MPs reject international security standard

NEWS MPs have snubbed an internationally accredited IT security standard promoted by the Department of Trade and Industry (DTI).

Responding to a question in Parliament, Liberal Democrat MP Sir Archy Kirkwood, who represents the House of Commons Commission, said the BS7799 security standard will only be used as a guide.

He said: "We have no plans at present to seek accreditation to BS7799 but the philosophy and best practice elements within the standard form an important part of our approach."

While many businesses adhere in principle to BS7799, few firms actually go through the pain of accreditation because it can be a lengthy and ongoing process. The current BS7799 register shows only 92 UK public and private sector organisations are accredited.

The last DTI security breaches survey also perversely found foreign countries adopt the standard more widely, with just 5.5 percent of UK businesses being compliant and 2.7 percent planning adoption this year.

The House of Commons Commission is a supervisory body of MPs who oversee the administration of the House. It would not comment on Parliamentary security arrangements but said that users of the Parliamentary Data and Video Network (PDVN) are protected.

Kirkwood revealed that users are subject to conventional password controls that restrict unauthorised internal access, while corporate firewalls and anti-virus software are in place to prevent external attacks. Measures are also in place for remote users.

He said: "For remote users, the introduction of data encryption, personal firewalls and anti-virus software with the new virtual private network service hosted on known parliamentary-issued personal computers will minimise the risk of unauthorised access and interception."

Talkback

The article was incomplete. What is the standard being rejected? BS7799 was mentioned as a UK standard but no blow by vblow comparison was made. Perhaps CRAMM does not apply but a comparison could have been made.

The article was more an April 1st spoof than a meaningful editorial. If you have something to say be precise and clear else do not bother.

12 Aug 03 19:27 Reply

Post your comment

In order to post a comment you need to be registered and logged in

Log in or create your ZDNet UK account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Membership FAQ

ZDNet UK Live

J.A. Watson

Hi Jake, I like your definition. I would add "Free to support, in whatever way you see fit and appropriate, or not." jw

3 minutes ago by J.A. Watson on Free Software Definition condensed
Tezzer

From what I've read here and elsewhere Viacom stands to lose very heavily from this spat. They have already lost all public credibility since it...

1 hour ago by Tezzer on Google, Viacom trade blows in YouTube copyright spat
Tezzer

Still finding it difficult to get around the site. Some articles/comments seem to have reply links and some don't - only a link to the poster.

2 hours ago by Tezzer on ZDNet UK: faster, smarter, still IT all the way
Tezzer

Unfortunately the real problem here is that a very small number of very big companies want to make a great deal of money out of this. Every house...

2 hours ago by Tezzer on It's high time we had a manifesto for fibre
dava4444

this spam bot is exasperating

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

:D I think the server exchange does slow down a bit round 5 to 7/8 pm but I find I mostly get 3 to 4 MBps on downloads and by that time there...

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

night before last

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

5MBps, I saw 5.8

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

honestly I do get

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

thank you for the support. ..but in

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

if you download a BIG file from the MS site then THAT is your *true* speed.

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

Hi Fat Pop Do Wop!

6 hours ago by dava4444 on I'd Rather Have a Bigger Byte Than a Little bit...Broadband
dava4444

it filters the word 'aittude' mis spelled intentionally

6 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

but with a fair amount of work, possibly. God Bless Dava

6 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

But I think Googles idea could be developed into an able paradigm. right now, no.

6 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

took there repos down for Ubuntu (I think there back now but they took a few months). I don't think there is a perfect answer,

8 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

but the community coding and ideas would be gratis, maybe that's why OEM's can be 'slackers' when it comes to Linux. they just sit back and let...

8 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

continued the bad point about that is hardware, a rival OEM can take your development and use it themselves and to retaliate you would have to go...

8 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

continued Okay how about something like Google's approach 'semi-open source'? . the OEM pours cash in to development and code, whilst opening it...

8 hours ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi Adrian em, interesting, yeah okay I can get this vibe, if I wanted VRec on my Tele I would need an embedded and tiny OS and you're totally...

8 hours ago by dava4444 on How to build a GUI for a toaster

Featured white papers

Achieving PCI Compliance for:Privileged Password Management & Remote Vendor Access

For multi-store outlets, including retail, banking, grocery, gas, hospitality, convenience stores and others, reducing (or avoiding) the cost of in-store system support and maintenance while maintaining compliance with PCI and other requirements has become a strategic challenge.

Download now

Web 2.0 Security Threats: How to Protect Your Enterprise Network

Speaker: Dr. Chenxi Wang, Principal Analyst, Security and Risk Management, Forrester Research, Inc. As Enterprises are increasingly connected to the Internet and as hard organizational boundaries are fast disappearing, security professionals are facing fresh challenges in Enterprise computing.

Download now

MindManager - Tutorial for New Users - Short

This tutorial is for new MindManager users and teaches you how to get started, by creating maps, reading maps and organizing your information.

Download now