CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 937
Comments: 25
block bottom
spacer spacer
image Security Policies: Security Technology, Policy and Process: Finding the Balance image
Cyber Security
Security Technology, Policy and Process: Finding the Balance
By Rob Preston Courtesy of Network Computing

Secure Enterprise will talk to information security specialists on their own terms, in their own language, leveraging the labs, expertise and contacts of three CMP Media organizations.

Remember the Laffer Curve of supply-side economics theory? The challenge for supply siders was to pinpoint the apex of this bell-shaped curve, indicating which tax rate would yield the maximum tax revenue. The theory is that lowering taxes could actually boost revenue by encouraging more people to work and driving more people onto the tax rolls. Problem is, no one really knows what the optimal tax rate is--setting taxes too high discourages work and lowers overall tax revenue; setting taxes too low also fails to generate enough revenue. Policy-makers can only guess at the optimal tax rate to meet their fiscal goals.


Companies and their IT organizations are muddling through their own Laffer analysis of sorts when it comes to information security. Security isn't inherently valuable. The challenge is to apply just enough to promote trusted business but not so much to impede commerce.


That's the premise of Secure Enterprise. Great information security isn't about erecting the biggest walls. It's about creating an environment where you and your customers, suppliers, partners and co-workers can feel safe, but not stifled, in your daily transactions and information exchanges.


That's fine in theory, but we're all aware that security isn't easy to map out, implement or manage. For one thing, it requires a delicate balance of policy, process and technology, areas Secure Enterprise will explore in depth through first-person accounts, expert analyses, case studies and product reviews. We'll cover the life cycle of information security, from risk assessment, technology evaluation and development through deployment, integration, training and management.


At the same time, we agree with our consulting partner Neohapsis (authors of this issue's cover package on security information management) that security must become less perimeter-centric and more asset-centric, because no organization can afford to protect everything. Companies must figure out what exactly they're protecting--which information is most valuable and where it resides--and then provide needed access to it while keeping the miscreants away.


Secure Enterprise, launched as a partnership of Network Computing, Network Magazine and the Computer Security Institute, will talk to information security specialists on their own terms, in their own language, leveraging the labs, expertise and contacts of all three CMP Media organizations. Let us know what you think of this premier issue, and what we can do in future issues to help you make the right security policy, process and technology decisions for your organization.

SP
Posted on Monday, 29 September 2003 @ 05:05:00 UTC by phoenix22 (609 reads)
[ Trackback ]
image

"Security Policies: Security Technology, Policy and Process: Finding the Balance" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· HotScripts
· W3 Consortium
· More about Cyber Security
· News by phoenix22


Most read story about Cyber Security:
Booby Trapped software!

block bottom
Article Rating
spacer
Average Score: 5
Votes: 1


Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer