42
edits
(→Notices, Highlights, Roundtable: add link to OKRs) |
(→Notices, Highlights, Roundtable: add item about RRA) |
||
Line 7: | Line 7: | ||
* [jgriffin] Deliverables and OKR's, part II | * [jgriffin] Deliverables and OKR's, part II | ||
** Current OKR's for Platform Ops: https://docs.google.com/a/mozilla.com/spreadsheets/d/19SX3WLbxj9KDYbdnhbZ1JoRf-mV77WQxsK0uu-6xdMY/edit?usp=sharing | ** Current OKR's for Platform Ops: https://docs.google.com/a/mozilla.com/spreadsheets/d/19SX3WLbxj9KDYbdnhbZ1JoRf-mV77WQxsK0uu-6xdMY/edit?usp=sharing | ||
* [janx] Completed RRA for Janitor, and it was very helpful | |||
** (Rapid Risk Analysis = ~30-45min high level discussion with security) | |||
** Take aways: | |||
*** More red flags than expected, having RRA early on can be very useful, e.g. during design | |||
*** Protecting developer credentials on shared infra is hard | |||
*** Janitor will probably be capped to SCM Level 1 | |||
= Newsgroup and Blog Posts = | = Newsgroup and Blog Posts = |
edits