Security Basics mailing list archives
RE: Security procedure question
From: "Paul Sutton" <pjsutton () urnet net>
Date: Wed, 27 Sep 2006 18:25:31 -0500
A Security department is only as strong as policy. If it is documented and the person is a risk, kill his access and let his supervisor either barter for it back (with conditions) or gets rid of the risk. -----Original Message----- From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of Curtis Duck Sent: Tuesday, September 26, 2006 4:08 PM To: 'Krpata, Tyler'; 'MandommGmail' Cc: security-basics () securityfocus com Subject: RE: Security procedure question I agree something very heavy and sharp too. Human stupidity can be broken all it takes is education either gently or very rough. -----Original Message----- From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of Krpata, Tyler Sent: Monday, September 25, 2006 12:36 PM To: MandommGmail Cc: security-basics () securityfocus com Subject: RE: Security procedure question Oh, you can defend against that. You just need something heavy and/or sharp that you can swing easily. -----Original Message----- From: MandommGmail [mailto:mandomm () gmail com] Sent: Monday, September 25, 2006 6:15 AM To: Saqib Ali; Brown, Sam; mario () netway com cy; lists () hwf cc Cc: security-basics () securityfocus com Subject: Re: Security procedure question I'm concerned about a user leaving the id and password on paper in or near the laptop. There is no way one can defend against a user who decides to stick a sticky pad on his laptop and leaves his password there. The best encryption tool does not defend against human stupidity. Alex --------------------------------------------------------------------------- This list is sponsored by: Norwich University EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life. http://www.msia.norwich.edu/secfocus --------------------------------------------------------------------------- This e-mail and any attachments may contain confidential and privileged information. If you are not the intended recipient, please notify the sender immediately by return e-mail, delete this e-mail and destroy any copies. Any dissemination or use of this information by a person other than the intended recipient is unauthorized and may be illegal. --------------------------------------------------------------------------- This list is sponsored by: Norwich University EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life. http://www.msia.norwich.edu/secfocus --------------------------------------------------------------------------- --------------------------------------------------------------------------- This list is sponsored by: Norwich University EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life. http://www.msia.norwich.edu/secfocus ---------------------------------------------------------------------------
Current thread:
- Re: Security procedure question, (continued)
- Re: Security procedure question MandommGmail (Sep 25)
- Re: Security procedure question Mario A. Spinthiras (Sep 25)
- RE: Security procedure question Ken Kousky (Sep 26)
- Re: Security procedure question Daniel DeLeo (Sep 27)
- Re: Security procedure question Saqib Ali (Sep 27)
- Re: Security procedure question Mario A. Spinthiras (Sep 27)
- Re: Security procedure question MandommGmail (Sep 25)
- RE: Security procedure question Sadler, Connie (Sep 26)
- RE: Security procedure question Curtis Duck (Sep 27)
- RE: Security procedure question Paul Sutton (Sep 28)