- +
Process Trip 04 February, 2008 13:07:03
Why Maritz Travel revamped key business processes — and how business and IT came together to make it workWhen Rich Phillips became COO OF Maritz Travel about two and-a-half years ago, he sat down and took a hard look at the big industry picture - +
Ticked Off at Tick the Box Mentality 04 February, 2008 13:01:15
Does your executive search firm know the difference between an MIS manager and a CIO, and if it does, can it explain that difference to its corporate clients?Does your executive search firm know its MIS managers from its elbow? Does it even know the difference between an MIS manager and a CIO, and if it does, can it explain that difference to its corporate clients? - +
Strategies for Dealing With IT Complexity 24 December, 2007 10:30:47
Every innovation, every business process improvement, comes with an IT complexity tax that must be paid by CIOs in time, money and sweat. Here are strategies to mitigate the increasing complexity of IT as it enables new business.Every innovation, every business process improvement, comes with an IT complexity tax that must be paid by CIOs in time, money and sweat. Here are strategies to mitigate the increasing complexity of IT as it enables new business. - +
Doing Your Sums on . . . Build, Buy or Rent 05 November, 2007 13:32:30
You’re trying to build a world-class IT team, but everyone’s going after the same talent pool. What mix works best? Should you grow your own, draft your players or barter your way to the line-up you want to field?CIOs should never forget that while new technologies have a maturity cycle, the maturity cycle for human beings in IT is even longer
Read up on the latest ideas and technologies from companies that sell hardware, software and services. CRM your salespeople will love
Dude! You Say I Need an Application-Layer Firewall?!
Enterprise Wireless WLAN Security
Still Sneaking In: The Threats Your Security Tools Aren't Telling You About
Solve Exchange Mailbox Storage Issues Once and for All
Best Practice in Building an Integrated Information Management Strategy
The Secrets of C-Suite Success
The CIO Executive Council Guide to Success
Newsletter Subscription
7.Train and Mentor
One of the commonest causes of security breaches is human error, typically caused by a lack of security knowledge, training or failure to follow security procedures.
Without a focus on the human side of security, no amount of risk evaluations, network intrusion detection software or other technologies is likely to be effective. CIOs should take the time to discover how many of their people have security certification or at least a minimal foundational knowledge of what IT security is all about.
Security is an ongoing process, not a one-time event. With new threats evolving every day, analysts say it is vital to train staff effectively in how to watch out for certain threats, or to protect against threats, and to update that training at least at half-yearly intervals.
For instance, one of the biggest security threats comes from social engineering: the deliberate attempt to manipulate authorized users into helping a hacker gain access to systems protected by IDs and passwords. Too many hackers have the door to the network opened to them by naive users after phoning them pretending to be a systems technician and asking for their system password.
Social engineering works because most people in any computing environment are insufficiently aware or knowledgeable of IT security. You need to make sure everybody in your organization is aware of all the new threats and how to defend themselves against them. How many of your people would know if they were being socially engineered? Are there training programs in place to alert them to the risks?
"When we find a flaw, part of our response is, 'this is what NOT to do next time', says Security Innovation's Whittaker. "Every bug is an educational opportunity. We teach our customers how to listen to their bugs and not only fix the issue, but keep from writing that kind of bug again. It sounds simple, but it takes the right mind-set and training to get it right."
8.Use Biometrics
One critical piece of information that every executive needs to know about information security is that the cost-effectiveness and protection provided by password-based networks are decreasing. Passwords are easily lost or deciphered, and there is significant cost associated with password maintenance. According to Aberdeen, the labour costs for configuring and maintaining password systems ranges anywhere from $100 to $350 per user per year, depending upon company size.
This has given rise to a new class of network logon devices that use biometrics - human characteristics such as fingerprint authentication, optical scanning and voice recognition - to secure physical and network access in the workplace.
In 2002 and 2003, revenue for biometric technologies grew more than 50 percent, to $US928 million, and is expected to continue at this pace with annual revenues forecast to exceed $US4 billion by 2007, according to International Biometric Group, an industry consulting firm. Desktop fingerprint authentication readers, such as the biometric keyboards and desktop pods, are the most common type of biometric device used for network security, accounting for more than 60 percent of the market.
"In the consumer space, in which phishing is the big market driver now, it's really a consumer protection issue based on the fact that in order to gain access to systems today we still require users to manage something secret," BioPassword's Wood says. "We require them to have a password." He says part of the answer may lie in software-based biometrics that uniquely identifies people based on their typing rhythms and patterns.
Discover how SOA can create smarter outcomes for your business.
Attend and learn:
- How SOA is helping leading companies to become more agile
- Where you should be applying SOA processes in your company
- The top SOA implementation mistakes to avoid
Click here for more information.
- +
CIO Live Podcast #79: Brent D Taylor, author of The Outsider's Edge: The Making of Self-Made Billionaires Part II 05 October, 2007 06:00:00
For his new book, The Outsider's Edge: The Making of Self-Made Billionaires, social researcher Brent D Taylor spent four years of intensive research investigating the psychological make-up and backgrounds of some of the world's richest men and women, including IT luminaries Bill Gates, Larry Ellison and Steve Jobs. Taylor discovered that, despite working in different industries and coming from different upbringings, they all have one thing in common -- they are all outsiders. - +
CIO Live Podcast #78: Brent D Taylor, author of The Outsider's Edge: The Making of Self-Made Billionaires 28 September, 2007 17:34:25
For his new book, The Outsider's Edge: The Making of Self-Made Billionaires, social researcher Brent D Taylor spent four years of intensive research investigating the psychological make-up and backgrounds of some of the world's richest men and women, including IT luminaries Bill Gates, Larry Ellison and Steve Jobs. Taylor discovered that, despite working in different industries and coming from different upbringings, they all have one thing in common -- they are all outsiders. - +
CIO Live Podcast #77: Panasonic Speeds Up Trans-Pacific File Transfers, Part III 21 September, 2007 07:00:00
Part three in our three-part special report from CIO's sister publication Network World in the US, as Paul Desmond reports from the Network World IT Roadmap Conference in Santa Clara, California. With development teams in the US and Japan, Panasonic needed a more efficient way to move very large files between the two locations. Iben Rodriguez, IT consultant for Panasonic Research and Development, explains how a storage-area network and virtual server technology helped speed up WAN performance. - +
CIO Live Podcast #76: Panasonic Speeds Up Trans-Pacific File Transfers, Part II 14 September, 2007 07:00:00
Part two in our three-part special report from CIO's sister publication Network World in the US, as Paul Desmond reports from the Network World IT Roadmap Conference in Santa Clara, California. With development teams in the US and Japan, Panasonic needed a more efficient way to move very large files between the two locations. Iben Rodriguez, IT consultant for Panasonic Research and Development, explains how a storage-area network and virtual server technology helped speed up WAN performance. - +
CIO Live Podcast #75: Panasonic Speeds Up Trans-Pacific File Transfers, Part I 07 September, 2007 07:00:05
Part one in our three-part special report from CIO's sister publication Network World in the US, as Paul Desmond reports from the Network World IT Roadmap Conference in Santa Clara, California. With development teams in the US and Japan, Panasonic needed a more efficient way to move very large files between the two locations. Iben Rodriguez, IT consultant for Panasonic Research and Development, explains how a storage-area network and virtual server technology helped speed up WAN performance.
- +
Google blacklists ATUG Web site 07 October, 2008 12:46:00
ATUG unaware of breach, Google unwilling to discuss detailsHackers may have hit the Australian Telecommunications User Group (ATUG) Web site, according to Google which has placed security threat warnings across all pages displayed in searches. - +
10 steps to loading dock security 07 October, 2008 11:30:00
Companies in all industries struggle to secure the loading dock, that sensitive spot where goods come in and go out. Follow these best practices and sleep better tonight.It's the stuff of CSO nightmares. Early on the morning of September 2, while most folks were home sleeping off the hot dogs, thieves used bolt cutters to break into an Alltel Communications warehouse and four of its loading docks in Fort Smith, Ark. Sources say they escaped with an estimated US$10 million worth of cell phones, not a bad haul for their Labor Day efforts. - +
Corporate security and the climate crisis 03 October, 2008 11:21:00
How to adapt security and risk management policies - including IT security - to deal with climate change.US military strategists, CIA analysts, international agency officials and Nobel Prize winning economists concur with the consensus of the world's scientific community: the Climate Crisis is a planetary security issue, as well as a national security issue for each of the one hundred ninety two countries that belong to the United Nations. But the Climate Crisis is also, by extension, a corporate security issue, as well as, yes, a cyber security issue. - +
Companies own up to virtual security blind spot 02 October, 2008 11:05:00
VMWorld attendees reveal vast majority of companies have little or no security in place for their virtual systems.The vast majority of companies have little or no security in place for their virtual systems. That is a scary statistic revealed in a survey of attendees at the recent VMWorld 2008 conference in Las Vegas. - +
How to minimize the impact of a data breach 01 October, 2008 08:54:00
ID Experts' Rick Kam describes a customer-centric action planThirty-one percent of customers--nearly one-third of a company's client base and revenue source--are terminating their relationship with organizations following a data breach, according to a recent study by the Ponemon Institute.
Open Text: Upheaval in the Financial Markets Sharpens the Focus on Information Governance and Enterprise 07 October, 2008 13:19:00
Symantec State of Spam Report - October 2008 07 October, 2008 11:58:00
AIIA to Reward Sustainability and Green IT Champions at the 2009 iAwards 07 October, 2008 11:56:00
Yellowfin Achieves BI Success with Asia Pacific Telcos 07 October, 2008 09:46:00
Frost & Sullivan Gears up for Annual IT Industry Gala Awards Event 07 October, 2008 08:29:00
|
||
|
||
|
|
||
|
The Secrets of C-Suite Success
With help from the CIO Executive Council, we tap into research about successful executives. Read on to learn more about the competencies CIOs need to develop to take the corner office, where CIOs fall short and what CEOs expect from CIOs.














