Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Cybercrime Just another Job Option for Undergrads? | Main | Security Awareness is More Important Than You Might Think »

Sometimes We Are Our Own Worst Enemy - Small Business Security is Missing

There's an old quip about encountering an angry bear in the forest, you don't have to run faster than the bear, just faster than the guy with you. It looks like we're in a similar situation with network security. BusinessWeek is reporting that cybercriminals are targeting small busineses because they have poorer defenses than larger firms. Maybe that is being too kind to small businesses - according to the article "Almost one-fifth of the small businesses surveyed didn't use virus scanning for e-mail, and more than 60% didn't protect their wireless networks with even the simplest encryption." OK, lets be honest -- some of these guys have no defense, period.

If that isn't bad enough, "approximately 70% of small businesses consider information security a high priority, and more than 80% have confidence in their existing protective measures" writes Jeffrey Gangemi in the BusinessWeek story. This is like talking to one of my teenagers who “knows how to drive” and then backs into another car and rips my bumper off.

Clearly, security must be built in and enabled by default. We need devices based on the Trusted Computing Platform, operating systems that build security into the kernel, and are pre-loaded with necessary countermeasures. If an OS ships with a browser, it should ship with a personal firewall, anti-virus and anti-spyware. Microsoft is finally raising the bar with Vista and security vendors are providing more comprehensive tool suites. Small businesses, its time to start using these products.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/142

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net