EMC hit by security lapse
By Marcus Austin,
At the EMC European Momentum conference the company's executive vice president Dave DeWalt admitted that the firm's security is less than perfect.
In his Keynote speech to 1200 delegates DeWalt first explained that EMC had "over 10,000 attacks on their web site every month" and so they had got in a company to test their security. DeWalt was surprised when "less than 24 hours later I had pictures of my desktop and applications."
It's unlikely that he was referring to actual photographs, it's more likely that the security company provided him with screenshots of his desktop and applications, and hence had cracked their internal network security.
While it's routine for big companies to get in specialists to investigate their security on a regular basis, most of those companies are not the owners of security specialists RSA.
Back in July EMC paid around $2.1 billion dollars for RSA and at the time EMC CEO Joe Tucci said "Businesses can't secure what they don't manage, and when it comes to securing information, that means simply two things - managing the data and managing access to the data,"
He added "Bringing RSA into the fold provides EMC with industry-leading identity and access management technologies and best-in-class encryption and key management software to help EMC deliver information lifecycle management securely."
EMC prides itself on its speed assimilating companies; it has bought 10 this year. - But from this admission it's obvious that they've not quite managed to integrate RSA into their company's security systems.
While a lack of security on EMC's internal network doesn't indicate that any of EMC's own products are lacking in security, it does pose some questions. Why doesn't a company that boasts a research and development spend of $4 billion over the last three years spend more on protecting their own network? And how long is it going to be before RSA is included in their products?
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
Who to trust after the VeriSign hack?
Davey Winder questions what data was stolen from VeriSign and wonders why the company hasn't been more forthcoming.
- Striving to solve the security skills crisis
- Would you employ a hacker or malware writer?
- Q&A: Raj Samani, CTO McAfee
- Erase and rewind: the EU and privacy
- My email address is [CENSORED]
- Is there such a thing as a secure tablet?
- 2011: The year in news
- BYOD: Old or new, good or bad?
- Are the cookie laws crumbling already?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Google releases Chrome for Android beta
- Will someone rid me of these troublesome Macs?
- OneNote hits Google?s Android
- BlackBerry Bold 9790 review
- Google sends in Bouncer to sort out malicious apps
- Ubuntu vs. Windows 7 on the business desktop
- Who to trust after the VeriSign hack?
- Head to Head: Mac OS X 10.7 Lion vs Windows 7
- ACTA: the basics, the controversies, and the future
- BT considering Ofcom price cap appeal
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





