Advertisement
Promo

Security threats Toolkit

Story: Privacy tsar: 277 data breaches since November

  • Previous comment

Posted by: lumension (Monday 3 November 2008, 8:07 PM)

  • Reply

How to Address these Data Breaches......................

A solution is required to centrally manage, monitor and control precisely which removable storage devices and applications are permitted to run on government networks. A system that minimises user access rights to data, applications and removable media by operating a whitelist of known, trusted and permitted applications and devices. By default, end users should have no access to removable media and where this is permitted, via centralised control of the user privileges, encryption can be enforced on the data or the device. This “default deny” approach will ensure clear lines of responsibility and accountability for data being transferred and fosters a culture of data security among personnel that are granted access to citizen data. All data transferred, as well as attempts to do so, shuld be centrally available for audit. This will allow for scrutiny of departments’ data handling procedures, aid reporting and answer the requirement for departments to keep records in the event of a spot check by the Information Commissioner.

Address these Data Breaches:
* Remove the risk of data loss through the unauthorised use of removable media
* Enforce encryption on removable media
* Remove the risk of data leakage or data theft as a result of unauthorised applications
* Prevent unknown or malicious code from running, including malware; zero-day threat and other destructive viruses that target systems and data; keylogger software or other spyware
* Audit device and application usage
* Maintain IT system integrity and improves system performance and network bandwidth
* Enable compliance with evolving directives or regulations governing privacy

These solutions exist today, so their should be no more excuses.

Private message disabled

lumension

lumension
LONDON, UK
Member since: October 2008

Site Activity Rating:

3

 


  • Previous comment

  • Reply to this comment
  • Return to story
  • Report this as offensive


Full Talkback thread

Sentry Posts Blog

DNA details of innocent will be kept f...

The government has announced that it plans to keep innocent people's DNA details for up to six years. In response to a consultation it launched last December, the government said... More

2 comments

Motorola Droid Drops Today: Happy Droi...

Motorola Droid Drops Today: Happy Droid Day America! Author: Eric Everson, Mobile Security Expert If you’re wondering what all of the buzz is about with words like Droid and Android... More

Post a comment

Mobile Security Profile: BlackBerry St...

Mobile Security Profile: BlackBerry Storm2 Author: Eric Everson BlackBerry handsets are a staple of office culture; from syncing calendars to sharing business-related data,... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters