Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Security Tips for Ruby on Rails Developers | Main | How Long Will We Wait to Address Fundamental Flaws? »

Private, Public Sectors Look to Each Other to Solve Security Problems

The LA Times story Public, private sectors at odds over cyber security is not your typical high profile security story. Rather than focus on a single data breach or a new vulnerability, it looks at the question of how to address fundamental flaws in existing infrastructure. The answers are not promising.

One of the points of the story is that cybersecurity is not a sufficient focus in the public or private sectors. Neither John McCain nor Barack Obama say much about it in their campaigns, even in their technology policy statements. Meanwhile, most of the Internet infrastructure is privately owned but the private sector claims the problems are too big for it to tackle.

The article points out some step that can be taken. Bruce Schneier, for example, has argued for giving the next cybersecurity czar budget authority and for limiting liability protections to software vendors.

Decentralization is a key design feature of the Internet that has contributed to its success, it would be ironic if decentralized decision making about cybersecurity continued to threaten its progress and continued usefulness.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/827

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net