Scott G Carmack, Age 5018028 Tiger Mountain Rd SE, Bellevue, WA 98027

Scott Carmack Phones & Addresses

18028 Tiger Mountain Rd SE, Issaquah, WA 98027

Mercer Island, WA

3668 Courtland Dr, Lewis Center, OH 43035 (740) 657-8335 (740) 507-2060

5185 New Sweden Rd NE, Bainbridge Island, WA 98110 (206) 842-2793

Seattle, WA

Columbus, OH

Hinckley, OH

Toledo, OH

Show more

Mentions for Scott G Carmack

Scott Carmack resumes & CV records

Resumes

Scott Carmack Photo 41

Scott Carmack

Location:
7600 Doane Dr, Manassas, VA 20109
Industry:
Internet
Work:
Amazon Dec 2013 - Jan 2015
Manager, Security Engineering  Application Security Automation
Nationwide Insurance Mar 2004 - Sep 2007
Information Security Consultant - Application Security Architecture
Neurotek Jul 2002 - Mar 2004
Security Engineer
Pathlore Software Jan 1997 - Jul 2002
Senior Software Engineer
Independent Consultant Jun 1993 - Jan 1997
Consultant
Education:
The University of Toledo
Skills:
Application Security, Security, Information Security, Security Architecture Design, Computer Security, Distributed Systems, Enterprise Software, Application Architecture, Web Application Security, Sdlc, Cloud Computing, Pci Dss, Amazon Web Services, Software Development, Security Architecture
Scott Carmack Photo 42

Scott Carmack

Publications & IP owners

Us Patents

Cross Site Request Forgery Mitigation In Multi-Domain Integrations

US Patent:
8505106, Aug 6, 2013
Filed:
Jun 30, 2010
Appl. No.:
12/827526
Inventors:
Amit Bhosle - Bellevue WA, US
Scott G. Carmack - Bainbridge Island WA, US
Dhanvi Harsha Kapila - Seattle WA, US
Shilpi Gupta - Bangalore, IN
Mehul Jain - Bengaluru, IN
Sachin P. Joglekar - Bothell WA, US
Ashish Agrawal - Seattle WA, US
Assignee:
Amazon Technologies, Inc. - Reno NV
International Classification:
G06F 17/30
G06F 15/16
H04L 9/32
US Classification:
726 28, 726 3, 713176, 713169, 709206, 709248
Abstract:
Systems and methods for authenticating a request submitted from a client device through a third party content provider to an electronic entity are described. In one embodiment, a method includes providing a trusted script to the third party content provider, passing a trust token to the third party content provider and to the client device, and, in response to a request submitted from the client device through the third party content provider, validating the trust token associated with the request with the token passed to the client device, and processing the request. The trusted script is configured to create a trusted window on the third party Web page displayed on the client computing device, receive a trust token from the electronic entity through the trusted window, and associate the trust token with requests submitted from the client computing device through the third party content provider to the electronic entity.

NOTICE: You may not use PeopleBackgroundCheck or the information it provides to make decisions about employment, credit, housing or any other purpose that would require Fair Credit Reporting Act (FCRA) compliance. PeopleBackgroundCheck is not a Consumer Reporting Agency (CRA) as defined by the FCRA and does not provide consumer reports.