The results of the poll for this past week show that 91% believe information security and privacy training and awareness is important, but 9% believe it is not necessary to effectively safeguard data.
Well, I’ve had some very interesting conversations in the past few years, usually while at conferences and when chatting with vendors, who were emphatic about how awareness and training is “a waste of time and money.” As the results of my very unscientific poll show, while this opinion may be a very small percentage, it still could significantly impact information security program efforts based upon the folks who are putting down the awareness and training…the influence they have on non-infosec corporate decision makers could be very damaging to overall efforts…
Archive for the ‘Training & awareness’ Category
Bad Advice from the Uninformed and Inexperienced Hurt Information Security & Privacy Efforts
Sunday, August 12th, 2007Trick or Treat for Poll Clicks, Please! :)
Friday, August 10th, 2007Do you think my current blog poll (right side of screen, scroll down a bit) is lame? I had a couple of my friends and information assurance friends tell me that my question this week is a no-brainer; that no one will take a poll that is obvious.
Well, if you read my blog occasionally you know that I am a strong believer that information security and privacy awareness and training is absolutely necessary for security and privacy efforts to be effective. But, I have also seen published statements from some otherwise very smart folks stating that awareness and training efforts are a waste of time, a waste of money, or that only technology alone can result in effective security since most folks will “never learn anyway.”
Wii Need To Be Creative With Information Security and Privacy Awareness
Monday, August 6th, 2007No, I didn’t misspell in the title… 🙂
My youngest son recently celebrated his birthday. Both my sons are the greatest kids I could ever have dreamed of. They both always do their chores and homework with very little prodding, are healthy, smart, considerate, loveable…well, I could go on and on. I am very thankful for them.
Privacy in the 21st Century is Captured Well in This Year’s GSW Logo Competition Winner
Sunday, August 5th, 2007Global Security Week (GSW) is September 3 – 7 this year, and the topic is Privacy in the 21st Century.
All the GSW logo entries were nice, but I think the winner of the GSW logo competition, Emily Hoelscher, captures the essence of privacy quite well. I really like how Emily incorporated both physical and data issues into her design.
Privacy in the 21st Century: Show Your Creativity for Global Security Week!
Thursday, July 19th, 2007Global Security Week (GSW) is September 3rd through 9th.
The topic this year is “Privacy in the 21st Century.”
An Exemplary Privacy Practice at a University
Tuesday, July 17th, 2007There are many…*MANY*…reports of privacy breaches and security incidents virtually every day. However, I think it is important to point out when organizations do something right with regard to privacy practices, particularly when they are uncommon compared to what other businesses do; perhaps other organizations will see their positive example and follow their lead.
Trademarks, Virtual Reality Sites, and Creating a Very Aware Next Generation of Information Assurance Leaders
Tuesday, July 3rd, 2007I’ve been working in my home office for around 7 1/2 years, being able to do most of my project work from home, which I’m thankful for. During that time my now 10-year-old and 7-year-old (he’ll remind you he turns 8 next month) sons have been around me quite a bit as I do my work. So I discuss a lot of what I do with them, they ask a lot of questions, and they soak a whole lot more into their brains than I realize. Especially over summer when they are at home with me virtually all day every day.
“Over 1 Million Computer Victims” Can Lead To Some Interesting, Awareness-Raising, Discussions
Tuesday, June 26th, 2007Here’s a great conversation starter for a nice chat with your business leaders, “The FBI has found over 1 million computers are controlled by criminal botnets.”
Be prepared to answer some follow-up questions from your business leaders after telling them this, such as…
Another Fun Security Awareness Site
Friday, June 15th, 2007Here’s another great security awareness site pointed out by Dave Ockwell-Jenner in the Security Catalyst community:
the Security Cartoon site.