Upcoming Events

Interop NY
Oct. 1-5

Interop is the only event to give you a comprehensive and unbiased understanding of all the latest innovations-including cloud computing, virtualization, security, mobility and data center advances-that help position your company for growth.

Register Now!

More Events »

Subscribe to Newsletter

  • Keep up with all of the latest news and analysis on the fast-moving IT industry with Network Computing newsletters.
Sign Up

The Next Data Breach Could Mean Your IT Job

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , , ,

Channel: Other, Networking & Mgmt, Servers & Storage, Data Protection, E-discovery

Does everyone at your company know what data shouldn't be stored on laptops or removable storage devices? Do they know where they can and can't take these devices? Is there a clear company policy on data that needs to be encrypted?

Having good answers to these questions about security policy doesn't just help safeguard data. For an IT or security pro, it could mean the difference between keeping his or her job and having to explain to the boss--or worse, law enforcement officers and government officials--the reasons for an embarrassing data breach that could cost big bucks to fix. IT professionals involved in enforcing security at places where data breaches have occurred, including the Veterans Affairs Department and Ohio University in Athens, have learned the hard way how alleged lack of policy enforcement can negatively affect a career.

The theft in May of a laptop containing the names, birth dates, and Social Security numbers of millions of current and former military personnel put a spotlight on the VA's poor security track record and stirred debate over whether there was any policy in place that would have stopped an employee from taking more than 26.5 million unencrypted data records home to work on a project. The laptop was stolen during a burglary of the employee's home. By the time it was turned in to the FBI in late June, Pedro Cadenas Jr., the VA official in charge of information security, had announced his resignation from the department, and Michael McLendon, deputy assistant secretary for policy, had resigned.

Rep. Bob Filner, D-Calif., has said that three VA documents indicate that the employee--a data analyst--was authorized to take a laptop and data home, contradicting an earlier statement by VA Secretary James Nicholson. Filner also criticized the lack of any VA security policy to violate and said in a statement, "That's the real negligence--that there were no policies."

Employee Buy-In


Page:  1 | 2 |3 |Next Page »

Related Reading


More Insights




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

Network Computing encourages readers to engage in spirited, healthy debate, including taking us to task. However, Network Computing moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. Network Computing further reserves the right to disable the profile of any commenter participating in said activities.

 
Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.
 

Research and Reports

Storage Virtualization Guide
May 2012

Network Computing: May 2012

TechWeb Careers