<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: True or False: 70% of security incidents are due to insider threats?</title>
	<atom:link href="http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/feed/" rel="self" type="application/rss+xml" />
	<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/</link>
	<description>Technologies and comments on cloud and telecom security, bridging China and the world!</description>
	<lastBuildDate>Mon, 19 Sep 2011 01:16:15 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Vinod Bavara</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36360</link>
		<dc:creator>Vinod Bavara</dc:creator>
		<pubDate>Sat, 05 Dec 2009 09:05:29 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36360</guid>
		<description>With so much malware around, looking at Firewall and/or IDS logs gives the impression that as on today, outsider threat is more than insider threat.</description>
		<content:encoded><![CDATA[<p>With so much malware around, looking at Firewall and/or IDS logs gives the impression that as on today, outsider threat is more than insider threat.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cassio Menezes</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36355</link>
		<dc:creator>Cassio Menezes</dc:creator>
		<pubDate>Wed, 02 Dec 2009 21:10:03 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36355</guid>
		<description>&lt;span class=&quot;topsy_trackback_comment&quot;&gt;&lt;span class=&quot;topsy_twitter_username&quot;&gt;&lt;span class=&quot;topsy_trackback_content&quot;&gt;70% of security incidents are due to insider threats? http://bit.ly/q5mBY&lt;/span&gt;&lt;/span&gt;</description>
		<content:encoded><![CDATA[<p><span class="topsy_trackback_comment"><span class="topsy_twitter_username"><span class="topsy_trackback_content">70% of security incidents are due to insider threats? <a href="http://bit.ly/q5mBY" rel="nofollow">http://bit.ly/q5mBY</a></span></span></span></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Donn Parker</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36315</link>
		<dc:creator>Donn Parker</dc:creator>
		<pubDate>Sat, 14 Nov 2009 21:00:07 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36315</guid>
		<description>This type of discussion is useless. None of the surveys are valid representations of the sources of incidents. They are self-selected samples, samples that are too small, or samples that produce inaccurate feedback since the responders too often don&#039;t know the complete and accurate stories. Security incident occurences are open ended, i.e. we don&#039;t know what we don&#039;t know. What is an insider? This is defined differently by different experts -- people in positions of trust, employees, employees and cosultants, full or part-time employees, etc.? 36 incidents and broken down by all of those factors to two digits of precision? Statisticly useless.

Donn</description>
		<content:encoded><![CDATA[<p>This type of discussion is useless. None of the surveys are valid representations of the sources of incidents. They are self-selected samples, samples that are too small, or samples that produce inaccurate feedback since the responders too often don&#8217;t know the complete and accurate stories. Security incident occurences are open ended, i.e. we don&#8217;t know what we don&#8217;t know. What is an insider? This is defined differently by different experts &#8212; people in positions of trust, employees, employees and cosultants, full or part-time employees, etc.? 36 incidents and broken down by all of those factors to two digits of precision? Statisticly useless.</p>
<p>Donn</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Richard</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36311</link>
		<dc:creator>Richard</dc:creator>
		<pubDate>Thu, 12 Nov 2009 22:26:12 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36311</guid>
		<description>Why Measuring the Value of InfoSec is Hard (2)

InfoSec* is inextricably part of the cyber trust “fur ball”, including
Privacy
Digital Rights
Intellectual Property, brands, reputation, trade secrets 
Stakeholder disclosure
… and physical security
Historical loss data, even if copious and available, has limited use
The landscape changes too fast
Low frequency / high impact events matter
Unique events matter
The business value of InfoSec isn’t just loss prevention 
Value comes from the ability to support profitable risk taking
e.g. Brakes, condoms
Risk balancing is a reflexive process involving perceptions of risk and reward
Varies dramatically by industry and sector
E.g. a bank vs. a rock quarry

By: Russell Cameron Thomas
Principal, Meritology
russell.thomas@meritology.com</description>
		<content:encoded><![CDATA[<p>Why Measuring the Value of InfoSec is Hard (2)</p>
<p>InfoSec* is inextricably part of the cyber trust “fur ball”, including<br />
Privacy<br />
Digital Rights<br />
Intellectual Property, brands, reputation, trade secrets<br />
Stakeholder disclosure<br />
… and physical security<br />
Historical loss data, even if copious and available, has limited use<br />
The landscape changes too fast<br />
Low frequency / high impact events matter<br />
Unique events matter<br />
The business value of InfoSec isn’t just loss prevention<br />
Value comes from the ability to support profitable risk taking<br />
e.g. Brakes, condoms<br />
Risk balancing is a reflexive process involving perceptions of risk and reward<br />
Varies dramatically by industry and sector<br />
E.g. a bank vs. a rock quarry</p>
<p>By: Russell Cameron Thomas<br />
Principal, Meritology<br />
<a href="mailto:russell.thomas@meritology.com">russell.thomas@meritology.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Richard</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36306</link>
		<dc:creator>Richard</dc:creator>
		<pubDate>Thu, 12 Nov 2009 14:56:41 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36306</guid>
		<description>Posted by James Shanesy, CISSP

I used to be a salesman of sophisticated, proprietary technology (not IT). I got out of it because I couldn&#039;t stand having to make promises that other people broke. At least now when I make a commitment, it&#039;s me and nobody else who either lives up to it or doesn&#039;t.

And in INFOSEC when you fail to deliver, the results can be catastrophic. I never believe salesmen. Around here we make sure that the commitments and assurances we need are built into the contract. This all gets murkier and murkier as we migrate into &quot;the cloud&quot;.</description>
		<content:encoded><![CDATA[<p>Posted by James Shanesy, CISSP</p>
<p>I used to be a salesman of sophisticated, proprietary technology (not IT). I got out of it because I couldn&#8217;t stand having to make promises that other people broke. At least now when I make a commitment, it&#8217;s me and nobody else who either lives up to it or doesn&#8217;t.</p>
<p>And in INFOSEC when you fail to deliver, the results can be catastrophic. I never believe salesmen. Around here we make sure that the commitments and assurances we need are built into the contract. This all gets murkier and murkier as we migrate into &#8220;the cloud&#8221;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Richard</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36305</link>
		<dc:creator>Richard</dc:creator>
		<pubDate>Thu, 12 Nov 2009 13:46:59 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36305</guid>
		<description>The below is from LinkedIn CISSP community:

Regardless of internal or external the weakest link in any information processing system from an INFOSEC perspective is the human element. I think that human factors engineering has been grossly overlooked in the IT sector in favor of spending billions on hardware and software solutions that can all be undermined by a basic user making a few keystrokes.

But don&#039;t ask those OEM vendors if their product will protect the system from users doing less than intelligent acts as the answer from the sales rep is generally &quot;sure we can handle that&quot;. I&#039;ve grown cynical after experiencing users time and again showing a complete disregard for even the most basic INFOSEC practices in favor of &quot;Get&#039;r Done&quot;.

Posted by Paul Zedeck, CISSP</description>
		<content:encoded><![CDATA[<p>The below is from LinkedIn CISSP community:</p>
<p>Regardless of internal or external the weakest link in any information processing system from an INFOSEC perspective is the human element. I think that human factors engineering has been grossly overlooked in the IT sector in favor of spending billions on hardware and software solutions that can all be undermined by a basic user making a few keystrokes.</p>
<p>But don&#8217;t ask those OEM vendors if their product will protect the system from users doing less than intelligent acts as the answer from the sales rep is generally &#8220;sure we can handle that&#8221;. I&#8217;ve grown cynical after experiencing users time and again showing a complete disregard for even the most basic INFOSEC practices in favor of &#8220;Get&#8217;r Done&#8221;.</p>
<p>Posted by Paul Zedeck, CISSP</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vision Jinx</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36301</link>
		<dc:creator>Vision Jinx</dc:creator>
		<pubDate>Thu, 12 Nov 2009 04:01:17 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36301</guid>
		<description>&lt;span class=&quot;topsy_trackback_comment&quot;&gt;&lt;span class=&quot;topsy_twitter_username&quot;&gt;&lt;span class=&quot;topsy_trackback_content&quot;&gt;RT @zhaol True or False: 70% of security incidents are due to insider threats http://bit.ly/3GL6gR&lt;/span&gt;&lt;/span&gt;</description>
		<content:encoded><![CDATA[<p><span class="topsy_trackback_comment"><span class="topsy_twitter_username"><span class="topsy_trackback_content">RT @zhaol True or False: 70% of security incidents are due to insider threats <a href="http://bit.ly/3GL6gR" rel="nofollow">http://bit.ly/3GL6gR</a></span></span></span></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lisa Spencer</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36298</link>
		<dc:creator>Lisa Spencer</dc:creator>
		<pubDate>Wed, 11 Nov 2009 18:15:13 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36298</guid>
		<description>&lt;span class=&quot;topsy_trackback_comment&quot;&gt;&lt;span class=&quot;topsy_twitter_username&quot;&gt;&lt;span class=&quot;topsy_trackback_content&quot;&gt;RT @MBenLakhoua: True or False: 70% of #security incidents are due to insider threats:  http://bit.ly/3GL6gR (via @zhaol) #identity&lt;/span&gt;&lt;/span&gt;</description>
		<content:encoded><![CDATA[<p><span class="topsy_trackback_comment"><span class="topsy_twitter_username"><span class="topsy_trackback_content">RT @MBenLakhoua: True or False: 70% of #security incidents are due to insider threats:  <a href="http://bit.ly/3GL6gR" rel="nofollow">http://bit.ly/3GL6gR</a> (via @zhaol) #identity</span></span></span></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Terry Brown</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36297</link>
		<dc:creator>Terry Brown</dc:creator>
		<pubDate>Wed, 11 Nov 2009 16:15:14 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36297</guid>
		<description>&lt;span class=&quot;topsy_trackback_comment&quot;&gt;&lt;span class=&quot;topsy_twitter_username&quot;&gt;&lt;span class=&quot;topsy_trackback_content&quot;&gt;RT @MBenLakhoua: True or False: 70% of #security incidents are due to insider threats:  http://bit.ly/3GL6gR (via @zhaol) #identity&lt;/span&gt;&lt;/span&gt;</description>
		<content:encoded><![CDATA[<p><span class="topsy_trackback_comment"><span class="topsy_twitter_username"><span class="topsy_trackback_content">RT @MBenLakhoua: True or False: 70% of #security incidents are due to insider threats:  <a href="http://bit.ly/3GL6gR" rel="nofollow">http://bit.ly/3GL6gR</a> (via @zhaol) #identity</span></span></span></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: uberVU - social comments</title>
		<link>http://sbin.cn/blog/2009/11/10/true-or-false-70-of-security-incidents-are-due-to-insider-threats/comment-page-1/#comment-36290</link>
		<dc:creator>uberVU - social comments</dc:creator>
		<pubDate>Wed, 11 Nov 2009 16:12:57 +0000</pubDate>
		<guid isPermaLink="false">http://sbin.cn/blog/?p=1491#comment-36290</guid>
		<description>&lt;strong&gt;Social comments and analytics for this post...&lt;/strong&gt;

This post was mentioned on Twitter by zhaol: #securitymetrics True or False: 70% of #security incidents are due to insider threats: http://bit.ly/3GL6gR...</description>
		<content:encoded><![CDATA[<p><strong>Social comments and analytics for this post&#8230;</strong></p>
<p>This post was mentioned on Twitter by zhaol: #securitymetrics True or False: 70% of #security incidents are due to insider threats: <a href="http://bit.ly/3GL6gR.." rel="nofollow">http://bit.ly/3GL6gR..</a>.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

