Security threats Toolkit
Story: Deloitte: People are still weakest security link
This is not IT's job but IT can help.
It seems to me this is a burden being placed on the wrong shoulders. There is not an It system in the world that can stop an individual taking information in their heads and spewing out at the nearest undesirable third party.
It seem to me to be an HR issue whether their employees are dishonest or uneducated.
What IT needs to deal with is the unintentional and design systems with security as the primary focus not a secondary after thought.
Most IT systems are defending against the unknown rather that catering to the known and discarding the unknown. If that security is passive that reduces the stupidity factor. That is why car insurance firms drop their premiums on cars with automatic passive alarms.
Also if the system is uneditable by the user that reduces the hack factor. Tie in with only the known devices getting into only those apps its allowed and not seeing the rest of the network, a bite is taken out of that risk percentage.
It is time to lose the old paradigm VPN and move to a system where only those bits needed are let out through secure encrypted tunnels and everything else is blocked out. Get IT security simplified yet fortified.
How secure would a network be if no one could snoop outside the area they were allowed.
What if you could have built in a system where you could give someone your laptop, pass key, username and password ....and they still get nothing!
Make the system simple so IT don’t need an eon for implementation and secure enough to become one less headache for executives.
Full Talkback thread








