Critical.
Authoritative.
Strategic.
Subscribe to CIO Magazine »

At Risk Offshore

Laws or no laws, many believe it would help if companies would treat offshore software outsourcing with greater care. Many companies looking to farm out their development work care only about dollar savings and can be sloppy about everything else.

Companies outsourcing their software development offshore can get stung by industrial espionage and poor intellectual property safequards.

The Sting

On a typically steamy STEAMY New Delhi day in late August 2002, Nenette Day walked into the Ashoka, one of the city's best hotels, for a meeting with Shekhar Verma. Verma had been fired from his job at Geometric Software Solutions Ltd (GSSL), an outsourcer based in Bombay. He claimed to have the source code for SolidWorks Plus's 3-D computer-aided design package, which GSSL was debugging. Verma had contacted a number of SolidWorks' competitors and offered to sell them the source code. Day had taken the bait and flown to New Delhi. After confirming that what Verma possessed was indeed SolidWorks' source code, Day began negotiating on price, eventually bargaining him down to $US200,000 for the code. The deal struck, Day got up and left the room. Then agents from India's Central Bureau of Intelligence (CBI) swept in and arrested Verma. Day was not arrested - she is actually a special agent from the FBI's Boston Cybercrime Unit and had gone undercover to work with the CBI on this case, the first undercover operation for the FBI in India.

The arrest led to the first prosecutorial filing for outsourcing-related intellectual property (IP) theft in India. Given that software outsourcing was a multibillion-dollar business in India last year, the trial will draw close scrutiny from both sides of the world. Sound like an open-and-shut case? Day herself is not nearly so confident. "With no case precedents, the reality is we have no idea how this plays out under their law," she says. Day also says that Verma made two small mistakes (she declines to specify them) without which he could have already got off scot-free, and that after a full week in India working with the prosecutors last northern autumn, Day still doesn't understand the applicability of at least one of the critical charges.

Intellectual property, if stolen, "is a genie that can't be put back in the bottle", says Day. Currently, she says, "there is really no law to protect companies' intellectual property".

Companies need to think seriously about what that means. Consulting company McKinsey estimates that by 2010, the IT industry will save $US390 billion through offshore outsourcing of software development. But it also opens up new channels of industrial espionage in bitterly poor nations that often don't have laws protecting foreign companies and rarely enforce whatever laws may exist. India, obviously eager to protect its national income from outsourcing, is scrambling to demonstrate that it takes foreign intellectual property seriously. Some observers say that other countries vying for outsourcing dollars are even worse when it comes to providing legal protection for intellectual property. Court cases are still relatively hard to find, but that's about to change. Smart companies need to re-examine their outsourcing contracts and make sure they aren't at risk of becoming the test cases.

Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.

More about: ACT, Bill, Billion, FBI, Forrester Research, Gartner, HIS Limited, Jungle, Legato, Legato Systems, Mellon, Meta Group, Peppers & Rogers Group, PLUS, Rogers Group, SAS, SolidWorks, Virtual Office, Waveset Technologies

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Whitepapers
Latest Stories
Community Comments
Latest Blog Posts
Whitepapers
  • Email Encryption/Decryption and Signing integrated into a comprehensive content security solution
    Clearswift’s SECURE Email Gateway provides an easy to use approach to providing secure email conversations. The technology enables customers to provide the privacy, authenticity and integrity of the communication that secure messaging offers, but without the complexity and high administration cost of other systems. The Clearswift SECURE Email Gateway with integrated encryption technology enables business to communicate with confidence and protects them from the risk of sensitive data loss.
    Learn more »
  • Transforming Your Business by Transforming Your Processes
    In this white paper, we build on the “Intelligent Guide to Enterprise BPM: V olume One” in which we described the three entry points where you can begin to build true Enterprise BPM. In this white paper we explain the value of Process T ransformation, the entry point to strategy and design. Successful implementation of Process T ransformation will mean you have successfully documented, standardized, harmonized, managed—as well as analyzed and improved—your business processes. T he next two white papers will detail the other two entry points: Process Automation and Process Intelligence.
    Learn more »
  • Endpoint Buyers Guide
    It takes more than antivirus to stop today’s advanced threats. Protecting corporate assets requires a complete security solution that includes anti-malware, host-based intrusion prevention (HIPS), web protection, patch assessment, application and device control, network access control, data loss prevention, firewall and other capabilities. In short, you need an endpoint protection solution. We examine the top vendors according to market share and industry analysis: Kaspersky Lab, McAfee, Sophos, Symantec and Trend Micro. Each vendor’s solutions are evaluated according to: Product features and capabilities, Effectiveness, Performance, Usability, Data protection, and Technical support.
    Learn more »
All whitepapers
rhs_login_lockGet exclusive access to Invitation only events CIO, reports & analysis.
Recent comments