« Venture Capital Investments in NYC Skyrockets 40% | Main | Turning Security & Privacy into a competitive advantage »

Turning Security & Privacy into a competitive advantage

Many Chief Security Officers supporting Financial Services today are delivering empirical data to their management as proof of Security & Privacy compliance; however you need more tangible evidence to sell customers and partners on Security and Privacy compliance beyond registry ticks and checks.

Most Fortune 500 CIO’s I speak with are worried the company’s reputation and brand highly valued by the board; “its hard thing to earn and keep -- harder to repair”

This does not mean endless amounts of investments aimlessly poured into Security & Privacy; rather a measured balance view is critical when making buying decisions. Additionally, you must level-set across your partner ecosystem. Your company could be 100% compliant, but when client data passes from your enterprise to your partner’s and they haven’t applied the same rigors -- “egg” is on everyone face when information leakage is detected.

Managing the FUD “Fear Uncertainty and Doubt” is becoming a full time job for CSO’s and top of mind with CIO when mission critical transactions are at steak. Business and Technology must work together thinking through processes end-to-end understanding and anticipating the “Chess Board” a few moves down.

Good practice starts with a scorecard tracking basic items like, new incidences, vulnerabilities thwarted, escalated & tracked, closed, and level of granularity of attack. Industry analyst’s clearly state threats are moving away from the operating systems and network now targeting applications.

One emerging software vendor focused on this application protection space is Cenzic, who provides breakthrough enterprise software and services for automated application security assessment and policy compliance testing. This platform allows corporations and government organizations to dramatically improve the security of commercial and custom applications. “Hailstorm” enables security experts, QA professionals, and developers to work together to assess, analyze, and remediate applications for security vulnerabilities, and verify compliance with security policies. Using a Stateful Assessment™ approach, Hailstorm is able to provide highly accurate results with minimal false positives.

Post cards from the edge…

Cheers, Don.

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/t/trackback/566811/6180778

Listed below are links to weblogs that reference Turning Security & Privacy into a competitive advantage:

Comments

please !!!!!!!!

62iw3Z fjgq63mb05gi8davg763fk71g

i'm fine good work asia airline tickets qsniv

p5KRUs fdf043hj93jkfjw845qgtj6fqp

It's serious http://google.us/group/llteens costumes for teens halloween 897

nDHPU9 gfb07yvt9d6t94wbtx63bgq7d

Post a comment

If you have a TypeKey or TypePad account, please Sign In

Recent Posts

Recent Comments

July 2008

Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30 31    
My Photo

Friends Online

  • Cliff Reeves
    General Manager of Microsoft's Emerging Business team - - Most of the Time; Software, Collaboration, Innovation.
  • Dan'l Lewin
    Should Microsoft Invest in Startups?
  • Don Dodge
    A colleague at MSFT, plus: ex-Groove, ex-Napster, ex-Bowstreet, ex-DEC, ...
  • Larry Gregory
    A founding member of the Microsoft Emerging Business team, focused on Business Intelligence and Mobility companies
  • Sam Ramji
    Sam Ramji -- a colleague on the Emerging Business team -- focusing on SaaS, LAMP and Application Development Tools

Interesting Books