BreachExchange mailing list archives

8 Reasons Why Security Professionals Are Thankful To The World!


From: Audrey McNeil <audrey () riskbasedsecurity com>
Date: Wed, 3 Dec 2014 19:43:34 -0700

http://www.efytimes.com/e1/fullnews.asp?edid=154328

There are so many things happening all the time in the world of IT security
that security experts are thankful for certain reasons. IT security is
always under scanner. Data breach causes lots of tension but these are the
incidents which give security professionals and researchers a reason to
live for. Thanksgiving Day passed by just a week ago, and on this occasion
Dark Reading reached out to the security community to learn about those
reasons which make these professionals thankful towards the entire
community. Here are eight such reasons:


1. The extent of coverage of data breach incidents:

Data breach is not an incident for which anybody can be thankful. But
media's full attention is grabbed by such incidents. As told by Samantha
Boles, president and COO of consultancy Automated Security IS to Dark
Reading, media coverage brings out the reality in front of everyone and
that's when management and board members increase support for IT security
related projects. That is the time when IT professionals find their
long-awaited importance among the high-profile people of organisations.

2. Attention by board:

Media coverage builds huge momentum for security experts as they get an
opportunity to be a part of dialogues with board of directors and CEOs.
According to Craig D'Abreo, vice president of security operations for
Masergy, importance of cyber security is now comprehended well by the CEOs
and board of directors following series of high-profile data breaches. As
Jason Clark, chief security and strategy officer for Accuvant, says that
2014 has seen a huge change in this attention level on security matters.

3. Security processes are well-documented:

It take years to set up a well-documented security process. For example,
Unisys developed Information Security Concept of Operations document for
five years. Dave Frymier, CISO at Unisys also says that this document is
updated on annual basis and it features whatever is relevant for
information security.

4. Bug bounty programs:

Security experts are also thankful for the bug bounty programs. For
instance, Homeboy founder and CEO Mark Richards is thankful for bug
bounties. This firm creates Internet-enabled security cameras. Richards
thinks bug bounty program brings peace of mind. The testing process is
useful to ensure that the cameras are secure and bug bounty program
confirms that the development team is in the right track.

5. Knowledge is shared for free:

Knowledge is very essential in security business. Rafal Los, director of
Accuvant's Office of the CISO, shows his gratitude towards those people who
develop and share knowledge as well as expertise to better community
benefit. Security professionals feel thankful for the knowledge which is
disclosed with a great sense of responsibility.

6. Cryptowall-proof backups:

If clients use image-based backup system then there can be nothing better
for a security professional. It's an excellent practice and it also helps
in protection from crypto-viruses, so that large amounts of money can be
saved, which would be otherwise spent to recover those data which has never
been backed up.

7. Windows XP met an end:

Security feels hampered if old operating systems are in use. That's why
security researchers are happy that Windows XP is not supported anymore.
Windows XP had a lot of security issues but still it was very popular among
users. Then Microsoft ended its support in April finally.

8. Security discussions at social media platforms:

Social media platforms are always full of conversations on security issues
and happenings. These discussions actually lead to sharing of knowledge and
relationships also grow stronger in the industry. That's why security
professionals are thankful towards social media outlets. Security issues
can also be warned through these channels which benefit the researchers a
lot.
_______________________________________________
Dataloss Mailing List (dataloss () datalossdb org)
Archived at http://seclists.org/dataloss/
Unsubscribe at http://lists.osvdb.org/mailman/listinfo/dataloss
For inquiries regarding use or licensing of data, e-mail
        sales () riskbasedsecurity com 

Supporters:

Risk Based Security (http://www.riskbasedsecurity.com/)
YourCISO is an affordable SaaS solution that provides a comprehensive information security program that ensures focus 
on the right security.  If you need security help or want to provide real risk reduction for your clients contact us!

Current thread: