- BlackBerry Storm vs. the iPhone
- 2008 IT industry graveyard
- Top 10 worst uses for Windows
- Economic crisis means double duty for IT pros
- BlackBerry Storm, RIM's first touchscreen device, rolls in
Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:Application Performance Solutions | App Performance | Networking Solution | SafeGuard Enterprise Solution Center | SOA | Test your Web Filter | Value of WDS
A panel discussion involving a group of experts held during Demo 2006 in Phoenix this month concluded that the state of security is not where it should be. Luckily, the panelists also had suggestions on how to improve it.
During the conference, which is owned by Network World, former IBMer and consultant John Patrick called together a panel of industry and academic figures to answer the question: Will the good guys be able to stay ahead of the bad guys? But first Patrick asked the panel to assess the current state of security, and the responses showed that the good guys aren't necessarily ahead of the bad.
"The state of security is terrible . . . absolutely abysmal," said Hilarie Orman, former research scientist and onetime member of Defense Advanced Research Projects Agency's Information Technology Office. She now is CTO and vice president of engineering with Shinkuro, which makes file-sharing software. "It's difficult to argue there's a good state of security right now."
Another panelist reminded the audience that there's no such thing as perfect security. "It's a cat-and-mouse game [that the industry plays with hackers], but we need to bring [the threat] down to a level where we can live with it," said Partha Dasgupta, an associate professor with Arizona State University's Fulton School of Engineering.
The good news, according to the third panelist, is at least the industry and users are beginning to think about security. Enterprise and consumer products need to find a balance between being secure and being useful, said Charles Palmer, manager of the security, networking and privacy departments at IBM's Thomas J. Watson Research Center.
"If [security] makes the system really hard to use or is done wrong, you've got a brick," he said.
One possible solution to the recent series of identity theft is biometrics, in which computers scan a finger, face, retina or other part of the body and save that image for authentication. The problem with biometrics, agreed the panel, is that once a thief learns how to reproduce a fingerprint, the owner can't change the original.
Technology is being developed that doesn't take a picture of the finger but some small measurements of the finger's characteristics, said Palmer, who added that 4% of people can't produce good fingerprints and that pineapple juice can temporarily remove a person's fingerprint.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comment