33 karma · joined April 26, 2014
I've seen job postings with something like "the ability to acquire and hold a [Top] Secret security clearance is required for this position". Is this illegal or necessary to be able to fire someone because they couldn't get or lost their clearance?
Contractor A does everything in a closed area. All software is written, built, and tested on classified information systems. In this situation, it is impractical to move anything out, regardless if the software is actually classified. It's easy to move things back and forth between the developer's machines and the (necessarily) classified test/production system, but now you have the problem from TFA: you can only hire cleared employees or you eat the cost of them doing nothing useful for ~1 year.
Contractor B has arranged things so that the work that has to be done in a closed area is only on the specific information that _must_ be classified as described in the security classification guide for that program. Depending on the program this could be a small software library or even a configuration file. Interns and first-year employees can work on the majority of the system with dummy/stub libraries and fake data, then hand their work over to cleared employees for further testing in the closed area (if that is even necessary for the work at hand). It is not very hard to move software from an unclassified to a classified area. It is harder to move test results from a classified to an unclassified area. A description of what happened when an unclassified piece of software runs in a classified environment _can_ be sanitized and still leave all information necessary to continue work outside. Aside from the situation described in TFA, this also reduces the "it is miserable working in the SCIF" retention problem.
It requires work to arrange things in this way, but not much more work if the software is written using best practices. Maybe this strategy only applies to software development. There are other professions out there I've heard. :)
If this was more than a tool for teaching multi-objective optimization, I'd like to see how the Pareto front changes over Mario Kart releases!
> You must configure page rules to allow Cloudflare to fetch only your Backblaze B2 bucket from your domain. ... Otherwise, someone could use your domain to fetch content from another customer's public bucket. To ensure this does not happen, Cloudflare lets you use page rules to scope requests to your bucket.
> CEO shadows label the handbook MRs they create with the ceo-shadow label. It's a point of competition between CEO shadows to try to best the previous shadows' number of merge requests.
I am no longer surprised by the length of this section of the handbook.
[1] https://docs.sel4.systems/ApiDoc.html [2] http://www.qnx.com/developers/docs/6.4.1/neutrino/getting_st...
[1] https://plus.google.com/109389788036578433900/posts/hvhwFcp3...