Firewall Wizards mailing list archives

Re: Outsourcing Firewalls/Internet Security count


From: "Larry J. Hughes Jr." <larry () nwnet net>
Date: Sat, 6 Dec 1997 21:11:55 -0800 (PST)

By contrast, computer and most especially internet security needs to be
completely redone from scratch periodically and needs to be updated and
tweaked weekly or monthly, and the decision-making process for the
changes requires research, education, and negotiation with management
and users.

In my fantasy world, the above happens.  In my real world, I see it
happening maybe 5% of the time. 

Maybe I'm alone here, but the trend I see in the day-to-day life of most
companies I'm exposed to is either a) completely inadequate security
measures with nobody babysitting (read: timebomb), or b) the company
outsourcing some of their security needs in order to achieve some due
dilligence at the very least.

For better or worse, a good business case *can* often be made for the
outsourcing of some of the security work.  Whether or not it's done right
is entirely another issue.  But I'd rather see that choice being made, in
an informed way, than the all-too-typical alternative: turning a blind eye
and naively hoping for the best.

---
Larry J. Hughes Jr.    larry () nwnet net     http://www.nwnet.net/~larry/



Current thread: