Contributor

Alberta at risk. No surprise.

Opinion
Oct 6, 20081 min

By now it is not surprising when a government security assessment reveals problems. Alberta added themselves to the list with a report of serious lack of security controls and evidence that hackers had already intruded on government networks.   

In what sounds like their first ever comprehensive security audit the Auditor-General issued a report that stated they had to curtail an investigation after the first 69 machines they inspected showed major vulnerabilities. They also suffered from the usual instances of passwords taped to keyboards, and loose physical controls on access to their data centers.  One step the province took since last May was to hire a single person to oversee security – always a good measure.  

Every government network should undergo regular assessments.  The goal should be continuous improvement but also immediate slamming of those open doors. Complacency works for the hackers.

Richard Stiennon is chief research analyst at IT-Harvest, the firm he founded in 2005 to cover the 1,600 vendors that make up the IT security industry. He is the author of Surviving Cyberwar (Government Institutes, 2010) and There Will Be Cyberwar: How the Move to Network-Centric Warfighting Set the Stage for Cyberwar. He is a member of the advisory board at the Information Governance Initiative and principal of TrueBit Cyber Partners. He also serves on the R2-TAC, the technical advisory committee for the Responsible Recycling standard for e-waste.

Stiennon was chief marketing officer for Fortinet Inc. and vice president of threat research at Webroot Software. Prior to that, he was vice president of research at Gartner Inc. He has a B.S. in aerospace engineering and an M.A. in war in the modern world from King’s College, London.

The opinions expressed in this blog are those of Richard Stiennon and do not necessarily represent those of IDG Communications Inc. or its parent, subsidiary or affiliated companies.

More from this author