Trust employees to create a safer network
By Jennifer Scott,
Employees need encouragement to be honest about mistakes when it comes to IT security, rather than fear being reprimanded.
This is the belief of Stephen Bonner, managing director of information risk management at Barclays, who thinks the “you are being watched” approach doesn't help.
“I think the idea that users should face consequences... or if you teach users they will be punished if they make a mistake, there will be [problems],” he said during a keynote at InfoSecurity 2010.
“If they tell me straight away that they have left [something unencrypted] on the train I can get down to the station and retrieve it... but if they wait for weeks it will end up in a newspaper office.”
He added: “If you trust them and engage with them, you can find out things you never knew.”
Bonner believes the future will be more inclusive of what an employee wants, including bringing in their own machines to work on the business network.
Comparing it to company car schemes, he added: “The future for corporate IT is bring your own... a bog standard laptop will be provided but if you want to bring your own, that is [allowed].”
Answering questions about the security implications, Bonner claimed that no network is ever 100 per cent safe.
“We should bring them into a compromised network and fix that... we shouldn't try and put [our networks] in a bubble... it is never going to happen. You will never have a fully patched network and we can't pretend that [we do].”
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
What is your password worth?
Would you be tempted to sell off company passwords for a fee? If not, seems like you're in the minority, acccording to research.
- Macs under attack?
- Intel: security inside
- Are you spending too much on IT security?
- Does the government want to snoop on your data?
- Eurocrats versus the cyber criminals
- The truth about spam
- Google and privacy: What’s the problem?
- Q&A: Symantec’s CISO on the source code hack
- RSA: Back from the breach?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Apple iPad 3 vs iPad 2 head-to-head review
- Dell EqualLogic PS6100XS review
- Chromebooks: What's gone wrong?
- ICO: Fines for cookie law breakers
- UK regulator shuts down Angry Birds scam
- Open source software driving cloud-based innovation
- Fujitsu targets enterprises with Android ICS tablet
- IBM bans use of Siri on iPhones
- Dell PowerEdge R820 review
- BlackBerry 7 OS certified to carry 'Restricted' UK government information
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





