SecurityRatty :: tag: organization
Featured Articles :: Poll: Who looks at logs in your organization? :: The wrong kind of empowerment reduces security and puts the organization at risk :: Another Old Presentation: What Every Organization Must Log and Monitor :: Laptop containing personal information is stolen from U.S. Foodservice :: ICANN blames June site hijack on registrar :: Employee fraud at Wells Fargo Home Mortgage affects some customers :: Houghton Mifflin Harcourt server breach leads to notification :: Oldham Primary Care Trust NHS loses two data sticks :: Is Risk Management a People Problem? :: Who should do your security audits? Or, how do you organize the security department?
Here is my next poll about logs : Who looks at logs at your organization
Vote here
Also, my past polls and analysis are here
About me: http://www.chuvakin.org
Two really good examples of why you should not ingnore insider threats popped up this week in Florida (click HERE) and in France (click HERE). When an employee feels threatened by the organization or their management, you have to expect that they will at least consider using whatever leverage they have at their disposal. So, its
Finally, I decide to "liberate" this presentation as well: "What Every Organization Must Log and Monitor" circa 2004
This is still very useful and relevant; also, many people will appreciate my attempt to do the impossible i.e. give a simple answer to a very complex question (BTW, it rarely works
So
View | Upload your own
About me:...
...Organization
U.S. Foodservice, Inc
Contractor/Consultant/Branch
None
Victims
Present and former employees, "and in a few instances, their dependents and applicants for jobs at USF
Number Affected
Unknown
Types of Data
names, social security numbers, home addresses, and/or dates of birth
Breach Description
We were informed recently of the...
The international organization that oversees the Web's top-level domain naming system said that the hijacking last month of several of its domains was due to a security breach at the registrar that manages those URLs
...Organization
Wells Fargo & Company
Contractor/Consultant/Branch
Wells Fargo Home Mortgage
Victims
Customers
Number Affected
Unknown
Types of Data
names, addresses, dates of birth, loan numbers, Personal Identification Numbers (PIN), current bank account numbers and last five digits of their Social Security numbers
Breach Description
We...
...Organization
Houghton Mifflin Harcourt ("HMH
Contractor/Consultant/Branch
None
Victims
individuals affiliated with Harcourt Trade
Number Affected
194
Types of Data
Social Security numbers
Breach Description
Houghton Mifflin Harcourt (HMH), a publishing company based in Boston, will begin notifying individuals whose information may have...
...Organization
Oldham Primary Care Trust NHS (PCT
Contractor/Consultant/Branch
None
Victims
PCT "clients
Number Affected
148
Types of Data
The information lost related to copies of assessments about future healthcare needs held in a secure central file. It included peoples names, addresses and dates of birth
I'm not sure if this means that...
...organizations can become more effective. Weve been thinking very hard about metrics and measurement and governance and compliance and assurance and so on and so forth. And one thing hit me funny today within that context, its the mention of the axiom Security is a People Problem
In his article, What can CISOs learn from the Societe Generale...