time Intel wants to keep the user experience as seam... <a href="http://communities.intel.com/community/openportit/blog/2013/04/03/inside-it-balancing-security-and-user-experience">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:e05cf16a-64b0-4ed6-8e79-11a784d663b4] --><div class="jive-rendered-content"><p>Intel has implemented a new granular trust model to improve security throughout the enterprise. It&#8217;s designed to support key initiatives like IT consumerization and cloud computing. At the same time Intel wants to keep the user experience as seamless as possible. <a class="jive-link-external-small" href="http://connectedsocialmedia.com/10205/inside-it-balancing-security-and-a-great-user-experience/" >In this podcast</a> we hear from Toby Kohlenberg, Intel IT Senior Information Security Technologist. He gives us an outline of the first version of the new security model, talks about the advantages of dynamic trust calculation, and discusses the challenges of balancing a complex security infrastructure while ensuring a great user</p></div><!-- [DocumentBodyEnd:e05cf16a-64b0-4ed6-8e79-11a784d663b4] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/HG9CZKo4QPo" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/03/inside-it-balancing-security-and-user-experience/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/03/inside-it-balancing-security-and-user-experience</feedburner:origLink></item>
		<item>
		<title>App stores a harbinger of touch in the enterprise? Yep.</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/4YOrVI679ek/app-stores-a-harbinger-of-touch-in-the-enterprise-yep</link>
		<comments>http://communities.intel.com/community/openportit/blog/2013/04/03/app-stores-a-harbinger-of-touch-in-the-enterprise-yep#comments</comments>
		<pubDate>Wed, 03 Apr 2013 13:02:51 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=c09e31f8cd46d3a8d9fb54eb5e229ac9</guid>
		<description><![CDATA[Managing the Changing IT Landscape: Touch-Enabled PCs in the Enterprise &#160;A couple of weeks ago, I posted a blog on the emergence of enterprise app stores as a way for IT to gain better control. Today, I want to go one step further: I believe that ... <a href="http://communities.intel.com/community/openportit/blog/2013/04/03/app-stores-a-harbinger-of-touch-in-the-enterprise-yep">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<!-- [DocumentBodyStart:f34c553e-ee70-41cc-bda1-5ed0e60bc738] --><div class="jive-rendered-content"><p><span style="font-size: 12pt;">Managing the Changing IT Landscape: Touch-Enabled PCs in the Enterprise</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">A couple of weeks ago, I posted a blog o</span><span style="font-size: 12pt;">n the <a class="jive-link-external-small" href="http://intel.ly/XWHKI9" >emergence of enterprise app stores </a>as a way for IT to gain better control. Today, I want to go one step further: I believe that enterprise app stores mark the beginning of touch-enabled PCs at work.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">For consumers, app stores have become the de facto standard for delivering productivity tools, games, and content. As smart phones and other mobile devices become a part of everyday business, CIOs are realizing the power of app stores in the enterprise&#8212;both to achieve greater control and to deliver applications optimized for work streams. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><strong style="font-size: 12pt;">Touch is next out of the gates</strong></p><p><span style="font-size: 12pt;">IT isn&#8217;t paring down these apps for mobile devices; on the contrary, it&#8217;s optimizing them for touch-based interfaces. And there&#8217;s no need for compromise. By building an app strategy that focuses on touch with the <span style="text-decoration: underline;"><a class="jive-link-external-small" href="http://intel.ly/XmjwII" >Windows* 8 operating system on an Intel&reg;-based device</a></span>, </span><span style="font-size: 12pt;">organizations can get the enterprise-grade solution they need while users get the devices and experiences they love.</span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">Just the other day, I was dialing a colleague using my laptop&#8217;s softphone and thinking how much easier it would be to simply touch the numbers on-screen like I&#8217;m able to do on my phone. It&#8217;s a faster, smoother, and more natural interaction. </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">Where do you stand on touch-enabled PCs in the enterprise? Which business apps would you want to be touch-enabled first? </span></p><p style="min-height: 8pt; height: 8pt; padding: 0px;"><span style="font-size: 12pt;"> </span><span style="font-size: 12pt;"> </span>&nbsp;</p><p><span style="font-size: 12pt;">Chris </span><br /><span style="font-size: 12pt;">@chris_p_intel</span><br /><span style="font-size: 12pt;">#Consumerization #touchPCs #enterpriseappstore</span></p></div><!-- [DocumentBodyEnd:f34c553e-ee70-41cc-bda1-5ed0e60bc738] --><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/4YOrVI679ek" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/03/app-stores-a-harbinger-of-touch-in-the-enterprise-yep/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://communities.intel.com/community/openportit/blog/2013/04/03/app-stores-a-harbinger-of-touch-in-the-enterprise-yep</feedburner:origLink></item>
		<item>
		<title>Can You Put the Eternity Clock Back Together? Doctor Who in the Intel AppUp® center</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/ZQsEx3DgSpM/</link>
		<comments>http://www.appup.com/blog/can-you-put-the-eternity-clock-back-together-doctor-who-in-the-intel-appup-center/#comments</comments>
		<pubDate>Tue, 02 Apr 2013 21:42:40 +0000</pubDate>
				<guid isPermaLink="false">http://www.appup.com/blog/?p=1518</guid>
		<description><![CDATA[Are you a Doctor Who fan? Of course you are because you have access to the Internet! If you’ve not &#8230; <a href="http://www.appup.com/blog/can-you-put-the-eternity-clock-back-together-doctor-who-in-the-intel-appup-center/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p>Are you a Doctor Who fan? Of course you are because you have access to the Internet! If you’ve not jumped on the Doctor Who bandwagon, here’s the deal: Doctor Who is about a guy (The Doctor) who is one part time traveler, one part alien. He travels in his TARDIS, which on the surface looks like a ‘60s-era British police box, but it’s actually a time machine. He’s got some companions that travel with him as they try to save the world, and fix what’s bad. It aired for about 30 years, then went off the air for a few very dark years, and now it’s back and has taken over the web with memes and TARDIS sightings.</p>
<p><a href="http://www.appup.com/app-details/doctor-who-the-eternity-clock"><img class="aligncenter size-medium wp-image-1520" title="Doctor Who App for PC " src="http://www.appup.com/blog/wp-content/uploads/2013/04/13935_boxshots_medium_820x4801-300x175.png" alt="" width="300" height="175" /></a></p>
<p>We are diehard Doctor Who fans in the Intel AppUp® center and so of course, we had to add two Doctor Who apps: <a href="http://www.appup.com/app-details/doctor-who%3A-city-of-the-daleks">Doctor Who: City of the Daleks</a> and <a href="http://www.appup.com/app-details/doctor-who-the-eternity-clock">Doctor Who: The Eternity Clock</a>. But we’re not stopping there. Oh no! We really, really want AppUp users to help the doctor and his companion River Song save the universe and time itself so we’re having a discount on The Eternity Clock for the whole month. This awesome app is 60% off! That’s right, for a limited time, you can unravel the mystery of the eternal clock for just $3.99.</p>
<p>Players are equipped with the Doctor’s sonic screwdriver, River’s blaster and other Whovian gadgets while traveling through four time periods and alien locations. But it’s not all wine and roses; players will also face monsters, including Silurians, Cybermen, Daleks and the Silence. Those who destroy foes and solve puzzles will succeed in saving themselves and the rest of civilization.</p>
<p>Okay, that’s a lot of Doctor Who, but I know the Doctor’s fans can’t get enough. To celebrate the 50<sup>th</sup> anniversary of Doctor Who, play <a href="http://www.doctorwho.tv/clockquest">Clock Quest</a>—prizes include an Ultrabook™ and 100 copies of The Eternity Clock. All you have to do is play Clock Quest to be entered for your chance to win. Go now!</p>
<p>You don’t need to be a Doctor Who devotee to save the world with The Eternity Clock game. But you do need to act quickly to take advantage of the awesome deal on this app and to play Clock Quest for a chance to win an Ultrabook. Get to it!</p>
<p>&nbsp;</p>
<img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/ZQsEx3DgSpM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/02/can-you-put-the-eternity-clock-back-together-doctor-who-in-the-intel-appup%c2%ae-center/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.appup.com/blog/can-you-put-the-eternity-clock-back-together-doctor-who-in-the-intel-appup-center/</feedburner:origLink></item>
		<item>
		<title>Visit Intel Android at Droidcon 2013 Berlin  on April 8th -10th, 2013 –  Win one of two smartphones</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/qytwJPhMsLw/visit-intel-android-at-droidcon-2013-berlin-on-april-8th-10th-2013-win-one-of-two</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4zR0JIpUO_8/visit-intel-android-at-droidcon-2013-berlin-on-april-8th-10th-2013-win-one-of-two#comments</comments>
		<pubDate>Tue, 02 Apr 2013 17:12:18 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=945f4e3faa996b5e05fd15e204a91cd5</guid>
		<description><![CDATA[ 1.     How to Enter
Scan the NFC tags around the booth (Easter Eggs) and you will receive a URL. Go to URL and answer 4 questions. Hand in your business card with the 4 digit code you receive after ticking the answers and you will enter the raffle... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4zR0JIpUO_8/visit-intel-android-at-droidcon-2013-berlin-on-april-8th-10th-2013-win-one-of-two">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p><b>1.     </b><b>How to Enter</b></p>
<p>Scan the NFC tags around the booth (Easter Eggs) and you will receive a URL. Go to URL and answer 4 questions. Hand in your business card with the 4 digit code you receive after ticking the answers and you will enter the raffle Tuesday, April 9<sup>th</sup> at 16.30h and Wednesday, April 10<sup>th</sup> at 16.15h. The winner will randomly be chosen at the specified times. The winner needs to be present to win (no delegate).</p>
<h3><b>2.     </b><b>Prizes</b></h3>
<p>There are two Orange smartphones with Intel inside available. Each smartphone has a value of €300,--. These prizes are only available to those who download the NFC code within the specified time period: Monday April 8<sup>th</sup> to Wednesday April 10th. Winners will be chosen at random. Prizes are not transferable and cash alternatives will not be available. No transport to or accommodation at the event is provided as part of this contest, winners need to make their own arrangements.</p>
<p><b>3.     </b><b>Criteria of Winning Submission</b></p>
<p>The contest will be open to application developers, software engineers and others involved in the design and creation of software in a professional or personal capacity in EMEA. Entrants must be aged 18 years or over or must obtain the consent of their parents or legal guardian. Entrants must not be employed by Intel Corporation US, its affiliates and subsidiaries or must not be related to their families, or persons directly involved in the administration of this Prize Draw. Anyone connected to the contest, including but not limited to Intel employees, is ineligible for entry. The contest is open to residents of the EMEA countries. All national and local laws and regulations apply. The contest is governed by the laws applicable in ‘Germany.</p>
<p><b>4.     </b><b>Selection of the Winners</b> </p>
<p>Winners will be chosen at random from the pool of those who entered their contact details for the prize draws, Tuesday April 9<sup>th</sup> at 4.30h pm and Wednesday April 10<sup>th</sup> at 4.15h pm.</p>
<p><b>5.     </b><b>List of Winners</b></p>
<p>Entrants to this contest accept that Intel GmbH (“Intel”) may name the winners of the prizes in public.</p>
<p><b>6.     </b><b>Delivery of the Prizes to the Prize Winners</b></p>
<p>The Prize will be delivered on the day of the prize draw.</p>
<p><b>Legal Documents</b> </p>
<p><a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Privacy Policy</a>, <a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy</a> </p>
<p><a href="http://www.intel.com/sites/corporate/termsofuse.htm">Terms of Use</a><a href="http:/" rel="nofollow"></a>, <a href="http://www.intel.com/sites/corporate/termsofuse.htm">http://www.intel.com/sites/corporate/termsofuse.htm</a><b> </b></p>
<p><b>Intel Android at Droidcon Berlin NFC Draw Contest Rules </b></p>
<p><b></b>These rules (including the <a href="http://www.intel.com/sites/sitewide/en_US/privacy/privacy.htm?iid=ftr+privacy">Intel Privacy Policy</a> and the <a href="http://www.intel.com/sites/corporate/termsofuse.htm">Terms of Use</a>) govern the Orange smartphone raffle chance-based contest (the “contest”) and set out the terms and conditions between Intel Corporation and its affiliates (“Intel” or “us/we”) and each participant (“participant” or “you”).</p>
<ol><li>You are eligible to participate in the contest if you are 18 and older.</li>
<li>No purchase necessary. Purchase does not increase your chance of winning. Void wherever prohibited.</li>
<li>You must speak, read and understand English and you must be aged 18 years or over or you must obtain the consent of your parents or legal guardian before you participate in the contest. If you register for the contest or if you accept any contest prizes, you accept these rules. Employees of Intel Corporation, its affiliates, subsidiaries, advertising and promotion agencies, and the immediate families of each may not enter. This limitation is void where prohibited.</li>
<li>The contest is open to residents of the EMEA countries only. All national and local laws and regulations of the resident’s country of residence apply.</li>
<li>We may refuse your entry for any good reason. </li>
<li>Apart from prizes offered as part of the contest, no monetary compensation will be paid for any of your contest entries.</li>
<li>Intel is not responsible for contest entries not received due to lost, failed, delayed or interrupted connections or miscommunications, or other electronic malfunctions. Intel is not responsible for incorrect or inaccurate entry information, whether caused by you or any other persons or by any of the equipment or programming associated with or utilized in the contest.</li>
<li>You may be required to sign and return releases of liability, declarations of eligibility, and where lawful, publicity consent agreements, within five (5) days of acknowledged notification. If minors are allowed to enter and a prize is won by a minor, all required documentation must be signed by the parent/legal guardian. If a selected potential winner cannot be contacted, is ineligible (under these rules or due to a failure to comply with any of the other applicable policies, licenses, rules, and terms of service, fails to claim a prize, or fails to timely return the completed and executed releases/agreements as required), prize may be forfeited and an alternate potential winner may, at Intel’s discretion, be selected. Physical prizes awarded for the winning entries will be given to participants at the date of the notification at the event.</li>
<li>Prizes are personal to the participant submitting the winning entry and cannot normally be transferred. All prizes are subject to availability and they may change at any time and Intel may award substitute prizes of equal or greater value. A cash alternative is not available. Odds of winning depend on the total number of eligible entries received.</li>
<li>The winner accepts responsibility for all federal, state and local taxes and fees in connection with the prizes. The winner shall be solely responsible to obtain all permissions and authorizations to collect and receive the prize in accordance with the laws of the participant’s country of residence.  This contest is void where prohibited or restricted by law, and subject to applicable federal, state provincial and local laws. If the winner is a resident of a country in Latin America, cash prizes will be replaced by goods and/or services of equal value in Intel’s sole discretion.</li>
<li>Entry to the contest is restricted to one entry per person.</li>
<li>Acceptance of the prize will constitute permission to use winner’s name and/or likeness for promotional purposes without further compensation except where prohibited by law.</li>
<li>Intel does not provide any warranty on the prizes. To the fullest extent allowable by law, Intel specifically disclaims any representations or warranties, express or implied, regarding the prizes, including any implied warranty of merchantability or fitness for a particular purpose and implied warranties arising from course of dealing or course of performance.</li>
<li>We may, on notifying you, immediately suspend or terminate your rights, if you breach these rules or if we reasonably believe that you have submitted an entry in violation of these rules.</li>
<li>Intel reserves the right, in its sole discretion, to suspend or cancel the contest at any time for any reason.</li>
<li>You can withdraw your entry at any time by notifying us. If your entry is withdrawn your rights to win a prize in this contest are lost.</li>
<li>These rules apply to your entry unless we provide any items to you under more specific terms, in which case those more specific terms will apply to the relevant items. We may make changes to these rules at any time without notice to you. The most current version of the rules can be reviewed on the Intel® SN website (www.intel.com/software). Accepting prizes will constitute acceptance of the revised rules.</li>
<li>Our only responsibilities with respect to the contest are set out in these rules. These rules prevail in the event of any conflict or inconsistency with any other communications, including advertising or promotional materials.</li>
<li>For any feedback or questions regarding the contest or the prizes you can contact Intel by sending an email to <a href="mailto:Beatrice.fraedrich@intel.com" rel="nofollow">Beatrice.fraedrich@intel.com</a></li>
<li>If Intel improperly denies you any prizes, Intel's entire liability and your sole and exclusive remedy will be limited to a distribution of the equivalent amount of prizes as set forth above. By participating in the contest, you waive any and all rights to bring any claim or action related to such matters in any forum beyond one (1) year after the first occurrence of the kind of act, event, condition or omission upon which the claim or action is based.</li>
<li>If for any reason this contest is not capable of running as planned due to infection by computer virus, bugs, tampering, unauthorized intervention, fraud, technical failures, or any other causes beyond the control of Intel which corrupt or affect the administration, security, fairness, integrity, or proper conduct of this contest, Intel reserves the right at its sole discretion, to disqualify any individual who tampers with the entry or voting process, and to cancel, terminate, modify or suspend the contest.</li>
<li>Intel assumes no responsibility for any error, omission, interruption, deletion, defect, delay in operation or transmission, communications line failure, theft or destruction or unauthorized access to, or alteration of entries. Intel is not responsible for any problems or technical malfunction of any telephone network or telephone lines, computer online systems, servers, or providers, computer equipment, software, failure of any e-mail or entry to be received by Intel on account of technical problems, human error or traffic congestion on the internet or at any web site, or any combination thereof, including any injury or damage to participant's or any other person's computer relating to or resulting from participation in this contest or downloading any materials in this contest.</li>
<li>The promoter of this contest is Intel. The contest is administered by: Intel GmbH, Dornacher Strasse 1, 85622 Feldkirchen, +49 89 9914 3368, beatrice.fraedrich@intel.com</li>
</ol><p>Intel is a trademark of Intel Corporation in the U.S. and other countries.</p>
<p>*Other names and brands may be claimed as the property of others.</p>
<p>© 2013, Intel Corporation. All rights reserved.</p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/42207" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Android Event Blog</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20776" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Event</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4zR0JIpUO_8:YsDdtAkjryU:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4zR0JIpUO_8:YsDdtAkjryU:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4zR0JIpUO_8:YsDdtAkjryU:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=4zR0JIpUO_8:YsDdtAkjryU:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/4zR0JIpUO_8" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/qytwJPhMsLw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/02/visit-intel-android-at-droidcon-2013-berlin-on-april-8th-10th-2013-win-one-of-two-smartphones/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4zR0JIpUO_8/visit-intel-android-at-droidcon-2013-berlin-on-april-8th-10th-2013-win-one-of-two</feedburner:origLink></item>
		<item>
		<title>Work/Life/School—It’s All Possible at Intel</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/zisPchh1QDY/</link>
		<comments>http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/#comments</comments>
		<pubDate>Tue, 02 Apr 2013 14:06:46 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/jobs/?p=1907</guid>
		<description><![CDATA[<p>I’ve been to 22 different Intel campuses in 6 different countries in my 14 years at Intel. One thing is consistent – Intel employees’ spirit of wanting to always do better. Always wanting to BE better. It’s in our DNA. &#8230; <a href="http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/">Read&#160;more&#160;<span>&#062;</span></a></p><p>The post <a href="http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/">Work/Life/School—It’s All Possible at Intel</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p> <a href="http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p>I’ve been to 22 different Intel campuses in 6 different countries in my 14 years at Intel. One thing is consistent – Intel employees’ spirit of wanting to always do better. Always wanting to BE better. It’s in our DNA. That’s one of the things that makes people love it here at Intel, or prompts them to move on if one is not so inclined – and that’s okay.</p>
<p>Recently, one of our manufacturing groups formed a partnership with the University of Arizona to establish a pretty amazing <a href="http://www.mse.arizona.edu/undergraduates/index.php?ID=113">distance learning opportunity</a>. Employees in Intel’s Fab/Sort Manufacturing group will be able to earn their Bachelor degree in Materials Science and Engineering, while still working at Intel.</p>
<div id="attachment_1908" class="wp-caption aligncenter" style="width: 665px"><a href="http://blogs.intel.com/jobs/files/2013/03/FSM_UA_Kickoff.jpg"><img class="size-large wp-image-1908" src="http://blogs.intel.com/jobs/files/2013/03/FSM_UA_Kickoff-1024x682.jpg" alt="" width="655" height="436" /></a><p class="wp-caption-text">Representatives from Intel and the University of Arizona celebrated the kick-off event at Intel’s Ocotillo site</p></div>
<p><span id="more-1907"></span>It’s very difficult to go to school and work at the same time. Believe me, I know. What’s really great about this program is that Intel will support it from a work/life standpoint. That means employees’ managers will help them balance the requirements of a busy job with the demands of their educational program. Tuition assistance will also be available to eligible employees. It’s a clear commitment to learning and will be huge to those who participate.</p>
<p>One of the Intel sites I visited was our fabrication site (also called a “fab”) in <a href="http://www.intel.com/jobs/usa/sites/riorancho/" >Rio Rancho, New Mexico</a>. I was lucky enough to get a tour of the fab. Got to put on the <a href="http://en.wikipedia.org/wiki/Cleanroom_suit">bunny suit</a> and everything. I was blown away by the extent and complexity of the engineering. After touring the fab and seeing the incredible technology there, how could you not want to learn more?</p>
<p>This new program facilitates that and eliminates the need for our employees to quit for a few years in order to start and/or finish school. Good thinking, guys. I like your DNA.</p>
<p>The post <a href="http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/">Work/Life/School—It’s All Possible at Intel</a> appeared first on <a href="http://blogs.intel.com/jobs">Jobs@Intel Blog</a>.</p><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/zisPchh1QDY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/02/worklifeschool%e2%80%94it%e2%80%99s-all-possible-at-intel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://blogs.intel.com/jobs/2013/04/02/worklifeschool%E2%80%94it%E2%80%99s-all-possible-at-intel/</feedburner:origLink></item>
		<item>
		<title>OpenCL Developers Kit 2013 Now Available with support for OpenCL 1.2 and future 4th Gen Intel® Core™ Processor</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/3dvp_oWX-Og/announce-opencl-sdk-2013</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Oq5iQt87JMk/announce-opencl-sdk-2013#comments</comments>
		<pubDate>Tue, 02 Apr 2013 13:07:09 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=fc057e8cc0ed639b360db0dec3d6e2e6</guid>
		<description><![CDATA[ 
If you’re working on a cutting-edge visual computing application, download the new release the Intel® Software Development Kit (SDK) for OpenCL Applications 2013 to realize efficiency, performance and power savings.  The new SDK includes certifie... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Oq5iQt87JMk/announce-opencl-sdk-2013">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p></p>
<p><span>If you’re working on a cutting-edge visual computing application, download the new release the Intel® Software Development Kit (SDK) for OpenCL Applications 2013 to realize efficiency, performance and power savings.  The new SDK includes certified OpenCL 1.2 support on 3rd and future 4th generation Intel® Core™ processors running Microsoft Windows* 7 and 8 operating systems.</span></p>
<p>A new <a href="http://www.intel.com/content/www/us/en/architecture-and-technology/hd-graphics/hd-graphics-developer.html">graphics driver</a> lets you utilize the compute resources simultaneously of both the Intel® CPU and I<span><br />ntel HD Graphics. By taking advantage of the general purpose programing of OpenCL coupled with the hardware acceleration capability of Intel HD Graphics, your application can get better performance and improved battery life on Intel Core platforms like Ultrabook™ and other low-power devices as well as high-end notebooks and All-In-One PCs.   The SDK is ideal for content creation applications like video editing, music creation, and photo editing.  You can now download a free copy of Intel SDK for OpenCL Applications 2013 </span><a href="http://software.intel.com/en-us/vcsource/tools/opencl-sdk">here</a><span>.</span></p>
<p><strong>What are the key new features of the Intel® SDK for OpenCL Applications 2013?</strong></p>
<p>The new Intel SDK for OpenCL Applications 2013 brings improvements and new features both in the OpenCL driver and the development tools.</p>
<p><em><strong><span>What New Features are Supported by the OpenCL Driver?</span></strong></em></p>
<ul><li><strong>OpenCL* 1.2 Support</strong><span>:  Across both 3rd and future 4th generation Intel Core Processors and across both CPU and Intel® HD Graphics</span></li>
<li><strong>Performance Improvements:</strong><span>  For both CPU and Intel HD Graphics. </span></li>
<li><strong>Windows 8* Operating System Support</strong><span>:  Windows 7 support continues</span></li>
<li><strong><span>Enhanced Interoperability with Media and Graphics APIs</span></strong></li>
</ul><ul><li><span>Sharing memory objects with Microsoft* DirectX* 11  </span></li>
<li><span>Tightly integration with OpenGL* with new support for depth images and sharing of multi-sampled textures. </span></li>
<li><span>Standard based memory object sharing with Microsoft* DirectX* 9 for media surfaces.</span></li>
<li><span>Interoperability with <a href="http://software.intel.com/en-us/vcsource/tools/media-sdk">Intel Media SDK 2013</a> and<a href="http://software.intel.com/en-us/vcsource/tools/perceptual-computing-sdk"> Intel Perceptual Computing SDK 2013</a></span></li>
</ul><p><em><strong><span>What’s New in OpenCL Development Tools?</span></strong></em></p>
<ul><li><span>Integration with Microsoft Visual Studio* 2012</span></li>
<li><span>New standalone <a href="http://software.intel.com/sites/products/documentation/ioclsdk/2013/UG/index.htm#Using_the_Intel_SDK_for_OpenCL_Offline_Compiler_Standalone_Tool.htm">Kernel Builder</a> (included in the SDK package) with:</span></li>
</ul><ul><li><span>Dynamic performance analysis of OpenCL kernels</span></li>
<li><span>Full support for both Intel HD Graphics and CPUs.</span></li>
<li><span>Support for new OpenCL 1.2* features like compile and link of OpenCL programs. </span></li>
</ul><li><span>Enhanced Integration with Profiling Tools, Amplified Coverage of the Intel HD Graphics</span></li>
<ul><li><span>Intel® HD Graphics OpenCL profiling support with<a href="http://software.intel.com/en-us/vcsource/tools/intel-gpa"> Intel Graphics Performance Analyzers 2013 R1</a></span></li>
<li><span>Enhanced profiling support with <a href="http://software.intel.com/en-us/vcsource/tools/vtune-amplifier-xe">Intel® VTune™ Amplifier XE 2013</a> Update 4 or higher</span></li>
</ul><ul><li><span>OpenCL Kernel Source Code Hotspots Analysis on the CPU</span></li>
<li><span>Preview feature: Intel® HD Graphics OpenCL profiling </span></li>
</ul><p><img alt="Kernel Builder - standalone utility to create, analyze, and build OpenCL kernels" height="381" style="vertical-align:text-bottom" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/Kernel-builder-2.png" /></p>
<p style="text-align:left"><strong><span>Kernel Builder - standalone utility to create, analyze, and build OpenCL kernels</span></strong></p>
<p style="text-align:center"></p>
<p style="text-align:left"><b>Download the SDK for free at <a href="http://feedproxy.google.com/C%3A/Work/OpenCL/product/GTM/Product%20Launch/2013-gold-launch/release-content/web-site-copies/intel.com/software/opencl" rel="nofollow">intel.com/software/opencl</a></b></p>
<p style="text-align:left"><strong><span>Don’t forget to follow us on Twitter at </span><a href="https://twitter.com/#!/IntelOpenCL" rel="nofollow">@IntelOpenCL</a></strong></p>
<p style="text-align:left"><span><br /></span></p>
<p style="text-align:left"><span>Regards,</span></p>
<p style="text-align:left"><span>Arnon Peleg, Intel® SDK for OpenCL Product Management</span></p>
<p style="text-align:left"></p>
<p style="text-align:center"></p>
<p style="text-align:left"><span><br /></span></p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/40062" typeof="skos:Concept" property="rdfs:label skos:prefLabel">OpenCL Application</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/17405" typeof="skos:Concept" property="rdfs:label skos:prefLabel">openCL</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/22374" typeof="skos:Concept" property="rdfs:label skos:prefLabel">OpenCL SDK</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20778" typeof="skos:Concept" property="rdfs:label skos:prefLabel">News</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Oq5iQt87JMk:ce5-9YPNwGA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Oq5iQt87JMk:ce5-9YPNwGA:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Oq5iQt87JMk:ce5-9YPNwGA:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=Oq5iQt87JMk:ce5-9YPNwGA:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/Oq5iQt87JMk" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/3dvp_oWX-Og" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/02/opencl-developers-kit-2013-now-available-with-support-for-opencl-1-2-and-future-4th-gen-intel%c2%ae-core%e2%84%a2-processor/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Oq5iQt87JMk/announce-opencl-sdk-2013</feedburner:origLink></item>
		<item>
		<title>The Intel Xeon Phi coprocessor: What is it and why should I care? Part 2: Getting even more parallelism</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/GFKs15B9m0E/the-intel-xeon-phi-coprocessor-what-is-it-and-why-should-i-care-part-2-getting-even</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4pfGccDnxhk/the-intel-xeon-phi-coprocessor-what-is-it-and-why-should-i-care-part-2-getting-even#comments</comments>
		<pubDate>Mon, 01 Apr 2013 23:00:14 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=a0ae785aa7ca6dd423ecabd2ef9c1ec1</guid>
		<description><![CDATA[  TITLE: “The Intel Xeon Phi coprocessor: What is it and why should I care?”
 PART 2: “Getting even more parallelism”
 In part 1, we talked about how it was possible to squeeze all those 60+ cores onto one slab of silicon. Even so, 60+ Intel® ... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4pfGccDnxhk/the-intel-xeon-phi-coprocessor-what-is-it-and-why-should-i-care-part-2-getting-even">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p> TITLE: “The Intel Xeon Phi coprocessor: What is it and why should I care?”</p>
<p> PART 2: “Getting even more parallelism”</p>
<p> In part 1, we talked about how it was possible to squeeze all those 60+ cores onto one slab of silicon. Even so, 60+ Intel® Pentiums® processors do not get you all the way to the actual performance of an Intel Xeon Phi coprocessor. You need to be able to magnify the computational advantage of those 60+ cores even further, and given the design of the Intel MIC architecture, that means even more parallelism. The designers found two different ways of magnifying the capability of each of those Intel® Pentium® generation cores. The first was by increasing the number of hardware threads that can execute per core. Do you recall a claim that we only use a quarter of the capability of our brain? The same can be said of a computer core. It has a whole host of capability there, but much of it lies unused. For example, if you are doing an add instruction, what is the multiplication circuitry doing, playing Pinochle? </p>
<p>That circuitry is just sitting there idle, taking up room and energy but doing little else. So why not use it? Intel® did just that by enabling cores to execute multiple instructions simultaneously, assuming that they did not need the same circuitry at the same time. Modern IA cores do this today by allowing two hardware threads to execute simultaneously. Given the special purpose environment of the Intel Xeon Phi coprocessor, the designers knew they could get away with four simultaneous threads. Now remember, four simultaneous instructions is the maximum per core. The actual number of HW threads you can get away with will vary. For the well-optimized application, it is roughly three.</p>
<p> Even given four threads executing per core, it was still not enough given the generational difference between the modern big core and the Intel® Pentium® generation. The Intel MIC Architecture still needed more parallelism. </p>
<p> First let me give you some background. SIMD is Single Instruction, Multiple Data. This describes one of four possible computer architectures as defined by Flynn in 1966. The conventional computers we are all familiar with are SISD, or Single Instruction, Single Data. SISD means that the computer can execute only one instruction on one piece of data at one time. SIMD is where you have that one instruction operating on multiple pieces of data simultaneously. Here is a simple way to visualize this. Say we have eight pairs of numbers to add. A SISD computer, i.e. a conventional computer, will perform eight adds, one right after another. In contrast, a SIMD computer will lay both sets of eight data items in a row, and execute that same instruction simultaneously, i.e. in parallel, on each pair. Thus you have a Single Instruction operating simultaneously on Multiple Data.</p>
<p> <img alt="" height="247" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/IntroMICShortFig3c_simd.jpg" /></p>
<p>Most modern processors since the Intel® Pentium® generation have had this SIMD capability. For example, the Intel® Pentium® processor with its MMX™ SIMD technology could add two floating point numbers, or 64-bits, simultaneously. So in our above example, the Intel® Pentium® processors could theoretically add those eight FP (floating point) values in four instructions by taking two at a time. Life, and the computer industry, have not been idle since the Intel® Pentium® MMX™ days and have constantly expanded upon the original MMX™ SIMD technology. Intel® AVX, the latest generation, has a 256-bit (eight FP values) SIMD engine compared to the Intel® Pentium® processor’s 64-bit (two FP values) SIMD engine. </p>
<p> This is how the Intel MIC Architecture gets the scaling it needs. It combines a large number (i.e. many) of Intel® Pentium® generation cores (60+), enhances those cores with the ability to run four threads per core, and adds to that a whopping 512-bit (16 FP value) SIMD engine. Putting it all together, you have the capability to do greater than 60*4*16 = 3840 instructions, simultaneously. Unfortunately, this does not translate to 3840 simultaneous FP operations since only one of those four threads can use the SIMD engine at a time. </p>
<p> </p>
<p>Next: PART 3: “Splitting Hares and Tortoises too”</p>
<p> </p>
<p> </p>
<p> </p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/41159" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Intel Xeon Phi Coprocessor</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/41332" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Intel Xeon Phi</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/36814" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Xeon Phi</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/42246" typeof="skos:Concept" property="rdfs:label skos:prefLabel">KNC</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/20657" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Knights Corner</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/18937" typeof="skos:Concept" property="rdfs:label skos:prefLabel">MIC</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/42245" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Taylor Kidd</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/17875" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Many Core</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/34504" typeof="skos:Concept" property="rdfs:label skos:prefLabel">manycore</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20782" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Technical Article</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4pfGccDnxhk:A6dplFg5ZRs:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4pfGccDnxhk:A6dplFg5ZRs:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=4pfGccDnxhk:A6dplFg5ZRs:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=4pfGccDnxhk:A6dplFg5ZRs:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/4pfGccDnxhk" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/GFKs15B9m0E" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/01/the-intel-xeon-phi-coprocessor-what-is-it-and-why-should-i-care-part-2-getting-even-more-parallelism/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/4pfGccDnxhk/the-intel-xeon-phi-coprocessor-what-is-it-and-why-should-i-care-part-2-getting-even</feedburner:origLink></item>
		<item>
		<title>The Evolution of Game Development: Everything Old is New Again (and vice versa)</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/SRu161RWqeE/the-evolution-of-game-development-everything-old-is-new-again-and-vice-versa</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/jZZ_CS-9ez8/the-evolution-of-game-development-everything-old-is-new-again-and-vice-versa#comments</comments>
		<pubDate>Mon, 01 Apr 2013 22:48:15 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=4cf59461a9bf77080fcb4c8df477943e</guid>
		<description><![CDATA[ According to a recent survey of game developers, the industry is seeing a slow but steady shift away from console development towards PC and mobile games:
“Thirteen percent of respondents called themselves current PS3 developers, and just 12.4 perce... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/jZZ_CS-9ez8/the-evolution-of-game-development-everything-old-is-new-again-and-vice-versa">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p><span>According to a recent survey of game developers, the industry is seeing a slow but steady shift away from console development towards PC and mobile games:</span></p>
<p>“Thirteen percent of respondents called themselves current PS3 developers, and just 12.4 percent planned their next game for the PS3. The Xbox 360 only does slightly better: 13.2 percent for now, and 14 percent for the future. (Eleven percent of the devs polled said they're making games for the next-generation PlayStation 4 and the "Xbox 720," or whatever Microsoft ends up calling the 360's successor.)</p>
<p>And don't even think about Nintendo's Wii or dedicated handheld game devices. Just 4.6 percent of developers are actively making a Wii game, although 6.4 percent say they'll do so in the future. A mere 4.2 percent are working PlayStation Vita games, with about 5 percent saying they have future plans. Barely 2.8 percent say they're developing future games for the Nintendo DS.” - <a href="http://readwrite.com/2013/03/04/game-consoles-already-dead-developers-know-it" rel="nofollow">ReadWriteWeb</a></p>
<p>The <a href="http://www.gdconf.com/news/gdc_state_of_the_industry_rese.html" rel="nofollow">survey</a> went on to say that 48% of developers are developing current games for this platform, and 49% are planning their next games for the PC.  Tablets and smartphones are grabbing most developers’ time and interest, with 58% and 56% (respectively) interested in developing games for these platforms.</p>
<p><b>The rise of the PC in game development</b></p>
<p>Console sales are falling. According to one industry analyst, sales of video game consoles, accessories, and software fell in 2012 by 28%. The top-selling game in 2012 was for PCs, which boosted year over year sales by 230%:</p>
<p>"Historically the PC game market has taken a lead in commercial innovation compared to the console sector," said Piers Harding-Rolls, senior principal analyst and head of games for IHS Screen Digest. "This innovation has extended to business model -- the introduction of subscriptions and micro-transactions -- and across digital business." – “<a href="http://tech.fortune.cnn.com/2012/07/05/could-pc-gaming-make-a-comeback/?utm_source=GaggleAMP-The%20NPD%20Group%20Toys/Games&amp;utm_medium=Twitter%20(GaggleAMP)&amp;utm_content=24151-Could%20PC%20gam&amp;utm_campaign=(GaggleAMP)" rel="nofollow">Is PC Gaming Making a Comeback?”</a> – CNN Tech</p>
<p>Over $20 billion in sales were made in 2012 for PC games alone, and this number is estimated to go even higher in 2013 even though mobile and social gaming are the most popular that they have ever been. Yearly growth of the PC game market according to a report released from gaming industry watchdog PC Gaming Alliance was 8%, with more than a billion PC gamers estimated around the world:</p>
<p>“The PC Gaming industry showed strong overall growth of 8% in 2012, partly as a result of the Chinese market gaining traction in the $20 billion global market with record revenues of $6.8 billion,” said <a href="http://www.dfcint.com/" rel="nofollow">DFC</a> analyst David Cole. “In spite of media focus on mobile games and struggling social network games, there are now over 1 billion PC gamers worldwide and that number will continue to grow as more PCs connect online.”  - <a href="http://pcgamingalliance.org/press/entry/pc-gaming-alliance-releases-two-member-exclusive-reports" rel="nofollow">PC Gaming Alliance</a></p>
<p>Perhaps the strongest advantage that PCs have over consoles in the realm of game development is simply the fact that many people already own a PC, and there’s no need to go out and purchase an expensive system that could be relatively obsolete in a year. PCs are easily upgraded and can be somewhat easily fixed (if you know what you’re doing, of course).</p>
<p><b>Factors that influence the move away from consoles</b></p>
<p>Why are developers moving away from consoles and towards PC and mobile game development? According to some studios, money is definitely something that is influencing this move:</p>
<p>“Mobile platforms are much more open than a console, and don’t have the restrictions of a working with a publisher. Console game development comes with a much bigger price: big title console game studios maintain budgets around $80 - $100 million, while most small to mid-size mobile gaming studios have budget closer to $200,000 - $400,000.</p>
<p>However, mobile game development budgets are growing because of the final contributing factor: earnings potential. Supercell reports earnings around $1 million per day for its games, and Gungho’s Puzzles and Dragons game is bringing in around $2 million daily. The monetization potential on mobile is much higher, and coupled with a lower development cost, there’s a huge opportunity to earn significant revenue.” – “Game over? Video game and console sales take a head shot”, <a href="http://www.bizjournals.com/losangeles/news/2013/01/15/2012-video-game-sales-dropped-22-percent.html?page=all" rel="nofollow">LA Biz Journals</a></p>
<p>While money is certainly something that needs to be factored in, there are other issues that come into play. According to a <a href="http://www.valvesoftware.com/publications/2008/GDC2008_CrossPlatformDevelopment.pdf" rel="nofollow">presentation given by Valve Software</a> on cross-platform game development, common issues include:</p>
<ul><li>Developer efficiency</li>
<li>Certification failure</li>
<li>User experience</li>
<li>Programming issues</li>
</ul><p>The presentation is quite long and is meant as a higher level look at cross-platform development; however, the basic takeaway is this: “If it runs well on console, it’s easy to make it run well on PC.” That’s really the $64,000 question though – how many games run well enough on consoles to make the transition to PC easy; or if not easy, at least justifiable?</p>
<p>Different games run on different platforms, operating systems, device models, different screen adaptations, aspect ratios, even different versions of the same platform. Developing games for all the different platforms out there is (to say the least) a time-consuming process. Developers have to optimize game projects for each device, taking the time to test everything so there aren’t problems down the road.  While it’s certainly fantastic that we have a wide variety of devices available to us as consumers, for developers, making games that will function on the majority of the devices on the market is becoming an increasingly more difficult task.</p>
<p><b>Retro gaming is making a comeback</b></p>
<p>Don’t count out the console just yet, though. There’s definitely a strong audience for new releases of retro games on both new and classic consoles, as well as the PC and mobile devices. In addition, emulators on the PC, Wii, and smartphones can make retro games function just as well as their more recent counterparts. This isn’t necessarily something that pays well (or even at all); it’s more of a hobby for dedicated developers who are looking to revitalize a fond memory from their younger days:</p>
<p>“When we first started to talk about developing a game for the Mega Drive we had no intentions of turning it into a hit. When the group of developers and designers first gathered after talking on forums about retro games, we simply took the idea seriously and began to work. It felt like being twelve years old and the boss of the arcade game room….. All of our team members have jobs that have little to do with games,” says Roel van Mastbergen of Dutch indie studio Senile Team, which released Rush Rush Rally Racing for the Dreamcast to celebrate its tenth anniversary in 2009. “Game development is just something we love to do in our spare time - if we have any.” – “<a href="http://www.redbull.co.uk/cs/Satellite/en_UK/Article/Time-Team--Meet-the-Gamers-Keeping-Retro-Consoles-021243330672345" rel="nofollow">Meet the Gamers Keeping Retro Consoles Alive”</a></p>
<p>How many of us have old Gameboys, SEGAs, even an Atari (now that’s a blast from the past!) systems kicking around collecting dust? These systems aren’t as fancy as their current counterparts, but for sheer nostalgia they can’t be beat.</p>
<p><b>Where will game developers go next? </b></p>
<p>From consoles to PC to mobile, there are a lot of choices out there for game developers. Problems are inherent on whichever platform they choose, and it’s going to be intriguing to see where the industry continues to head. As a developer, what do you think of the move away from console development? What do you think is the current state of game development and where is the industry headed next? Please share your comments.</p>
<p> </p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/17237" typeof="skos:Concept" property="rdfs:label skos:prefLabel">game development</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/17738" typeof="skos:Concept" property="rdfs:label skos:prefLabel">gdc</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/19294" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Game Developers</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20782" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Technical Article</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=jZZ_CS-9ez8:EKUVJmR0Ooc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=jZZ_CS-9ez8:EKUVJmR0Ooc:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=jZZ_CS-9ez8:EKUVJmR0Ooc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=jZZ_CS-9ez8:EKUVJmR0Ooc:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/jZZ_CS-9ez8" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/SRu161RWqeE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/01/the-evolution-of-game-development-everything-old-is-new-again-and-vice-versa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/jZZ_CS-9ez8/the-evolution-of-game-development-everything-old-is-new-again-and-vice-versa</feedburner:origLink></item>
		<item>
		<title>Ultimate Coder 2, Week 6 :: Glossal Input Schema</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/UqHbJDoudhg/ultimate-coder-2-week-6-glossal-input-schema</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/rFp0UyODotI/ultimate-coder-2-week-6-glossal-input-schema#comments</comments>
		<pubDate>Mon, 01 Apr 2013 22:24:48 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=323df30514964393355321f736bb99be</guid>
		<description><![CDATA[ We’re fresh back from GDC and wow…what a great conference! We had so much fun meeting the other contestants, making fun of Lee, and showing off Stargate Gunship to hordes of Stargate fans. Any day you can make a fanboi literally squeak in delight ... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/rFp0UyODotI/ultimate-coder-2-week-6-glossal-input-schema">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p>We’re fresh back from GDC and wow…what a great conference! We had so much fun meeting the other contestants, making fun of Lee, and showing off Stargate Gunship to hordes of Stargate fans. Any day you can make a <a href="http://www.urbandictionary.com/define.php?term=fanboi" rel="nofollow">fanboi</a> literally squeak in delight – that’s a good day.</p>
<p>But one of the real high points of the conference was a real-world field test of a technology we’ve been tinkering with for the last several weeks:<br /><strong>Tongue Tracking.</strong></p>
<p>I know that might come as a surprise but consider the following:</p>
<ul><li>The tongue is easily identifiable as a landmark with sharp edges and a definite ‘point.’</li>
<li>For the typical user, the tongue is a highly agile appendage with far-greater accuracy and lower latency than landmarks like the nose or chin.</li>
<li>The tongue moves independently of other landmarks like the eyes or head. </li>
</ul><p>In short, the tongue provides unique advantages in the perceptual environment and could provide an entirely untapped resource for full-facial input modalities.</p>
<p><img alt="" height="180" style="float:right" width="180" src="http://software.intel.com/sites/default/files/styles/square_thumbnail/public/geneSimmons.jpg" />To give credit where it’s due, we really must cite the decades long and pioneering work of Dr. <a href="http://en.wikipedia.org/wiki/Gene_Simmons"  rel="nofollow">G. Simmons</a> who says of his own work, “You can't go through life and leave things the way they are. We can all make a difference, and if I die today, I know I made a difference." (Read more at: <a href="http://www.brainyquote.com/quotes/authors/g/gene_simmons.html#6H0IHxJPUkSGvFRh.99" rel="nofollow">http://www.brainyquote.com/quotes/authors/g/gene_simmons.html#6H0IHxJPUkSGvFRh.99</a>)</p>
<p>Mr. Simmons has been an advocate of <strong><em>glossal</em></strong> and <em><strong>lingual</strong></em> efficacy since the early 70s but technology has been a limiting factor in his work. Tools like the perceptual camera offer a real opportunity to see this as a genuine path for further exploration. In our case, we created a special gesture, the <a href="http://www.google.com/search?q=secret+devil+sign&amp;hl=en&amp;client=safari&amp;rls=en&amp;tbm=isch&amp;tbo=u&amp;source=univ&amp;sa=X&amp;ei=0wZaUeOeB-7FiwKunoGQCg&amp;ved=0CDgQsAQ&amp;biw=1649&amp;bih=1059"  rel="nofollow">SDS</a>, which is used to activate the tongue-tracking feature. As you’ll see in the video, once activated the glossal translation is easily mapped to, in our case, the motion of the camera within the scene.</p>
<p>We hope this work can be a stepping-stone to greater use of alternate input methods and look forward to possible future collaboration with Dr. Simmons and other in this exciting field.</p>
<div class="oembed oembed-video"><a href="http://www.youtube.com/watch?v=ygej3jjmqTM" class="oembed-title">Stargate Gunship Gene Simmons Perceptual Mode at GDC</a><div class="oembed-content"><iframe width="480" height="270" src="http://www.youtube.com/embed/ygej3jjmqTM?feature=oembed" frameborder="0" allowfullscreen></iframe></div></div> </div></div></div><section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20773" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Contest</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/articles/type/20782" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Technical Article</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=rFp0UyODotI:UpdZVx-lRZY:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=rFp0UyODotI:UpdZVx-lRZY:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=rFp0UyODotI:UpdZVx-lRZY:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=rFp0UyODotI:UpdZVx-lRZY:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/rFp0UyODotI" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/UqHbJDoudhg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/01/ultimate-coder-2-week-6-glossal-input-schema/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/rFp0UyODotI/ultimate-coder-2-week-6-glossal-input-schema</feedburner:origLink></item>
		<item>
		<title>Ultimate Coder Challenge: Sixense Studios – Week 6</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/4QV5tBOMudY/ultimate-coder-challenge-sixense-studios-week-6</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/GHcQpXqeT64/ultimate-coder-challenge-sixense-studios-week-6#comments</comments>
		<pubDate>Mon, 01 Apr 2013 17:47:08 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=e45a466e586972519f55dd15d9d44e58</guid>
		<description><![CDATA[ Hey everyone, chip from Sixense reporting in once again.  Wow, I am beat.  Two days after GDC and my feet are still throbbing.  I slept most of Saturday away and now here I am wide awake on on Sunday night with a messed-up sleep schedule.  This se... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/GHcQpXqeT64/ultimate-coder-challenge-sixense-studios-week-6">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p>Hey everyone, chip from Sixense reporting in once again.  Wow, I am beat.  Two days after GDC and my feet are still throbbing.  I slept most of Saturday away and now here I am wide awake on on Sunday night with a messed-up sleep schedule.  This seems like as good a time as any to write our blog post.  At least by writing it now, I can sleep in a bit longer tomorrow. </p>
<h2>GDC</h2>
<p>Although GDC week was busy and exhausting, we had a fantastic show. It was great to meet so many of our fellow contestants in person. There are some great projects coming out of this contest and it’s inspiring to see them all first-hand. Great job everyone!</p>
<p>On the GDC show floor, we were running Puppet In Motion on the Yoga at 60fps and we could have two people interacting with the puppets at once. We were also able to use the recording feature, which was a fun surprise for unsuspecting users. :)  Here’s one of the videos we recorded on the show floor:</p>
<div class="oembed oembed-video"><a href="http://www.youtube.com/watch?v=98AbqEckMl4" class="oembed-title">PuppetInMotion-GDC2013</a><div class="oembed-content"><iframe width="480" height="270" src="http://www.youtube.com/embed/98AbqEckMl4?feature=oembed" frameborder="0" allowfullscreen></iframe></div></div>
<h2>Scope</h2>
<p>In the two weeks since our last post, we have been honing in on delivering a solid core experience.  Even though we had parts of the online multiplayer working, we decided that it was too ambitious for the scope of the contest.  Instead we focused on solidifying the movie capture/export process, since being able to share the stories you create is fundamental to what we are trying to do. We also (foolishly) upgraded our Unity installations, which resulted in lots of errors and editor crashes. We rolled back to the version we had started the project with (4.01), but ended up losing about a day in productivity.</p>
<h2>Puppet and Set Interaction</h2>
<p>We finally got one of our pigs rigged and brought into the game. It was pretty easy to hook the model up to our puppet controller. This time around, we had a puppet animating within 4-5 minutes after importing it!  Danny learned quite a bit about Unity and physics collisions due to all the work he did for the <a title="Oculus + RazerHydra Demo" href="http://www.roadtovr.com/2013/03/30/gdc-2013-oculus-rift-razer-hydra-tuscany-unity-demo-4401"  rel="nofollow">Oculus Rift + Razer Hydra VR demo</a> we put together for GDC. He was able to get our puppets colliding with the world and constrained to a “box” around the camera so that they wouldn’t fly off-screen. This “fix” will be an iterative process because there are times when we will want the puppets to move off-screen. Ragdoll is another great feature we were able to revive. This makes the puppets a little more dynamic and adds some life to the otherwise stiff puppets.  Personally, the floppy ears are my favorite. </p>
<h2>Art and Performance</h2>
<p>In the art department, Dan has been busy populating the scene and wow it is looking great! Of course, we then needed to aggressively optimize it for the Lenova and the application's debut at GDC. We had issues with alpha cards being used for plants and far tree assets maxing our fillrate so we’ve been swapping these out for higher poly cutout versions; trading texture expense for poly count. In the end we had the Lenova ultrabook running at 60fps and 30fps or more while recording.</p>
<h2>Polish</h2>
<p>GDC left us with a lot of user feedback that we’re now incorporating into Puppet In Motion. There’s not much time left in this contest, so we’ll be working hard to ensure we deliver the best experience we can. If you were at GDC, we hope you had fun with our demos.</p>
<p> Lastly, It was great to meet everyone in person at the Intel Coder Challenge dinner at GDC!</p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/41119" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultimate coder</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/41222" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultimate coder challenge</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/20565" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultrabook</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20773" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Contest</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=GHcQpXqeT64:Hi56DdqcHc0:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=GHcQpXqeT64:Hi56DdqcHc0:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=GHcQpXqeT64:Hi56DdqcHc0:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=GHcQpXqeT64:Hi56DdqcHc0:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/GHcQpXqeT64" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/4QV5tBOMudY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/01/ultimate-coder-challenge-sixense-studios-week-6/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/GHcQpXqeT64/ultimate-coder-challenge-sixense-studios-week-6</feedburner:origLink></item>
		<item>
		<title>Infrared5 Ultimate Coder Week Six: GDC, Mouth Detection Setbacks, Foot Tracking and Optimizations Galore</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/yspz55l_16k/infrared5-ultimate-coder-week-six-gdc-mouth-detection-setbacks-and-optimizations</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/nlH5HFzlWXw/infrared5-ultimate-coder-week-six-gdc-mouth-detection-setbacks-and-optimizations#comments</comments>
		<pubDate>Mon, 01 Apr 2013 16:22:46 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=7958a2b0a317d1c63979fc58b0fa161e</guid>
		<description><![CDATA[ For week six Chris and Aaron made the trek out to San Fransisco to the annual Game Developers Conference (GDC) where they showed the latest version of our game Kiwi Catapult Revenge. The feedback we got was amazing! People were blown away at the head ... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/nlH5HFzlWXw/infrared5-ultimate-coder-week-six-gdc-mouth-detection-setbacks-and-optimizations">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p><span>For week six Chris and Aaron made the trek out to San Fransisco to the annual Game Developers Conference (GDC) where they showed the latest version of our game Kiwi Catapult Revenge. The feedback we got was amazing! People were blown away at the head tracking performance that we’ve achieved, and everyone absolutely loved our unique art style. While the controls were a little difficult for some, that allowed us to gain some much needed insight into how to best fine tune the face tracking and the smartphone accelerometer inputs to make a truly killer experience. There’s nothing like live playtesting on your product!</span></p>
<p><b><br /><span></span></b></p>
<p><img alt="" height="360" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/aaron.jpg" /></p>
<p><b><br /><span></span></b></p>
<p><span>Not only did we get a chance for the GDC audience to experience our game, we also got to meet some of the judges and the other Ultimate Coder competitors. There was an incredible amount of mutual respect and collaboration among the teams. The ideas were flowing on how to help improve each and every project in the competition. Chris gave some tips on video streaming protocols to Lee so that he will be able to stream over the internet with some decent quality (using compressed JPEGs would have only wasted valuable time). The guys from Sixense looked into Brass Monkey and how they can leverage that in their future games, and we gave some feedback to the Code Monkeys on how to knock out the background using the depth camera to prevent extra noise that messes with the controls they are implementing. Yes, this is a competition, but the overall feeling was one of wanting to see every team produce their very best.</span></p>
<p><b><br /><span></span></b></p>
<p><span>The judges also had their fair share of positive feedback and enthusiasm. The quality of the projects obviously had impressed them, to the point that Nicole was quoted saying “I don’t know how we are going to decide”. We certainly don’t envy their difficult choice, but we don’t plan on making it any easier for them either. All the teams are taking it further and want to add even more amazing features to their applications before the April 12th deadline. </span></p>
<p><b><br /><span></span></b></p>
<p><span>The staff in the Intel booth were super accommodating, and the exposure we got by being there was invaluable to our business. This is a perfect example of a win-win situation. Intel is getting some incredible demos of their new technology, and the teams are getting exposure and credibility by being in a top technology company’s booth. Not only that, but developers now get to see this technology in action, and can more easily discover more ways to leverage the code and techniques we’ve pioneered. Thank you Intel for being innovative and taking a chance on doing these very unique and experimental contests!</span></p>
<p><b><br /><span></span></b></p>
<p><span>While Aaron and Chris were having a great time at GDC the rest of the team was cranking away. Steff ran into some walls with mouth detection for the breathing fire controls, but John, Rebecca and Elena were able to add more polish to the characters, environment and game play. </span></p>
<p><b><br /><span></span></b></p>
<p><img alt="" height="266" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/screenshot.jpg" /></p>
<p><b><br /><span></span></b></p>
<p><span>John added on a really compelling new feature - playing the game with your feet! We switched the detection algorithm so that it tracks your feet instead of your face. We call it Foot Tracking. It works surprisingly well, and the controls are way easier this way.</span></p>
<p><b><br /><span></span></b></p>
<p><img alt="" height="360" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/barefeet.jpg" /></p>
<p><b><br /><span></span></b></p>
<p><span>Steff worked on optimizing the face tracking algorithms and came up with some interesting techniques to get the job done.</span></p>
<p><b><br /><span></span></b></p>
<p><span>This week’s tech tip and code snippet came to us during integration. We were working hard to combine the head tracking with the Unity game on the Ultrabook, and ZANG we had it working! But, there was a problem. It was slow. It was so slow it was almost unplayable. It was so slow that it definitely wasn’t “fun.” We had about 5 hours until Chris was supposed to go to the airport and we knew that the head tracking algorithms and the camera stream were slowing us down. Did we panic? (Don’t Panic!) No. And you shouldn’t either when faced with any input that is crushing the performance of your application. We simply found a clever way to lower the sampling rate but still have smooth output between frames. </span></p>
<p><b><br /><span></span><span>The first step was to reduce the number of times we do a head tracking calculation per second. Our initial (optimistic) attempts were to update in realtime on every frame in Unity. Some computers could handle it, but most could not. Our Lenovo Yoga really bogged down with this. So, we introduced a framesToSkip constant and started sampling on every other frame. Then we hit a smoothing wall. Since the head controls affect every single pixel in the game window (by changing the camera projection matrix based on the head position), we needed to be smoothing the head position on every frame regardless of how often we updated the position from the camera data. Our solution was to sample the data at whatever frame rate we needed to preserve performance, save the head position at that instant as a target, and ease the current position to the new position on every single frame. That way, your sampling rate is down, but you’re still smoothing on every frame and the user feels like the game is reacting to their every movement in a non-jarring way. (For those wondering what smoothing algorithm we selected:  </span><a href="http://en.wikipedia.org/wiki/Exponential_smoothing" rel="nofollow"><span>Exponential Smoothing</span></a><span> handles any bumps in the data between frames.) Code is below. </span></b></p>
<p><pre class="brush: csharp">
using UnityEngine;
using System.Collections;
using System;
using System.Runtime.InteropServices;

public class IntelPerCompController : MonoBehaviour 
{
 private Vector3 facePosition = new Vector3(0.0f, 0.0f, 0.5f);
 private Vector3 targetFacePosition = new Vector3(0.0f, 0.0f, 0.5f);
 private FaceTrackerWrapper faceTracker;
 private bool faceTrackingIsWorking = false;
 // storage for the number of frames we have to play until we need to get an update from
 // the camera (on head position)
 private uint cntToNextUpdate = 0;
 // the number of frames to skip to reduce the sampling rate to the camera
 private const uint framesToSkip = 2;
 private bool showOpenCVWindow = false;
 private bool gotUpdateFromCamera = false;

 public Vector3 fireDirection;

 void Start() 
 {
 Debug.Log("IntelPerCompController :: Start");
 fireDirection = new Vector3(0, 0, 1);
 faceTracker = new FaceTrackerWrapper();
 // location of the haar cascade file for openCV to load in the DLL
 string haarPath = @"./Assets/haarcascade_frontalface_alt.xml";
 int a = faceTracker.InitTracking(haarPath);
 // save if we initialized successfully
 faceTrackingIsWorking = (a == 0);
 // output result to log
 Debug.Log("faceTrackingIsWorking = " + faceTrackingIsWorking);
 }


 void OnDestroy()
    {
 //Debug.Log("OnDestroy");
 // shut down the camera
 //faceTracker.EndTracking();
    }


 void Update()
 {
 if (faceTrackingIsWorking)
 {
 gotUpdateFromCamera = false;
 // check if we're due to update the head position from the camera data
 if (cntToNextUpdate == framesToSkip)
 {
 // always check if we have successfully advanced frames
 gotUpdateFromCamera = faceTracker.AdvanceFrame();
 //Debug.Log("gotNewFrame = " + gotNewFrame);

 if (gotUpdateFromCamera)
 {
 // get the values for the new face position
 float newX = faceTracker.GetFaceX();
 float newY = faceTracker.GetFaceY();
 float newZ = faceTracker.GetFaceZ();
 Vector3 newPos = new Vector3(newX, newY, newZ);
 // save the new value in facepos for the projection calc and to smooth on the next frame
 targetFacePosition.x = newPos.x;
 targetFacePosition.y = newPos.y;
 targetFacePosition.z = newPos.z;
 //Debug.Log("facePosition = " + facePosition);

 // reset the count to the next camera update
 cntToNextUpdate = 0;
 }
 }
 else
 {
 // count until we need to make a new update
 cntToNextUpdate++;
 }
 // smooth on every frame toward the last target position from the camera
 facePosition = DataSmoothingUtil.ExponentialSmoothing3(targetFacePosition, facePosition, 0.18f);
 }
 // check if the user is holding down the left cntrl key
 if (Input.GetKey(KeyCode.LeftControl))
 {
 // if w, toggle the results window
 if (Input.GetKeyDown(KeyCode.W))
 {
 showOpenCVWindow = !showOpenCVWindow;
 faceTracker.ShowResultsWindow(showOpenCVWindow);
 }
 // if q, quit the app
 if (Input.GetKeyDown(KeyCode.Q))
 {
 Application.Quit();
 }
 }
 }


 void LateUpdate() 
 {
 // still update every frame to show the last smoothed result
 if (faceTrackingIsWorking)
 {
 float n = Camera.main.nearClipPlane;
 float f = Camera.main.farClipPlane;

 // all below in real world space
 // screen's bottom left corner 
 Vector3 pa = new Vector3(-0.145f, -0.135f, 0.02f);
 // screen's bottom right corner
 Vector3 pb = new Vector3(0.145f, -0.135f, 0.02f);
 // screen's top left corner
 Vector3 pc = new Vector3(-0.145f, 0.1f, 0.0f);
 // face position 
 Vector3 pe = new Vector3(-facePosition.x, -facePosition.y, facePosition.z);
 //Debug.Log("pe: " + pe);

 Camera.main.projectionMatrix = generalizedPerspectiveProjection(pa, pb, pc, pe, n, f);

 // calculate the direction that things should fire (so it feels like it is coming from your head)
 Vector3 p = Camera.main.ViewportToWorldPoint(new Vector3(0.5F, 0.5F, 10.0F));
 //q.SetFromToRotation(p, Camera.main.transform.position);
 // store the fireDirection as a normalized vector (for fun!! or possible smoothing later if needed)
 p = p - Camera.main.transform.position;
 fireDirection = p.normalized;
 Quaternion q = new Quaternion();
 q.SetLookRotation(fireDirection);
 PlayerController.Instance.CurrentHeadRotation = q;
 }
 }


 Matrix4x4 generalizedPerspectiveProjection(Vector3 pa, Vector3 pb, Vector3 pc, Vector3 pe, float n, float f) 
 {
 // Compute an orthonormal basis for the screen.
 Vector3 vr = pb - pa;
 vr.Normalize();
 Vector3 vu = pc - pa;
 vu.Normalize();
 Vector3 vn = Vector3.Cross(vr, vu);
 vn.Normalize();

 // Compute the screen corner vectors.
 Vector3 va = pa - pe;
 Vector3 vb = pb - pe;
 Vector3 vc = pc - pe;

 // Find the distance from the eye to screen plane.
 float d = -Vector3.Dot(va, vn);

 // Find the extent of the perpendicular projection.
 float m = n / d;
 float l = Vector3.Dot(vr, va) * m;
 float r = Vector3.Dot(vr, vb) * m;
 float b = Vector3.Dot(vu, va) * m;
 float t = Vector3.Dot(vu, vc) * m;

 // projection matrix 
 Matrix4x4 p = Matrix4x4.identity;
 p[0,0] = 2.0f * n / (r - l);
 p[0,1] = 0.0f;
 p[0,2] = (r + l)/(r - l);
 p[0,3] = 0.0f;

 p[1,0] = 0.0f;
 p[1,1] = 2.0f * n / (t - b);
 p[1,2] = (t + b) / (t - b);
 p[1,3] = 0.0f;

 p[2,0] = 0.0f;
 p[2,1] = 0.0f;
 p[2,2] = (f + n) / (n - f);
 p[2,3] = 2.0f * f * n / (n - f);

 p[3,0] = 0.0f;
 p[3,1] = 0.0f;
 p[3,2] = -1.0f;
 p[3,3] = 0.0f;

 // rotation matrix;
 Matrix4x4 rm = Matrix4x4.identity;
 rm[0,0] = vr.x;
 rm[0,1] = vr.y;
 rm[0,2] = vr.z;
 rm[0,3] = 0.0f;

 rm[1,0] = vu.x;
 rm[1,1] = vu.y;
 rm[1,2] = vu.z;
 rm[1,3] = 0.0f;

 rm[2,0] = vn.x;
 rm[2,1] = vn.y;
 rm[2,2] = vn.z;
 rm[2,3] = 0.0f;

 rm[3,0] = 0.0f;
 rm[3,1] = 0.0f;
 rm[3,2] = 0.0f;
 rm[3,3] = 1.0f;

 // translation matrix;
 Matrix4x4 tm = Matrix4x4.identity;
 tm[0,0] = 1.0f;
 tm[0,1] = 0.0f;
 tm[0,2] = 0.0f;
 tm[0,3] = -pe.x;

 tm[1,0] = 0.0f;
 tm[1,1] = 1.0f;
 tm[1,2] = 0.0f;
 tm[1,3] = -pe.y;

 tm[2,0] = 0.0f;
 tm[2,1] = 0.0f;
 tm[2,2] = 1.0f;
 tm[2,3] = -pe.z;

 tm[3,0] = 0.0f;
 tm[3,1] = 0.0f;
 tm[3,2] = 0.0f;
 tm[3,3] = 1.0f;

 return p * rm * tm;
    }
}</pre></p>
<p><span>Feeling good about the result, we went after mouth open/closed detection with a vengeance! We thought we could deviate from our original plan of using AAM and POSIT, and lock onto the mouth using a mouth specific Haarcascade on the region of interest containing the face. The mouth Haarcascade does a great job finding and locking onto the mouth if the user is smiling - which is not so good for our purposes. We are still battling with getting a good lock on the mouth using a method that combines depth data with RGB, but we have seen why AAM exists for feature tracking. It’s not just something you can cobble together and have confidence that it will work well enough to act as an input for game controls.</span></p>
<p><b><br /><span></span><span>Overall, this week was a step forward even with part of the team away. We’ve got some interesting and fun new features that we want to add as well. We will be sure to save that surprise for next week. Until then, please let us know if you have any questions and/or comments. May the best team win!</span></b></p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/41951" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Intel Ultimate Coder Challenge II</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/41119" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultimate coder</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/41322" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Perceptual Computing</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20773" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Contest</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/articles/type/20782" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Technical Article</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=nlH5HFzlWXw:6uzNt4rEDvo:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=nlH5HFzlWXw:6uzNt4rEDvo:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=nlH5HFzlWXw:6uzNt4rEDvo:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=nlH5HFzlWXw:6uzNt4rEDvo:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/nlH5HFzlWXw" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/yspz55l_16k" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/04/01/infrared5-ultimate-coder-week-six-gdc-mouth-detection-setbacks-foot-tracking-and-optimizations-galore/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/nlH5HFzlWXw/infrared5-ultimate-coder-week-six-gdc-mouth-detection-setbacks-and-optimizations</feedburner:origLink></item>
		<item>
		<title>Ultimate Coder Challenge II : Lee Going Perceptual : Week Six</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/Y3Po4i439W8/ultimate-coder-challenge-ii-lee-going-perceptual-week-six</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Rz98FwMRv_c/ultimate-coder-challenge-ii-lee-going-perceptual-week-six#comments</comments>
		<pubDate>Sun, 31 Mar 2013 09:03:36 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=2a6d356b80bd88da3bb43e72f65d6525</guid>
		<description><![CDATA[ Live From The USA 
I write my penultimate blog of the Ultimate Coder Challenge II from the comfort and isolation of my GDC hotel room, where I spent the Saturday coding away on my Perceptucam app.

To recap, my app attempts to create a virtual telec... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Rz98FwMRv_c/ultimate-coder-challenge-ii-lee-going-perceptual-week-six">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p><b>Live From The USA</b> </p>
<p>I write my penultimate blog of the Ultimate Coder Challenge II from the comfort and isolation of my GDC hotel room, where I spent the Saturday coding away on my Perceptucam app.</p>
<p><img alt="" height="359" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/officeinhotel_0.JPG" /></p>
<p>To recap, my app attempts to create a virtual teleconferencing call between two users, tapping into the Gesture Camera to re-create the user as a 3D avatar in a virtual boardroom. This experience is augmented with a touch based sketch pad, which the called user can view and contribute towards.</p>
<div class="oembed oembed-video"><a href="http://youtu.be/Si5XrctxoHU" class="oembed-title">UCCII Video Blog Six - Whispered Report</a><div class="oembed-content"><iframe width="459" height="344" src="http://www.youtube.com/embed/Si5XrctxoHU?feature=oembed" frameborder="0" allowfullscreen></iframe></div></div>
<p><span>I can report that the GDC event was amazing, and it was really great to meet the other challenge contestants in person. A fantastically talented bunch of guys and gals you could ever hope to meet and I look forward to meeting again at the next developer hang-out.</span></p>
<p><b>The App So Far</b></p>
<p>I have just finished my coding for the night, and I have some observations and progress to report for the current state of the app and where it will be going in the next seven days. At GDC I was able to demonstrate the app to visitors at the Intel booth and discovered a few truths that will change my final deliverable. </p>
<p><b>VOIP and Network Data Syncing</b></p>
<p>After much trial and error, it seems the reason the sound lagged behind the visuals was that the sound buffer takes time to fill it's buffers (at both ends), before actually playing the audio. It actually stores up a section of what you say before sending and playing back for the person you are communicating with. This differs from the visual stuff which plays back instantly. </p>
<p>The solution is to buffer the visual information and then play it back in perfect sync with the sound when it finally arrives. This means the app will consume a sizable chunk of memory to store depth and color information and it also means that time stamping will be needed to sync the two types of media.  Only then will the app deliver a predictable conferencing experience.</p>
<p><b>Voice Recognition In A Crowded Room</b> </p>
<p>One of the most striking failures of the technology at GDC was the voice recognition system, which struggled to detect the words spoken among the noise of a GDC hall. It may be true that most calls will be held in a quiet office but equally it could be made in an airport or call center department. </p>
<div class="oembed oembed-video"><a href="http://youtu.be/gtnuqVzGfHQ" class="oembed-title">UCCII Video Blog Six - Live At GDC</a><div class="oembed-content"><iframe width="480" height="270" src="http://www.youtube.com/embed/gtnuqVzGfHQ?feature=oembed" frameborder="0" allowfullscreen></iframe></div></div>
<p>As you can hear, the background noise at GDC was quite meaty. The lesson here is that the Perceptual SDK needs to include effective noise cancellation technology, and that the voice system should have a non-voice system to control the app as well.  Fortunately my app provides touch buttons as the primary input method, and voice control as a secondary feature, so I dodged a bullet there! </p>
<p><b>Gesture Ambiguity</b> </p>
<p>The number of times I swiped across the Ultrabook to clear the screen of the current drawing numbered in the thousands. Alas the percentage of successful detection's was about 75%. Enough to demonstrate technology, but not enough for an end user who will accept nothing less than 100%. The only perceptual input that performed at 100% was my head tracker which passively got on with the task of controlling the view of the virtual conference room.</p>
<p>In discussions with other developers, it was clear that gestures will be under intense scrutiny from end users when incorporated into apps. Unless it provides something a button or touch cannot do, or provides an improved facility, it will be consigned to the novelty bin. It was also mutually agreed that gestures should be supported by a visual indicator to maintain a constant understanding between the computer and the user. Fail to provide this and your user could be waving their hands about to no avail with growing frustration. </p>
<p>With my remaining days, aside from the essential polishing work, I hope to experiment more with fool proof gestures, perhaps using camera-to-user calibration and visual feedback as a way to achieve the holy grail of 100% predictability.</p>
<p><b>Making Contact</b> </p>
<p>My final 'missing piece' of the app is the 'Contact List' screen which will allow new contacts to be created and used to make connections between registered users.</p>
<p><img alt="" height="255" width="480" src="http://software.intel.com/sites/default/files/styles/large/public/contactpage_0.jpg" /></p>
<p>At the moment the app only communicates between known local IP addresses which is good enough to test the technology at good network speeds but not for a call to another part of the world.</p>
<p><b>GDC Developer Tips</b> </p>
<p>TIP 1 : Apparently, you are not restricted to 30fps when obtaining the color and depth stream data from the camera. You can use the SetProfile command to change the maximum fps allowed during the streaming activity.  For those who want to use the depth data for high speed fluid input, this should definitely be checked out!</p>
<p>TIP 2 : Be aware that you might be getting choppy audio capture from the Gesture camera when you have both color and depth streams running at high resolution top speed. Running any sound capture on the cameras recording device while it streams the visual information produces an intermittent choppy output. Might be a driver issue, or a USB bandwidth issue. Worth knowing, especially if you are using this data for voice recognition.</p>
<p><b>Signing Off</b> </p>
<p>I think the value of attending GDC with my app was invaluable. It allowed me to conduct a field test of what might become a commercial app, and quickly highlighted the areas that need work. It is work worth doing too, the general feeling from everyone in the Perceptual Computing space was that the potential was huge. All we need is a few pioneers to develop methods of interaction that transcends keyboard, mouse and touch.  It will be these developers that ultimately claim the Perceptual Computing prize and produce apps that literally blow the mind. </p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/42349" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultimatecoder</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/41119" typeof="skos:Concept" property="rdfs:label skos:prefLabel">ultimate coder</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/41322" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Perceptual Computing</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20773" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Contest</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Rz98FwMRv_c:mDAJC5LVZXE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Rz98FwMRv_c:mDAJC5LVZXE:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=Rz98FwMRv_c:mDAJC5LVZXE:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=Rz98FwMRv_c:mDAJC5LVZXE:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/Rz98FwMRv_c" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/Y3Po4i439W8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/03/31/ultimate-coder-challenge-ii-lee-going-perceptual-week-six/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/Rz98FwMRv_c/ultimate-coder-challenge-ii-lee-going-perceptual-week-six</feedburner:origLink></item>
		<item>
		<title>Primeira Reunião com Desenvolvedores em 2013</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/a-5RlUoQZfI/primeira-reuni-o-com-desenvolvedores-em-2013</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/w0tRMhBIj7A/primeira-reuni-o-com-desenvolvedores-em-2013#comments</comments>
		<pubDate>Sun, 31 Mar 2013 04:04:33 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=d647154dcd3817df82ecc07768a6dfca</guid>
		<description><![CDATA[ No dia 26 de março aconteceu nossa primeira reunião de 2013 com um grupo de desenvolvedores e líderes de comunidade no The Hub em São Paulo. Num clima bem descontraído, conversamos sobre comunidades e ferramentas de Software da Intel, ajudando ... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/w0tRMhBIj7A/primeira-reuni-o-com-desenvolvedores-em-2013">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p>No dia 26 de março aconteceu nossa primeira reunião de 2013 com um grupo de desenvolvedores e líderes de comunidade no The Hub em São Paulo. Num clima bem descontraído, conversamos sobre comunidades e ferramentas de Software da Intel, ajudando a esclarecer nossos objetivos como Intel Software no Brasil.</p>
<p>Ainda em 2013, nosso papel é posicionar a Intel como referência e parceira de Software para a comunidade brasileira. A partir desse ano estamos com as portas ainda mais abertas para nos aproximarmos dos desenvolvedores, dentro desse contexto nossa primeira reunião em 2013  rendeu várias boas ideias que se alinham com nossos projetos.</p>
<p>A conversa girou em torno de como podemos montar uma via de mão dupla para apoiar todas as comunidades que desenvolvem Software para plataforma Intel, o que siginifica hoje praticamente todas as comunidades, uma vez que temos produtos baseados na arquitetura x86 desde dispositivos móveis, passando por notebooks, ultrabooks e até servidores, englobando até programação para alto desempenho. Nesse contexto, nossas comunidades visam apoiar diretamente, apenas para citar alguns, desenvolvedores .NET, Java, C/C++, HTML5 dentro da maioria dos Sistemas Operacionais disponíveis.<br /> <br />Alguns pontos discutidos vão nos ajudar a conversar melhor com os desenvolvedores, agradecemos muito os participantes e chegamos a alguns pontos interessantes:</p>
<p>Preferência por Canais de Comunicação:</p>
<ul><li>Facebook: ~90%</li>
<li>Twitter: ~90%</li>
<li>Mailgroup: 60~70%</li>
<li>Google Plus: 10%</li>
<li>Linkedin: 0%</li>
</ul><p>Benefícios mais interessantes para os desenvolvedores:</p>
<ul><li>Empréstimos de HW com tecnologia que não foi lançada no mercado: ~90%</li>
<li>Treinamentos técnicos:  ~90%</li>
<li>Uso do auditório da Intel para eventos de comunidade: ~50%</li>
<li>Apoio através de coffe break para eventos da comunidade:  ~ 50%</li>
<li>Uso dos canais da Intel Software para ganhar visibilidade: ~70%</li>
</ul><p>Dentro dos vários pontos discutidos, vamos ajudar vocês a ganhar mais reputação pela excelência técnica, engajamento para difundir conhecimento e vontade de se divertir com o que muitos considerariam apenas trabalho. Usem e abusem de nosso espaço para blogar, escrever artigos e usar nossos canais de divulgação.</p>
<p>Muito em breve vamos divulgar a nossa agenda de participação em eventos e treinamentos para que todos possam aproveitar e se aprofundar em tecnologias que vão melhorar muito a qualidade do Software feito no Brasil e trazer diferenciais que podem fazer suas aplicações virarem referência não apenas nacionais, mas também para divulgação de tecnologia ao redor do mundo.</p>
<p>Apesar de não ter sido o foco principal de nossa discussão, mutos tiveram interesse nos benefícios da parceria da Intel Software com empresas de desenvolvimento, por isso deixo o link abaixo que pode orientar melhor sobre o que é a parceria e seus benefícios:</p>
<p><a href="http://software.intel.com/pt-br/grow-business-reports">http://software.intel.com/pt-br/grow-business-reports</a></p>
<p>Quem estiver interessado em se reunir com a Intel para ter uma conversa aos mesmos moldes desse bate-papo com desenvolvedores, mas onde o assunto principal seja empreendedorismo e como a Intel pode apoiar sua empresa, deixe seu comentário pedindo para organizarmos a conversa, assim nosso Gerente de Marketing - Juliano Alves - poderá organizar e liderar a conversa com todos.</p> </div></div></div><section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=w0tRMhBIj7A:RDD3wWJ4Rog:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=w0tRMhBIj7A:RDD3wWJ4Rog:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=w0tRMhBIj7A:RDD3wWJ4Rog:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=w0tRMhBIj7A:RDD3wWJ4Rog:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/w0tRMhBIj7A" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/a-5RlUoQZfI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/03/30/primeira-reuniao-com-desenvolvedores-em-2013/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/w0tRMhBIj7A/primeira-reuni-o-com-desenvolvedores-em-2013</feedburner:origLink></item>
		<item>
		<title>Intel® Vtune™: “Error connecting to MIC card”, Why?</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/ii8J2VXJF5I/intel-vtune-error-connecting-to-mic-card-why</link>
		<comments>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/tRTSXXFhDE8/intel-vtune-error-connecting-to-mic-card-why#comments</comments>
		<pubDate>Fri, 29 Mar 2013 23:08:04 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/?guid=f07b80f1f16ca7cd2e6e4aca9d4c7024</guid>
		<description><![CDATA[ Recently, while profiling a workload on the Intel® Xeon Phi™ coprocessor using Intel Vtune, I ran across the following error:
Quote:
ERROR connecting to MIC card, make sure sep_mic_server is running on the card, retrying connection…
ERROR connect... <a href="http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/tRTSXXFhDE8/intel-vtune-error-connecting-to-mic-card-why">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<div class="field field-name-body field-type-text-with-summary field-label-hidden"><div class="field-items"><div class="field-item even" property="content:encoded"> <p>Recently, while profiling a workload on the Intel® Xeon Phi™ coprocessor using Intel Vtune, I ran across the following error:</p>
<p><strong>Quote:</strong></p><blockquote><div></div>
<p><span>ERROR connecting to MIC card, make sure sep_mic_server is running on the card, retrying connection…</span></p>
<p><span>ERROR connection to MIC card &lt;1:1046&gt;, errno 111</span></p>
<p></p>
<p></p></blockquote> 
<p>Before I tell you how to get rid of this error, let’s take a step back and root cause it. Most of you might know that Intel Vtune profiles your application by periodically collecting the hardware event data captured by the Performance Management Units (PMUs) located deep within the CPU’s hardware. To enable Intel Vtune to directly access these hardware units, a part of the analyzer needs to have kernel privileges. We commonly know this part of Intel Vtune as the SEP driver. In the case of the Intel Xeon Phi coprocessor, this driver needs to be up and running on the coprocessor for the collection to succeed. Generally, we don’t encounter this error because this driver is automatically loaded every time you start the Intel® Many Core System Stack (Intel MPSS).  However, sometimes the Intel MPSS fails to load the SEP driver, resulting in the above error. So in essence, all that Intel Vtune is telling you to do is to load the SEP driver on the coprocessor. </p>
<p>This error can be fixed by trying the following workarounds. </p>
<p>Workaround# 1: </p>
<p>You can try the simplest workaround first: Restart the Intel MPSS and see if it can successfully load the driver and thus solve the problem.  </p>
<p><span><pre class="brush: plain">
$service mpss restart
$micctrl –w
</pre></span></p>
<p>Workaround# 2:</p>
<p>If workaround 1 doesn’t work then the next possibility is that your configuration files are not set up correctly and hence every time your Intel MPSS starts, i<span>t does not or cannot load the SEP driver. You can fix the SEP configuration files by going through the following steps:</span></p>
<p><span><pre class="brush: plain">
$cd &lt;install_dir&gt;/bin64/k1om
$./sep_micboot_install.sh
$service mpss restart
$micctrl –w 
 </pre></span></p>
<p>Workaround# 3: </p>
<p>In the worst case, if the above workarounds still don’t fix the problem then it is possible that the SEP driver configuration files for the Intel Xeon Phi coprocessor were never generated or were generated incorrectly or just got messed up somehow (just the way most things find a way to get messed up!).  The way to fix this would be to clean the SEP driver and set up the configurations files again:</p>
<p><pre class="brush: plain">
$ cd  &lt;vtune_install_dir&gt;/bin64/k1om
$ sudo ./sep_micboot_uninstall.sh  --clean
$ sudo ./sep_micboot_create.sh
$ sudo ./sep_micboot_install.sh
$ sudo  service mpss restart
$micctrl –w 
</pre></p>
<p>* VTune is a trademark of Intel Corporation in the U.S. and/or other countries.</p>
<p>** Intel, Xeon, and Intel Xeon Phi are trademarks of Intel Corporation in the U.S. and/or other countries</p> </div></div></div>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/20657" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Knights Corner</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/42246" typeof="skos:Concept" property="rdfs:label skos:prefLabel">KNC</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/18937" typeof="skos:Concept" property="rdfs:label skos:prefLabel">MIC</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/18222" typeof="skos:Concept" property="rdfs:label skos:prefLabel">error</a>      </li>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/tags/42346" typeof="skos:Concept" property="rdfs:label skos:prefLabel">cannot connect</a>      </li>
          <li class="field-item odd">
        <a href="http://feedproxy.google.com/en-us/tags/42347" typeof="skos:Concept" property="rdfs:label skos:prefLabel">sep_mic_server</a>      </li>
      
<section class="field field-name-field-image field-type-image field-label-above"><h2 class="field-label">Icon Image:&nbsp;</h2><div class="field-items"><div class="field-item even"><img typeof="foaf:Image" src="http://software.intel.com/sites/default/files/default_images/search_publish_icon.jpg" alt="" /></div></div></section>
          <li class="field-item even">
        <a href="http://feedproxy.google.com/en-us/articles/type/20782" typeof="skos:Concept" property="rdfs:label skos:prefLabel">Technical Article</a>      </li><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=tRTSXXFhDE8:mYmXufOZaW4:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=yIl2AUoC8zA" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=tRTSXXFhDE8:mYmXufOZaW4:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?d=dnMXMwOfBR0" border="0"/></a> <a href="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?a=tRTSXXFhDE8:mYmXufOZaW4:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/IntelSoftwareNetworkBlog?i=tRTSXXFhDE8:mYmXufOZaW4:V_sGLiPBpWU" border="0"/></a>
</div><img src="http://feeds.feedburner.com/~r/IntelSoftwareNetworkBlog/~4/tRTSXXFhDE8" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/ii8J2VXJF5I" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/03/29/intel%c2%ae-vtune%e2%84%a2-%e2%80%9cerror-connecting-to-mic-card%e2%80%9d-why/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelSoftwareNetworkBlog/~3/tRTSXXFhDE8/intel-vtune-error-connecting-to-mic-card-why</feedburner:origLink></item>
		<item>
		<title>How Obscurity Could Help the Right To Fail</title>
		<link>http://feedproxy.google.com/~r/IntelBlogs/~3/K0eejTA_4tI/</link>
		<comments>http://feedproxy.google.com/~r/IntelPolicy/~3/XeKptTRtYBo/#comments</comments>
		<pubDate>Fri, 29 Mar 2013 12:15:09 +0000</pubDate>
				<guid isPermaLink="false">http://blogs.intel.com/policy/?p=791</guid>
		<description><![CDATA[In the past, I have discussed the European Commission’s “Right to be Forgotten” proposal, and the issues with trying to provide a comprehensive right to wipe a record clean. I have argued individuals need a sphere of privacy where they &#8230; <a href="http://blogs.intel.com/policy/2013/03/29/how-obscurity-could-help-the-right-to-fail/">Read&#160;more&#160;<span>&#62;</span></a> <a href="http://feedproxy.google.com/~r/IntelPolicy/~3/XeKptTRtYBo/">Read&#160;more&#160;<span class="meta-nav">&#62;</span></a>]]></description>
			<content:encoded><![CDATA[<p>In the past, I have discussed the European Commission’s “Right to be Forgotten” proposal, and the issues with trying to provide a comprehensive right to wipe a record clean. I have argued individuals need a sphere of privacy where they know they can make mistakes, without those errors following them for the rest of their lives. Individuals will shy away from risky or provocative ideas and efforts, if they fear organizations will use those activities to discriminate against them forever. These provocative ideas challenge the status quo and are often what is needed to break away from conformity and innovate. Technology companies are familiar with this need for space to allow employees to innovate, and many structure their performance review systems to create the ability for individuals to take risks.  I call the need for this space for innovation, “The Right to Fail”.</p>
<p>Google’s current <a href="http://www.wired.co.uk/news/archive/2013-02/27/google-spain-privacy-battle" >court case </a>at the European Court of Justice centers on the issue of how to provide an ability for an individual for something to be forgotten. In this case, the Spanish data protection authority searched for a mechanism to allow individuals to have Google no longer provide links to certain information. The case is about more than just requiring organizations to take down inaccurate information. Instead, the regulator required Google to also stop pointing to information that may have been true. The case raises questions of: 1. When is it reasonable to require an internet company to obscure something? and 2. How should an individual make such a request? What follows are some thoughts I have on those questions. These ideas are just some rough thinking, and need a broad spectrum of stakeholders to come together to develop the concepts. I hope this blog entry furthers the discussion.<br />
<strong></strong></p>
<p><strong>I. When is it reasonable to ask for Obscurity?</strong></p>
<p>As I noted in my blog entry about Gavin Newsom’s book “<a href="http://citizenville.com/" >Citizenville</a>”, many commentators have argued that the best way for individuals to protect themselves is “not to do bad things”. However, that philosophy ignores many situations where it is more than reasonable for an individual to want to obscure true information about him or herself. I have taken a stab at a partial taxonomy of the categories where it would be reasonable for an individual to request obscurity. The list below also includes illustrative examples:<br />
<strong></strong></p>
<p><strong>1. Remorse</strong> – I did a bad thing but truly feel sorry, paid my debt and learned my lesson. (a drunk driving conviction followed by 20 years of sobriety and exemplary driving)<br />
<strong></strong></p>
<p><strong>2. Unexpected Consequences</strong> – I did a bad thing, but could not have expected it would cause the results. (an inconsiderate breakup with a girlfriend, who then commits suicide)<br />
<strong></strong></p>
<p><strong>3. Impossible Situation</strong> – A classic dilemma, where there are no good choices (choosing between hitting the car in front of me or swerving into the pedestrians on the sidewalk).</p>
<p><strong>4. Took a Risk</strong> – I tried to do something good, but it did not end well. (start-up company fails; applied for a job with another company, but did not receive an offer).</p>
<p><strong>5. Others Perceive as Bad</strong> – I think it is right, but others will discriminate against me for it. (protesting at a rally for a controversial political cause; or a teacher expressing a political opinion on a blog that is then read by students).</p>
<p><strong>6. Sensitive Data</strong> – I just don’t want people knowing. (bank account information, ss#, health data, or the fact I am planning a surprise party)</p>
<p><strong>7. Bad things (that aren&#8217;t so bad)</strong> &#8211; (jaywalking, driving 5 miles over the speed limit, college sophomores drinking alcohol)</p>
<p><strong>8. Taken out of context</strong> – Information that looks bad out of its original context. (Placing some punk rock lyrics in a blog about the use of profanity in music, and later the lyrics are quoted as the thinking of the individual).</p>
<p><strong>9. Victims</strong> – Information about how an individual was a victim of a crime (domestic violence victims).</p>
<p>These categories contain mostly truthful information about the individual (excepting when something is taken so out of context that it no longer can be thought of as true). Also, the concerning uses of this information are much broader than for employment or providing credit. For these two reasons, the <a href="http://www.ftc.gov/os/statutes/031224fcra.pdf" >Fair Credit Reporting Act </a>does not solve the need for obscurity in the U.S..</p>
<p><strong>II. How can individuals request obscurity?</strong></p>
<p>Completely “forgetting” these categories of information, or opting-out of all tracking of them, may be impossible. However, each of the categories above argues, to varying degrees, for the limited ability for practical obscurity. To preserve the Right to Fail, we do not need absolute deletion of information. Instead, we just need to make it more difficult to find. I am a fan of the work on the concept of the privacy benefits of obscurity on which Profs. Evan Selinger and Woodrow Hartzog have <a href="http://www.theatlantic.com/technology/archive/2013/01/obscurity-a-better-way-to-think-about-your-data-than-privacy/267283/">written</a>.</p>
<p>Given third parties might place harmful information on the internet, without consent, individuals should have some type of legal and practical remedy to have this information obscured. There may be some possibility of doing so under US tort law, such as the public disclosure of private facts. However, filing a lawsuit to enforce this right will give limited practical ability for most individuals to have the information obscured, at least in part due to the cost of hiring a lawyer. Similarly, there are technical tools and commercial services to promote obscurity (e.g. Reputation.com), but those are only available to those who can afford the solutions.  For individuals who do not have the financial and technical resources to create the obscurity, how could we create a legal mechanism allowing individuals some ability for obscurity, and thereby a preservation of the Right to Fail?</p>
<p>What if, Congress introduced legislation to create a public-private partnership to further obscurity? This law could focus on a co-regulatory approach, taking the best of industry led efforts, while still allowing for strong government oversight and enforcement.</p>
<p>The law could require any company operating internet content searching services (search engines, but likely also social networks) and data brokers (a term which would need to be defined) to create an industry self regulatory body (the “Center”) to make decisions on what should be obscured. The FTC would be given oversight responsibility over the self regulatory body, and enforcement power against those who do not participate (or who do not follow the remedy instructions).</p>
<p>The Center could be an independent non-profit, and could be funded and staffed by the regulated companies. The Center could be a central point of contact for individuals who believe they have a legitimate case for the obscurity of a piece of information (see the examples above). The Center could develop guidelines for each of the above categories to help make decisions of whether “practical obscurity” is warranted (e.g. it would not show up in internet searches and would be deleted from data broker profiles).</p>
<p>Cost to the company needing to obscure the information, the potential for harm to the individual, the relevance of the information, whether the individual originally consented to the use of the information, whether the use of the data is outside of the original context of why it was provided, and the impacts to third parties could all be captured in the guidelines as criteria for consideration. The FTC could approve these guidelines and have some oversight in how they are applied. Each entity participating in the effort would submit an annual review of their follow through on obscurity requests from the Center. The Center would submit an annual review to the FTC to show categories of obscurity requests granted and denied. This would still allow the initial collection/posting of the information (thus hopefully decreasing first amendment concerns), but would provide the individual an opportunity for limited and legitimate obscurity over time.</p>
<p>There may not be enough political will to put such a Center in place. However, what would it take to bring the necessary stakeholders together to discuss this and other ideas of how to provide reasonable and practical obscurity for individuals? If we are able to do so, we can go a long way to preserving the Right to Fail.</p>
<img src="http://feeds.feedburner.com/~r/IntelPolicy/~4/XeKptTRtYBo" height="1" width="1"/><img src="http://feeds.feedburner.com/~r/IntelBlogs/~4/K0eejTA_4tI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://blogs.intel.com/blog/2013/03/29/how-obscurity-could-help-the-right-to-fail/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://feedproxy.google.com/~r/IntelPolicy/~3/XeKptTRtYBo/</feedburner:origLink></item>
	</channel>
</rss>
