Tagged articles

risk assessment

121 articles · Page 2 of 2
Youzan Coder
Youzan Coder
Nov 25, 2020 · Information Security

Design and Implementation of an Interface Authorization Scanning Platform

The article presents a systematic, automated platform that captures, replays, and compares API requests using intelligent sampling and vertical/horizontal privilege checks to detect authorization flaws, dramatically reducing manual testing effort, uncovering over twenty issues monthly, and outlining future CI integration and AI‑enhanced detection.

APIAuthorizationSecurity Testing
0 likes · 16 min read
Design and Implementation of an Interface Authorization Scanning Platform
Meituan Technology Team
Meituan Technology Team
Oct 29, 2020 · Industry Insights

How Distributed Control Enables Urban Drone Highways: A Technical Deep Dive

This article presents a comprehensive technical overview of urban aerial highways for low‑altitude UAV traffic, covering the background, spatiotemporal big‑data foundations, safety‑radius modeling, risk assessment, network and drone models, centralized and distributed control algorithms, simulation platforms, experimental results, and future research directions.

SimulationUAVairway
0 likes · 21 min read
How Distributed Control Enables Urban Drone Highways: A Technical Deep Dive
Tencent Tech
Tencent Tech
Sep 25, 2020 · Artificial Intelligence

What’s Inside Tencent’s AI Security Attack Matrix? A Minefield Guide

Tencent’s AI Security Attack Matrix, the industry’s first AI‑focused risk framework, maps attack tactics, techniques, and processes across the AI lifecycle, offering practical guidance for researchers and developers to identify and mitigate security threats in AI systems.

AI safetyAI securityTencent
0 likes · 5 min read
What’s Inside Tencent’s AI Security Attack Matrix? A Minefield Guide
Architects Research Society
Architects Research Society
Sep 20, 2020 · Information Security

Introduction to Technical Risk Management

This guide explains what technical risk is, why it matters, and provides a step‑by‑step methodology for assessing, mitigating, and managing technology‑related risks—including lifecycle, compliance, and complexity considerations—to improve cost efficiency, agility, and security across the enterprise.

IT lifecyclecomplianceenterprise architecture
0 likes · 17 min read
Introduction to Technical Risk Management
HaoDF Tech Team
HaoDF Tech Team
Sep 7, 2020 · Operations

Analyzing Latency and Slow Interface Detection in a Full‑Chain Monitoring System

This article explains how latency is used as a key indicator for application risk identification, defines slow interfaces, describes why percentile‑based thresholds are preferred over averages, and outlines the architecture, task workflow, and practical optimization strategies for a full‑chain monitoring system in a microservice environment.

SRElatencymicroservices
0 likes · 14 min read
Analyzing Latency and Slow Interface Detection in a Full‑Chain Monitoring System
Top Architect
Top Architect
Sep 6, 2020 · Cloud Native

Microservice Architecture: Evaluation, Adoption Timing, and Implementation Considerations

This article examines the transition from monolithic to microservice architecture, outlining the benefits and drawbacks of each, the conditions under which microservices should be adopted, the necessary technical and team resources, risk assessments, and practical guidance on service decomposition and migration.

architecturemicroservicesrisk assessment
0 likes · 18 min read
Microservice Architecture: Evaluation, Adoption Timing, and Implementation Considerations
Architects Research Society
Architects Research Society
Aug 12, 2020 · Information Security

12 Best Cybersecurity Practices for 2019

This article outlines twelve essential cybersecurity best practices for 2019, covering biometric security, tiered policies, risk‑based approaches, data backup, IoT protection, multi‑factor authentication, password management, least‑privilege principles, privileged‑user monitoring, third‑party access control, phishing defense, and employee awareness to safeguard sensitive data.

Best Practicescybersecuritydata protection
0 likes · 22 min read
12 Best Cybersecurity Practices for 2019
Alibaba Terminal Technology
Alibaba Terminal Technology
Apr 1, 2020 · Frontend Development

How to Build a Robust Frontend Safety Production System for High‑Reliability Web Apps

This article explains the concept of frontend safety production, outlines its evolution from basic monitoring to a systematic, cloud‑enabled framework, and details the core capabilities—pre‑change CI checks, gray‑release gating, and real‑time monitoring—required to ensure high‑quality, risk‑free frontend deployments.

CIautomationfrontend
0 likes · 12 min read
How to Build a Robust Frontend Safety Production System for High‑Reliability Web Apps
Top Architect
Top Architect
Mar 4, 2020 · Information Security

ISO 27001 Security Framework and Building an Enterprise Information Security System

This article explains why enterprises need information security, outlines the core security requirements such as data protection and business continuity, and presents a phased ISO 27001‑based roadmap—including short‑term, medium‑term goals, management policies, network segmentation, third‑party compliance, and budgeting—to establish a comprehensive security architecture.

ISO 27001complianceinformation security
0 likes · 6 min read
ISO 27001 Security Framework and Building an Enterprise Information Security System
Architects Research Society
Architects Research Society
Sep 21, 2019 · Information Security

12 Best Cybersecurity Practices for 2019

This article outlines twelve essential cybersecurity practices for 2019, covering biometric authentication, tiered security policies, risk‑based approaches, regular backups, IoT security, multi‑factor authentication, password management, least‑privilege principles, privileged‑user monitoring, third‑party access control, phishing awareness, and employee training.

Best PracticesMFAcybersecurity
0 likes · 18 min read
12 Best Cybersecurity Practices for 2019
360 Tech Engineering
360 Tech Engineering
Jun 14, 2019 · Information Security

A Guide to Producing Threat Intelligence from a Security Analysis Perspective

This article explains how threat intelligence is generated by defining it as judged security information, outlines methods for collecting and evaluating security data, introduces a two‑dimensional reliability/quality rating system, and provides a step‑by‑step engineering workflow for enterprise threat‑intelligence operations.

information collectionmachine learningrisk assessment
0 likes · 10 min read
A Guide to Producing Threat Intelligence from a Security Analysis Perspective
Efficient Ops
Efficient Ops
Apr 24, 2019 · Operations

Why Every Ops Change Should Be Treated Like a Project

This article shares practical lessons from a real‑world ops incident, emphasizing the need for clear change background, optimal timing, project‑style management, and strict process adherence to reduce risk and improve production reliability.

Best PracticesDevOpschange management
0 likes · 9 min read
Why Every Ops Change Should Be Treated Like a Project
Architect's Tech Stack
Architect's Tech Stack
Nov 29, 2018 · Backend Development

Comprehensive Overview of Payment System Architecture and Core Processes

This article provides a detailed overview of payment system architecture, covering functional modules, core payment, refund, reconciliation, and settlement workflows, as well as design considerations such as gateway integration, routing, risk assessment, asynchronous processing, and transaction logging for robust backend development.

Transaction Processinggateway integrationpayment architecture
0 likes · 19 min read
Comprehensive Overview of Payment System Architecture and Core Processes
DataFunTalk
DataFunTalk
May 22, 2018 · Information Security

Designing a Credit-Based Content Management System: Strategies, Risk Assessment, and AI Techniques

The article outlines how to build a credit‑based content management platform by describing the evolution of security practices, defining user‑generated, professional‑generated, and occupational content models, proposing a credit‑audit workflow with risk assessment, and presenting AI‑driven text classification and anti‑cheat methods to balance traffic, quality, and trust.

Artificial Intelligencebig datacontent moderation
0 likes · 12 min read
Designing a Credit-Based Content Management System: Strategies, Risk Assessment, and AI Techniques
iQIYI Technical Product Team
iQIYI Technical Product Team
Aug 25, 2017 · R&D Management

Handling Urgent Requirement Insertion: Risks, Benefits, and Process

The article outlines how project managers can balance the risks and benefits of inserting urgent, high‑priority requirements by classifying project types, assessing stage‑specific impacts, answering six key decision questions, and following a structured review and approval workflow to avoid morale loss or missed opportunities.

risk assessmenturgent requirements
0 likes · 13 min read
Handling Urgent Requirement Insertion: Risks, Benefits, and Process
Efficient Ops
Efficient Ops
Mar 23, 2017 · Information Security

Why Weak Passwords Still Threaten Enterprises: Real-World DevOps Security Risks

The article examines common security risks such as weak passwords, GitHub credential leaks, and misconfigurations in DevOps pipelines, illustrating how attackers exploit these flaws and offering practical mitigation strategies like access control, least‑privilege policies, robust password rules, and vulnerability tracking.

git securityinformation securitypassword policy
0 likes · 10 min read
Why Weak Passwords Still Threaten Enterprises: Real-World DevOps Security Risks
21CTO
21CTO
Feb 18, 2017 · R&D Management

Is Your CTO a Silver Bullet or a Toxic Threat? How to Spot the Danger

The article examines common pitfalls of startup CTOs, illustrating how poor technical decisions, nepotistic hiring, and lack of accountability can cripple product development and waste resources, and offers practical signs CEOs should watch for to determine whether their CTO is an asset or a liability.

CTOrisk assessment
0 likes · 9 min read
Is Your CTO a Silver Bullet or a Toxic Threat? How to Spot the Danger
Baidu Intelligent Testing
Baidu Intelligent Testing
Jul 7, 2016 · Operations

Challenges and Pain Points of Distributed System Integration Testing

This article examines the common pain points of integration testing in distributed systems, including weak cross‑coupling coverage, lack of clear standards, chaotic composite scenarios, and insufficient risk assessment, and discusses current mitigation approaches and open questions for future exploration.

Integration Testingdistributed systemsrisk assessment
0 likes · 7 min read
Challenges and Pain Points of Distributed System Integration Testing
Efficient Ops
Efficient Ops
Nov 16, 2015 · Operations

Mastering IT Change Management: Tools, Processes, and Risk Strategies

This article outlines effective IT operations change management by emphasizing the need for robust tools, standardized forms, precise steps, reusable templates, a change calendar, and clear risk classification, culminating in six simple principles to streamline execution and minimize disruptions.

Process Automationrisk assessmenttool integration
0 likes · 12 min read
Mastering IT Change Management: Tools, Processes, and Risk Strategies