NetEvents 2007
NetEvents 2007

Experts call for fundamental IT security rethink

Nationwide laptop theft highlights inadequacies of traditional security

Written by Robert Jaques, vnunet.com

Nationwide Building Society's recent loss of a laptop that exposed sensitive personal details of 11 million customers highlights the need for a fundamental reassessment of enterprise security, it was claimed today.

Rob Bamforth, principal analyst with Quocirca, said that the incident highlights "elemental deficiencies" with traditional IT security practices.

"The fundamental issue with the Nationwide data theft was that the whole database was loaded on the laptop," Bamforth said today at the NetEvents symposium in Evian.

Advertisement

"The blunder shows the serious issues around the defragmentation of data. The more you fragment data and keep it separate, the more you can protect your assets as there is less to lose.

"This shows that it is not enough to rely on specific security tools such as encryption. Enterprises need something more fundamental than security software and hardware. What you need is a fundamental rethink."

Bamforth added that taking action such as trying to secure firewalls around data centres missed the fundamental changing nature of data mobility.

"Enterprises are just too porous for data. Devices such as 2GB and 4GB memory sticks cost peanuts now so the extraction of data is so simple," he said.

"To fight this enterprises need to revise policies and procedures. This is all about data flow or data management rather than a security."

However, James Collinge, director of product management at security firm TippingPoint, argued that traditional security technologies are evolving to cope with the new threats.

"Today we can look for malicious traffic and perform some kind of function on that traffic. Ultimately we want to do that with content such as social security numbers," he said.

"We want to enforce policy in real time at the microsecond level. But we will not see this anytime soon."

Tags:

Reader comments

More from Computeractive

News

The latest home computing news

Downloads

The best PC tools, applications and more

Reviews

Independent opinions on new hardware and software

Step-by-step guides

Easy-to-follow projects with pictures

PC Help

Solve PC problems with our Q&A

Videos

PC projects demonstrated and product reviews

Articles

An in-depth look at how to get the best from your PC

Magazine

What's coming up in Computeractive

Forums

Get help with your PC problems from our readers

Competitions

Your chance to win computing prizes

Shopping

Great deals on products, services and more

Computeractive CD Rom 10
All 26 issues of Computeractive from 2007 on one CD-Rom.

Ultimate Guide to PC Troubleshooting
Everything you need to know to solve your PC problems.

Create your own calendars softwareCreate your own Calendars
The fun and easy way to create your own calendars!

Computeractive - Issue 280Computeractive Back Issues
Missed an issue? Click here to find a back issue

Blogs

Windows Watch

Windows Watch

Keeping an eye on the latest XP and Vista news

Singing from the CES song sheet

07 Jan 2009Given the amount of times you're likely to hear the word 'innovation' at a technology showcase like the Consumer Electronics Show, it's...

Download Junkie

Download Junkie

Your daily dose of download discussion

Backup and synchronise documents across multiple computers

07 Jan 2009Working across more than one computer is fairly common for some people, maybe a desktop at home as well as a work...

Advertisement

Free email newsletters

Techno babble demystified...

[Display all definitions]

Or type in any computer-related word and click "Go"

Advertisement

Computeractive is not reponsible for content of Google adverts

Primary Navigation

© Incisive Media Ltd. 2009. Incisive Media Limited, Haymarket House,
28-29 Haymarket, London SW1Y 4RX, is a company registered in the United Kingdom with company registration number 04038503

Search computeractive.co.uk