Security Basics mailing list archives

Re: List of Information Security Threats


From: jwmeritt () aol com
Date: 10 Mar 2009 15:25:25 -0000

In my opinion, the way to go would not be to enumerate generic "threats" (which they may ignore anyway) but to acquire 
an exhaustive list of their information assets (phone numbers, proprietary documents, shipping... ) and then go through 
THAT list and write the identified threats against THAT.  They will be much less likely to ignore something if it 
explicitely is a threat TO THEM.


Current thread: