Daily using/supporting

Get Firefox browser!
Get Thunderbird!
Get Opera browser!
Get The Gimp!
Get Inkscape!
Get LibreOffice!
Get Videolan!
Get Linux!
Get Mandriva!
Get Joomla!
Hacker Emblem

Archives

Which topics would you like us to cover more?

Latest comments

Latest tweets

about 2 days ago Using REDIPS.drag to add drag and drop to your .Net webapplication #li #dib0 http://t.co/n8zY3s7d
about 8 days ago http://t.co/cknQcDbo #Kindle
about 16 days ago Freedom isn't the ability to choose what to do or say, but the ability to choose what not to do or say #freedom
12 Apr 2012 Force the use of a networking adapter using C# #li #dib0 http://t.co/ZTJOPzOz
9 Apr 2012 Mandriva 2010.2 and USB devices in Virtualbox http://t.co/fwq9gbHB
9 Apr 2012 Execute a http request to you own site with PHP http://t.co/DIvWPrpd
Home Architecture, security and coding Security rule #5: Security starts at business level
Security rule #5: Security starts at business level
Written by Division by Zero   
Monday, 25 January 2010 15:51

There's only so much you can do in your software, hardware and infrastructure to be safe. To be really secure, security has to start at business level. Your business has to have a sort of security mindfulness. In this way the business processes are structured in a way that they are safe. The IT infrastructure can support this by using things like the principal of least privilege. But these principals only work if the business (processes) supports them.

This doesn't mean you have to sit around and wait for the business to come and ask you to become secure. Businesses are slow on things that cost money and make the lives of employees hard. For example the principle of least privilege means that a user has only authorization for the things she/he normally does, but when she/he needs to do something more it costs time to get the privilege or someone who has this privilege and the time to do this job. You will have to do everything you can to make your software en infrastructure secure, but also you will have to educate your business.

 

Add comment


Security code
Refresh

The right word may be effective, but no word was ever as effective as a rightly timed pause. - Mark Twain


© 2009 - 2012, Division by Zero

Template based on the empire template by joomlashack 

Valid XHTML 1.0 Strict  Valid CSS!  Creative Commons License
This work by Division by Zero is licensed under a Creative Commons Attribution-Noncommercial-Share Alike 3.0 Netherlands License.