Safe
Security professionals are accused of 'chasing phantasms' when it comes to protecting sensitive data
R E L A T E D   C O N T E N T
ADVERTISEMENT

CSOs urged to dispel security myths

Gartner warns of damaging misconceptions

Phil Muncaster, Computing 29 Sep 2008
ADVERTISEMENT

Information security professionals are often too easily distracted from their roles by myths about the nature of threats facing their organisations, according to analyst firm Gartner.

Analyst Andrew Walls said at Gartner's annual IT Security Summit in London today that these misconceptions can often lead to organisations investing in the wrong security programmes.

Walls maintained that it is up to IT security professionals to identify which threats are real and which are not, enabling their own function to become viewed as a strategic business enabler rather than a tactical reactionary control.

"Lots of them spend time chasing phantasms. Ideas like 'the hackers are winning' are patently false," he argued. "Hackers have to constantly innovate and find new ways of attack because security is forcing them to be more creative."

Other security myths according to Walls include the suggestion that data breaches are growing in frequency, when in fact it is only their disclosure which is increasing, and that the quality of your security systems is determined by how much money is spent on them.

“Business managers are focused on the bottom line and don’t want anything to distract them,” said Walls. Security professionals must debunk these myths so people understand that security is actually making them more profitable and … is an enabler.”

See also:

IntellectNew platform for cross-industry collaboration  29 Sep 2008
Computer securityCSSLP programme designed to improve the credentials of software developers  25 Sep 2008
HackingExploit kits spreading for file-based attacks  26 Sep 2008
BlackBerryNew research finds 44 per cent of second-hand devices still contain sensitive data  25 Sep 2008
Computing awards logoCongratulations to all the successful nominations for this year's Computing Awards for Excellence  15 Sep 2008

All Enterprise Security Technology
Tags: Security-technology, Gartner, Legislation-and-regulation, Management, Security

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C# Web Developer, Finance, London Financial Services Required: C#, ASP.NET, AJAX Fantastic opportunity not to be missed!! This is a great opportunity to work on a unique objectives that no other company is doing working ... more >
| JAM Recruitment
Senior Hardware Engineer Scotland/Edinburgh Communication Systems Permanent Position 40-45K+Benefits A leading organisation involved with the design and development of data acquisition systems and synthesis boards for a range of radar, signal intelligence and software radio ... more >
| JAM Recruitment
FPGA Engineer Defence/Safety Critical Buckinghamshire Permanent Position 45K+Benefits A leading UK defence organisation requires an experienced digital design engineer to strengthen its existing development team due to a number of long-term projects that have recently ... more >
| JAM Recruitment
DSP Engineer 3 Months Contract Hertfordshire £Excellent Rates£ This position requires you to have experience of measurement algorithms development for the generation and analysis of digital wireless communication standards including GSM, EDGE, UMTS, WLAN and ... more >
More job opportunities