Sometimes I think the guys who know the most about security do the most damage. I have seen a couple of situations where a company would have made incremental changes to improve security, but the consultant presented a dooms-day recommendation that suggested that EVERYTHING was broke/bad/dangerous and it all had to be corrected IMMEDIATELY! In both cases they chose to do nothing.
On Fri, Dec 18, 2009 at 9:34 AM, Andrew S. Baker <asbz...@gmail.com> wrote: > Let's face it. Most people and enterprises simply pay lip service to > information security until it's too late, or there has been a breach of some > sort. > > The bulk of resources go into features and functionality that are > non-security related. It's all about chasing revenue. > > Perhaps we'll learn by the 2020's (the decade of hindsight) > > *ASB *(My XeeSM Profile) <http://XeeSM.com/AndrewBaker> > *Providing Competitive Advantage through Effective IT Leadership* > > > > On Fri, Dec 18, 2009 at 10:15 AM, David Lum <david....@nwea.org> wrote: > >> Well, a couple hours ago >> >> >> >> http://news.cnet.com/8301-13577_3-10418270-36.html?tag=mncol;title >> >> >> >> *David Lum** **// *SYSTEMS ENGINEER >> NORTHWEST EVALUATION ASSOCIATION >> (Desk) 971.222.1025 *// *(Cell) 503.267.9764 >> >> >> >> >> >> >> >> > > > > > ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~