Windows XP and Windows Vista Security Have a Look
Some days back Microsoft releases a paper comparing Windows Vista and Windows XP. That document is 28 pages long and compares Windows XP and Windows Vista on various aspects including security, deployment, management, mobility and productivity. My current post addressed the security comparison on security.
Security Development Life Cycle: Windows Vista is the first client operating system developed using the security development life cycle. Security development life cycle makes security as the top priority for the development. Security development lifecycle evolve process that implements rigorous designs, coding, testing, review and response standard on Microsoft products. Windows XP SP2 is developed implementing Software development Lifecycle.
Drive Encryption: Windows Vista comes with drive encryption. This feature allows users to encrypt complete hard drive or different partitions on hard drive. Drive encryption is not available even with Windows XP SP3.
Windows Firewall: Both operating systems’ firewall starts as soon as the operating system starts. Windows XP firewall only provides inbound filtering while windows vista firewall provides inbound as well as outbound filtering. Windows Vista firewall also allows users to block computer programs for contacting or responding to other computers. Windows Vista firewall is manageable through group policy and is dynamic based on type of network.
Internet Explorer Protected Mode: Internet Explorer Protected mode provides additional security while web browsing. Internet Explorer has fewer rights in protected mode so system files and settings can’t be changed without the explicit permission of user. This additional defense helps verify that scripted actions or automatic downloading data outside low-rights directories such as the temporary Internet Files Folders.
Microsoft ActiveX Installer Service: Microsoft ActiveX installer service helps IT professionals to define approved host URLs that standard users can then use to install ActiveX controls. Organizations can use group policy to manage the installation of ActiveX controls.

