Note: this blog is a mirror of my HP Labs Blog, on the same topic, accessible at: http://h30507.www3.hp.com/t5/Research-on-Security-and/bg-p/163

Monday, January 14, 2008

Is the Increase in Security Failures and Privacy Breaches Often Due to Wrongsourcing?

This is the point made by Claudiu Popa, Informatica’s president, as reported by this article:

“Toronto-based Informatica Security Research estimates that the vast majority of issues involving the security and privacy of data, identity theft breaches, compliance failures and other information risk issues are due to poor strategic planning and IT governance.

Informatica’s president, Claudiu Popa is a recognized information risk consultant who sees the issue as a management problem: “we have seen a general trend in North America where we often talk to companies that opt to force their internal IT departments to also manage security. Many organizations fail to realize that security management is not a core competency that neatly fits within IT governance activities. In fact, as companies scramble to achieve compliance with numerous standards and legislation, they often mismanage their operations and impact productivity. It makes no sense to in-source activities that are complex, expensive and often mismanaged instead of hiring qualified experts to get the job done. The flip side of what I call ‘wrong-sourcing’ is that organizations too often choose to outsource their core capabilities. This is backwards and executives should revisit their business objectives."”

--- NOTE: my original HP blog can be found here ---

1 comment:

Anonymous said...

Very interesting. Thanks