Popular Blogs

Search Advisory (127)
Stacy Williams
stacywms
Trust but Verify (104)
Kevin Beaver, CISSP
kbeaver
Hunter Technical Resources: Nothing But The Net (72)
Richard E. Steele, Jr.
ricky
Smorgasbord of IT/Biz Perspectives (38)
Ashu Bhatia
ashubhatia
Navigating the Meaning of Today's Accelerating Changes (38)
Sherry Heyl
sherryheyl
Media Exposure for Technology Companies (27)
Stephanie Richards
writeway
Leadership (18)
Mark Sohl
marksohl
(27)
Dux Raymond Sy
meetdux
Perceptions. Marketing through the B2B Technology Kaleidoscope (5)
Anne Marsden
anne@marsdenassociates.com
Southern Technology Leaders (1)
Kurt Uhlir
kurtb
(1)
Maurice Rosenbaum
mrosenbaum
Best Practices in Online Marketing (1)
John Waddy
john@twentysix2.com

Recent Comments

Stacy WilliamsSoCon 10: The Social Media “...
Stacy Williams says: More coverage: http://www.myurbanreport.com/2010/02/the-best...
Stacy WilliamsSoCon 10: The Social Media “...
Stacy Williams says: I have no idea why those links aren't live - I'm contacting ...
Stacy WilliamsSoCon 10: The Social Media “...
Stacy Williams says: Here are some additional posts covering the event: http://b...
Kevin Beaver, CISSPWhen using a Web hosting provi...
Kevin Beaver, CISSP says: Someone posted a comment to this post earlier today. I recei...
Kevin Beaver, CISSPFeatured in the new issue of E...
Kevin Beaver, CISSP says: Here's a direct link to the scanned magazine page in case yo...

Blog Posts


Print PDF
kbeaver

I haven't seen it yet (still trying to find a place that sells the WSJ) but I'm told that I'm quoted on page A20 regarding sensitive information being stored, unprotected, on mobile devices.  Check it out if you can.

My contributions to this article were limited but folks you would not believe what I see and hear about...That is sensitive electronic information scattered everywhere across the network - workstations, servers, databases, mobile storage devices - you name it - and it's almost always unprotected. No access controls to prevent unruly employees from doing bad things with it and no access controls to prevent outsiders from doing bad things with it.

I'm not just talking about corporate intellectual property either. I'm talking about healthcare records, SSNs, credit cards, and other personal information...personal information belonging to me and you! This isn't just a business issue - it's a privacy and identity theft issue that affects us personally.

This is backed by story after story, breach after breach, and study after study such as:

Management of Electronic Records Still not Taken Seriously

Privacy Rights Clearinghouse Chronology of Data Breaches

I've written about this subject on other forums that you may want to check out - or forward to those who are responsible for information security, audit, and compliance in your organization...this is a big deal:

Document Security - Protecting sensitive information both inside and outside the firewall

Securing data at rest vs. data in transit

The compliance payoffs for securing vulnerable information at rest

Tools for securing mobile drives

The problem with unstructured information

How to secure laptops in 7 steps

 

 

 

 

 

 



Trackback(0)
Comments (0)Add Comment

Write comment

security code
Write the displayed characters


busy