SUBSCRIBE

Data theft still on the rise despite more IT spend: Survey

The fact that data theft is still an issue is not surprising to most anyone in the IT sector. For instance, Brennan Oโ€™ Hara, solution manager for Seattle-based Attachmate division, NetIQ thatย released the survey of over 200 IT โ€œdecision makersโ€, said that โ€œalthough all this money and technology is being thrown at the problem, if you have a terabyteโ€™s worth of data to dig through and you are under-staffed as an organization, under-resourced as an IT organization, itโ€™s going to be very difficult for you to properly spend the time to navigate through all that data.โ€

Oโ€™Hara said, knowing about where all your data lies isnโ€™t a solution; โ€œjust having the data doesnโ€™t make you smarter.โ€

Brian Oโ€™Higgins, president of Ottawa-based Brian Oโ€™Higgins and Associates, said โ€œthe whole thing is not surprising.โ€ Oโ€™Higgins said โ€œthereโ€™s more attack vectors every day as IT evolves. We have greater bandwidth, technology is easier to use, we have all these little devices that store a lot of stuff and we have cloud services with more and more information,โ€ so basically โ€œmore attack vectors (means) more opportunities for bad guys to do stuff.โ€

Oโ€™Hara said the data was interesting, at least in as much as it may identify some of the problems IT faces. Some of the more interesting statistics from the study include the fact โ€œthat 64 per cent (of respondents) cited lack of time to monitor vast amounts of data and another set of folks, 55 per cent, said that they were unable to manage security in a cloud or virtual environment.โ€

He said that, while there are steps to be taken, โ€œI donโ€™t think thereโ€™s one silver bullet to solving the problem.โ€

Oโ€™Higgins vigorously agreed with that sentiment. He said โ€œsecurity is not solved at all, and I donโ€™t know if it ever will be.โ€ Oโ€™Higgins suggested that a more pragmatic approach to security is case models. He said businesses need to spend more time looking to successful models in their industry and then trying to be just a little better. โ€œI donโ€™t have to be faster than the bear, I just need to be faster than you,โ€ Oโ€™Higgins said.

Oโ€™Hara wasnโ€™t quite willing to accept that, despite admitting it wasnโ€™t wrong. He suggested that identity management was a โ€œa very quick win, with enterprise single-sign-on or Web-access management for password management,โ€ allowing for a measure more of security in IT.

The issue for Oโ€™Higgins is that, โ€œthe attacker is always going to win because (to defend) you have to know every kind of attack and the attacker only has to know one that you donโ€™t know about.โ€

It may be a disparate statement, but itโ€™s also a realistic one to keep in mind when setting IT policy, both Oโ€™Hara and Oโ€™Higgins agreed.

Tech Jobs

Categories