Security Basics mailing list archives

RE: Senior management really concerns about security?


From: "Daniel I. Didier" <ddidier () netsecureia com>
Date: Thu, 5 Jun 2008 14:17:05 -0400

Consider discussing the net present value of security as presented by
Dr. Kabay in this article:
http://www2.norwich.edu/mkabay/infosecmgmt/npvsec.htm

Dan
www.netsecureia.com


-----Original Message-----
From: listbounce () securityfocus com
[mailto:listbounce () securityfocus com]
On Behalf Of acwang0048 () gmail com
Sent: Thursday, June 05, 2008 5:36 AM
To: security-basics () securityfocus com
Subject: Senior management really concerns about security?

Hi all,



Just want to ask whether you guys have encountered some unreasonable
requests from your senior management (e.g. ceo) whereby you as an IT
personnel understands the potential security risks involved. But then,
when you try to explain the security risks or consequence to them,
they
won't listen and just tell you they need this because of business
function.



At the end, you can't do anything but to adhere what they request. But
then, this leads to so many exceptions created for senior management.



Well, this is what I am currently facing!!!



Anyone has a better way to deal with this?



Cheers,

Wang


Current thread: