ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Businesses failing to understand Web 2.0 risks

Julian Goldsmith silicon.com

Published: 01 Feb 2008 09:03 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Web 2.0 presents a barely understood risk to companies embracing social-networking and instant-messaging technology as business tools, and could force a change in corporate IT security and greater use of encryption.

Almost two-thirds (65 percent) of US companies do nothing to block third-party collaboration tools, such as real-time communications and information sharing, according to research from Yankee Group.

Tom Raschke, senior analyst at Forrester Research, said 25 percent of US chief information officers in a recent survey admitted adoption of Web 2.0 tools would be a priority in 2008, even though the strategy could potentially increase areas of attack and infrastructure complexity, in addition to the fact that the return on investment is not clear.

Raschke warned that traditional security tools, such as firewalls, do not go deep enough into rich content to determine whether it is a security risk — either incoming, as malware, or outgoing, as data leakage.

Essentially, what is needed is a shift in focus from securing the infrastructure through which data moves to securing the data itself, said Raschke.

The group head of information security at Standard Chartered Bank, John Meakin explained that the banking industry is embracing Web 2.0 tools in two ways.

Read this

Feature
Feature: Cracking open the cybercrime economy

Hacking for fun has evolved into hacking for profit, and created a business model that is nearly as sophisticated as that of legal software

Read more +

Externally, banks are responding to customer demands that interactions with their bank mirror the other interactions they are used to on the internet. Internally, banks are using Web 2.0 tools to communicate and collaborate across their large organisations and many business units spread around the globe.

Meakin told silicon.com: "Banks are under pressure to operate more efficiently. Web 2.0 applications help people collaborate, which, as businesses, we would be foolish to look away from. At the same time, we have to be clear we are not introducing risk into the process; our businesses are based fundamentally on trust."

Meakin noted that embracing Web 2.0 tools may mean competitive data residing outside the organisation.

Meakin said: "Banks will have to make sure they haven't lost complete control over the integrity of their data if they use Web 2.0. One way to do this is to make sure the data is encrypted. This is a limited solution because it doesn't take into account the way the security status of data can change. Financial reports, for instance, are sensitive until the day they are announced, when they [enter the] public domain. A better approach is to make sure that, even if data is accessed through something like Facebook, the data still resides within your organisation."

Meakin and Raschke were speaking at a seminar attended by financial analysts and global banks, and organised by security specialist WorkLight.

Credit: Web 2.0 security risks being ignored from silicon.com

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

OpenLink Endur Training offered. ETRM BAs sought!

Openlink Endur is my clients priority, however, if you have worked with either of the following you may prove to be suitable for this role: - Zai*Net ...

Financial Services - Risk and Compliance

Financial Services - Risk and Compliance Job ID GBS-0053653 Job type Full-time Regular Work country United Kingdom Work city Any city in selected ...

Programme Management Office Lead is sought by Top Investment Bank

An extremely high profile role has arisen from one of the Top Global Investment Banks offering the successful candidate the opportunity to ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment