#043 · Security ProfessionalsRareLocked in

Parisa Tabriz

Google’s Security Princess

Chrome security, and the campaign that made HTTPS the default

Rating

86Impact score
Technical depth89
Defensive craft95
Research84
Influence90
FromUSA
Era2007–present

Domains

Browser securityHTTPS adoptionSecurity engineering

Scouting report

Joined Google as a penetration tester, printed “Security Princess” on her business card, and rose to run Chrome. Led the multi-year project to mark plain HTTP as “Not secure” in the world’s most-used browser, which more than anything else moved the web to encryption by default, and pushed Project Zero’s 90-day disclosure deadline as an industry-wide forcing function.

Curator’s note

Changed one string in a browser UI and moved the whole web to TLS.

Portrait

Painted from a photograph of Parisa Tabriz by mrisher, licensed CC BY-SA 4.0.

Sources