ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Old ways of thinking a barrier to security

Leader ZDNet.co.uk

Published: 07 Feb 2007 17:47 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment
Old ways of thinking a barrier to security

For people whose job is keeping us safe, security companies are peculiarly unloved. Some of that is unfair: when security works, it's invisible, and the only time it's thought about is when cheques are written or systems have failed.

Yet the security industry does itself no favours by overhyping threats. The latest prognostication from Kaspersky that "ransomware" is going to encrypt our hard disks with menaces will terrify anyone — unless they've backed up their data. Anything and everything has been identified as the next big threat, but from mobile phones to iPods to the Macintosh, they've stubbornly refused to play. We shouldn't be surprised that reality refuses to conform to the marketing diktats of the big security companies, nor that they should try so desperately to convince us otherwise.

We don't need a security industry. Indeed, its existence is a sign of failure. Like the boy in the bubble, it embodies a false hope — that we can cut off reality through an impervious shield. Such a shield can never work: instead, we need to be intrinsically secure, our immunity part of our system.

That is why RSA president Art Coviello should be correct when he predicts the end of nearly every security company currently in business. He rightly berates them for their smug self-righteousness and reactionary philosophy. The answer, he says, is for networks and storage systems to keep data safe through strong encryption and smart usage monitoring.

His model, also known by the unlovely eight-syllable deperimeterisation, is intuitively correct: a threat is no threat if it can do no damage when it arrives. It also works well with our new default way of working — connecting to core business services through random points on the public internet, often from hardware completely outside the control of the organisation. The barrier method is the wrong answer here.

Our main problem in moving forward is the elephantine inertia of the status quo. The tentacles of multibillion companies are firmly entwined with retail channels and corporate budgets, feeding off ignorance and fear rather than logic and experience. It remains within their power to reinvent themselves — to form new alliances, new approaches. If they don't, then they risk becoming ever more marginalised. The industry is evolving — and they are very far from immune.

 

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
7 out of 10 people found this useful


Full Talkback thread

1 comment

  1. Innovation Ro

Company/Topic Alerts

Create a new alert from the list below:









Related Jobs

Training Managers

Atlas is a key part of making that vision a reality. Challenging the status quo? Training Managers circa 42,250 per annum Leeds, LS14 3HS Ref: 624979 ...

Tester Manager

They are responsible for communicating the test project status, resolving the test project issues, and ensuring effective test process improvement ...

Financial Services - Risk and Compliance

Specific Technical Experience The individual will need change programme and systems implementation experience in a selection of the following areas: ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Biometric devices. Do you need one?

When saying “biometrics” I am not thinking about law enforcement, AFIS systems, national ID and visa projects. I first think about personal solutions that will make my life easier.... More

1 comment

Barracuda launches counter-suit agains...

Court cases are never pleasant or simple. The ongoing battle between security companies Trend Micro and Barracuda Networks took a new twist on Wednesday, when Barracuda launched a counter-suit... More

Post a comment

Mobile Speed Demon: Wireless Surpasses...

Mobile Speed Demon: Wireless Surpasses Landline Author: Eric Everson, Founder MyMobiSafe.com As I look around my house and throughout my network of friends, I instantly realize... More

Post a comment