Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Knowing What You Don't Know | Main | Mobile Device Security Policy »

Insider Threats and Early Warning Signs

It's hard to stop starring at a train wreck or in the case of IT professionals, tracking the events of the San Francisco network lock-out. We seem to have entered the second stage of the story where blame is being doled out and more purported details emerge. One article in ComputerWorld is based on a detail email from someone claiming inside knowledge; regardless of whether or not the email accurately reflects what happened in SF, it like an archetypal story of how things can go wrong in IT.

Of course we should follow basic principals like least privilege and rotation of duties but it also helps to understand the psychology of professionals who become too engaged in their work. The ComputerWorld article is well worth reading because it shows that while log files are good indications of potential problems, reading people can be even better.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/790

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net