Archive for the ‘security’ Category

CEO + Palm = Alerte

Friday, July 1st, 2005

The Register publie les résultats d’une enquête sur la sécurité des moyens informatiques mobiles dans les entreprises. Il apparaît que les ordinateurs portables sont plutôt bien sécurisés mais qu’il faut s’inquiéter du manque de protection des Palm Pilots qui sont de plus en plus utilisés et quasiment pas protégés.
Article complet

Une remarque intéressante:

Créer une politique de sécurité est un bon début, mais il faut la communiquer, la comprendre, l’accepter et la faire respecter, ce qui peut être très compliqué pour le responsable IT quand le fautif est un membre de la direction.

Exec + PDAs = security alert

Friday, July 1st, 2005

The Register explains how companies are treating handhelds devices way too lightly when it comes to security. Some good laptop protection solutions are available on the market but PDAs are still very much unsecured (and their usage is expanding beyond email and contact management).
Full article

Somehow unrelated but interesting quote:

Setting out a strong policy is the right start, but it must be communicated, understood, accepted and enforced. This is often difficult for an IT manager to enforce when the perpetrator is a senior executive.

Internal threats

Thursday, June 23rd, 2005

Internal security attacks affecting banks

Internal security breaches at the world’s banks are growing faster than external attacks as institutions invest in technology instead of employee training.

Employee fraud was already common in the offline world for many industries (most notably retail). Threats are evolving.

Note for the Swiss bankers: the article contains some very interesting info for you guys.