FierceFinanceFierceFinanceITFierceComplianceIT   FierceCIO

An anonymous security manager weighs in

More business applications are being hosted on the web these days, including payroll and accounting apps. You can't stop the trend. But when security managers hear about such plans, there is often cause for concern. An anonymous manager offers an interesting article in ComputerWorld.

"You'll really cringe when you hear what the project team had in mind before I was consulted. Their original idea was to simply install a couple of web servers in our Internet DMZ and open up communication directly between them and our financial systems. Yikes! And would you believe that the application vendor recommends this approach? This is why security managers have their work cut out for them."

The point is that as companies rush to the web, security can easily be overlooked. In this case, there was no stopping, or even delaying the project. So it required some fast action to build at least some security into the design. Fortunately, the higher ups were sympathetic to the cause. That's often the key. Right now, it should be an easy sell. 

For more:
- here's the account

Related Articles:
Big battle: Security managers vs. auditors?
Time to push data security ownership to business units?

SHARE WITH:
Email Twitter Facebook LinkedIn StumbleUpon
Get Your FREE FierceComplianceIT Email Newsletter:
Be the first to comment

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.