McKinnon case puts IT ethics in the dock

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

COMMENT

The furore over the McKinnon hacking case provides a useful backdrop for efforts to improve ethical standards among IT professionals, says David Clarke.

The threatened extradition of Gary McKinnon to the US on charges of computer hacking raises important questions for the continuing development of the IT profession.

Putting aside the rights and wrongs of the request to try him in the US, one of the first things that struck me when I heard about the case was the sheer number of computers McKinnon accessed. His case provides a salutary lesson for the UK and US authorities.

Strong security community
The British Computer Society (BCS) is home to a strong security community and works with government and others to ensure professional standards are high. Breaches such as those McKinnon has admitted perpetrating should in future be a rarer occurrence.

Then there is the long-running debate over the teaching of skills that give the capability to attack IT systems. Analogies are difficult, because the ability to use a PC in a private home in the UK to bring enormous disruption half a world away is unlike anything else — but there are similarities with some other professional skills.

Soldiers, police officers, teachers and doctors all have capabilities and opportunities that enable them to disrupt and affect the lives of fellow citizens should they so choose. The traditional professions maintain their position and mandate through a social contract with ethical, professional behaviour on the one side and public trust on the other. It is vital that the IT profession achieves that same balance as it matures.

Inherent in the charter that grants the BCS its existence is this idea of an organisation and profession working for the public good — a profession worthy of public trust. That end-state of trust is at the core of the work the BCS is undertaking to create a recognised IT profession.

Significant harm
Increasingly, IT professionals are responsible for systems where negligence can mean significant harm, and where deliberate misuse of capability and opportunity could mean even greater harm. I am not just talking about systems that are usually identified as safety-critical or about complete systems failure.

In an information society, simply failing to make a supermarket website work well for those with disabilities can have a significant impact on lives. Hacking an eBay account or taking out the website of a small business can ruin livelihoods and cause misery. IT underpins the structures by which people conduct their lives.

That situation places a heavy burden not only on the individual, but on the profession as a whole to regulate itself and meet standards. For those of us who have been around the profession for a while, that means leaving behind a better culture than when we arrived. We owe this to the people who are entering the profession, for their own protection as much as other people's.

Another important element of this philosophy is the idea that the power of IT capability brings with it a public responsibility. It must be professionally — even socially — unacceptable to abuse that capability in IT as elsewhere.

Capable and ethical
We are further along this path than many might suspect. University courses accredited by the BCS require the teaching of professional ethics, and this is the start of a process that continues in some organisational inductions and vocational training. The end result is a true professional, both capable and ethical.

Ethical behaviour in practice is more and more the topic of conversation that others want to have with us as the professional body for IT. Ethics and professional responsibility are on the agenda for the public-sector and private-sector organisations we work with.

It is not so hard these days to draw a line between a professional ethos in IT and long-term value for citizens and shareholders. I think that situation is very encouraging, and a good foundation on which to build.

David Clarke is chief executive of the BCS, the Chartered Institute for IT, representing over 70,000 IT professionals. Clarke took up his post at the BCS in May 2002 and has nearly 30 years' involvement with IT systems, first on the supply side with HP, DEC and Compaq, then as chief executive in the Virgin group of companies and Trinity Mirror.

Talkback

Makes a lot of sense and a great deal of what happened in the McKinnon case could have being avoided if the approach to IT security in those facilities had being better thought out process.

CA 6 October, 2009 14:40
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

Roberto_Store

Now On Sale, Unlocked iPhone 4S / Galaxy Note In Factory Box. Roberto-Techie(UK) ”Now on Sales” Smartphone, Android,Tablets,Gadget &...

3 hours ago by Roberto_Store on Samsung Galaxy S III lined up for sale
Paul Smyth

Is this classic FUD? One thing I would definitely have notice is a Mozilla threat to stop supporting GNU/Linux.

5 hours ago by Paul Smyth via Facebook on Firefox rapid release improves Fedora Linux
UnderINK

I agree with the previous commenter wholeheartedly. I couldn't say it better myself. This is very 'Big Brother'. And while I agree with protecting...

9 hours ago by UnderINK on European e-identity plan to be unveiled this month
Simon Bisson and Mary Branscombe

Nice to see that Turing's idea of a general purpose computer doing once-hardware-powered tasks in software is now universal ;-) Mary

14 hours ago by Simon Bisson and Mary Branscombe on Software with everything
Jason Burchell

seriously now. I've only bothered to read a small bit of the comments. do me and the rest of the world a favour. stop saying it does not work or...

18 hours ago by Jason Burchell via Facebook on Music industry negotiating over 24-bit downloads
Philip Charles Cohen

Read about it and weep, John Donahoe ... In addition to Visa’s V.me, there is now MasterCard’s PayPass digital wallet soon to arrive; another...

22 hours ago by Philip Charles Cohen via Facebook on PayPal takes phone-based payments to the high street
apexwm

Leslie Satenstein : Where have you ever seen Mozilla even mention this? Firefox is the most popular browser in the GNU/Linux OS, so I don't see...

23 hours ago by apexwm on Firefox rapid release improves Fedora Linux
songmaster

SHleG: Do you remember building a clockwork scorpion kit (I'm pretty sure I have a photo of it somewhere) — I think it was called something like...

1 day ago by songmaster on Software with everything
Chris Wortman

Good I love Yahoo! Their search engine is getting better than Google as of late. I find more of what I want on the first page, and usually within...

1 day ago by Chris Wortman via Facebook on Linux Mint 13 ramps up for KDE release
PatrickG

openhgs has made the point for Windows 8 multiple monitors without realising it! With Windows 7 you have to switch the mouse and so your focus...

1 day ago by PatrickG on Windows 8 could speed multi-monitor uptake
Leslie Satenstein

Mozilla has threatened to stop supporting Linux. I guess that UBUNTU is going with another browser. I indicated that if Mozilla stops supporting...

1 day ago by Leslie Satenstein via Facebook on Firefox rapid release improves Fedora Linux
Andy Bolstridge

Much as I abhor Microsoft's licensing practices, this is almost certainly down to purchasing IT equipment via 3rd party consultants - you get the...

1 day ago by Andy Bolstridge via Facebook on 6 million wasted licences and £1,200 PCs: welcome to government IT
Jack Schofield

@openhgs Windows users have had multiple desktops since Linus started writing Linux. They just haven't shipped as standard because not enough...

2 days ago by Jack Schofield on Windows 8 could speed multi-monitor uptake
Jack Schofield

@Phil at Cloud4 What, Microsoft gets £1,200 per PC and £1,622 per server? Gosh, I'm amazed....

2 days ago by Jack Schofield on 6 million wasted licences and £1,200 PCs: welcome to government IT
craigsc

You guys have no idea what is going on at Autonomy. Autonomy could have been a much more profitable organization. The sales operations at Autonomy...

2 days ago by craigsc on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Moley

How does this impact on dual or multi booting? Seems to me to more or less prohibit this, from Windows 8 anyway. Will Grub 2 recognise Windows 8,...

2 days ago by Moley on Windows 8 start-up speed forces USB boot workaround
apexwm

I don't understand why there cannot be a slight pause during the boot process so the user can press a key. Many operating systems do this, even if...

2 days ago by apexwm on Windows 8 start-up speed forces USB boot workaround
Gavin Goodman

You can now buy the Xi3 modular computer in the UK at http://www.ocdistribution.com . This can be bought with the Tand3m software, pricing and...

2 days ago by Gavin Goodman on CES 2012: Xi3 microSERV3R
Phil at Cloud4

I agree: Mike Lynch can clearly build a business and manage strategy. I suspect the exit of Mike is more likely the end of a planned handover...

2 days ago by Phil at Cloud4 on HP cuts 27,000 staff as Autonomy chief Lynch leaves
Phil at Cloud4

This is unbeleivable government wastage with only one winner... Microsoft 1 - Tax payer Nil!

2 days ago by Phil at Cloud4 on 6 million wasted licences and £1,200 PCs: welcome to government IT