Government Technology
Government Technology: State & Local Government News Articles

Survey Finds Insider Threats Keeping IT Directors Awake at Night

May 28, 2008, News Report

Secure Computing Corporation today announced the results of an IT Director survey that uncovers a rising concern of insider threats and widespread acknowledgement of being unprepared for emerging Web-based attacks.

When asked whether they believed insider or outsider threats posed a bigger problem to their organization, more than 80 percent of the 103 directors surveyed said insider threats (defined as either unintentional data leakage or deliberate data theft). Less than one in five respondents (17 percent) feel the external threats posed by hackers are more dangerous.

This could be in part due to the fact that 37 percent of respondents have experienced leakage of sensitive information in the past year. In line with this, internal security is at the top of IT Directors' shopping lists when respondents were asked to rank potential future investments that included perimeter security, staff mobility and network performance.

Additional interesting survey findings include:

  • E-mail is the Enterprise Achilles Heel: E-mail is identified as the biggest current security risk to respondents' organizations (34 percent). Interestingly Voice over IP comes second (25 percent) and is deemed a bigger threat than Web surfing (browser-related threats), which only 21 percent of IT Directors feel is the biggest threat. Despite this apparent confidence, however, four in five respondents (79 percent) feel they could be better prepared for Web-borne threats
  • Web 2.0 Woes: Established external threats continue to be the biggest concern in a developing Web 2.0 environment. Viruses top the list of offenders, with 31 percent of IT Directors feeling it is the biggest threat, while spam comes in second (18 percent) and data leaks a close third (14 percent).
  • Hackers Not a Hindrance: When asked to rank their biggest external security concerns, hackers are surprisingly the area of least concern, with less than a quarter (22 percent) of respondents feeling they are the biggest threat. Malware appears to be the major headache, with 56 percent identifying it as their biggest worry.
  • Insider Investment: The biggest budgets will be spent on strengthening internal security, with 35 percent of IT Directors identifying it as their priority planned investment. Surprisingly, considering the forecasted downturn in the economy, "IT asset management for cost savings" is the lowest priority.
  • Security Climbing the Board's Agenda: IT Security is starting to be seen as a genuine business enabler -- only one in 10 respondents (11 percent) feel their board perceives it as a "necessary evil" while the remainder feel it is at least as important as any other IT project.
  • Data Disclosure Drive: Over two-thirds (68 percent) of respondents believe data breach disclosure should be compulsory in the UK, as it is in the United States.

"It's fascinating to see how perceptions of the threat landscape among senior IT decision makers is evolving, with the insider threat and data leakage rivaling traditional external threats among IT Directors' primary concerns," said Kieran Lees, Regional Sales Director at Secure Computing. "It's also very encouraging to see that security is starting to be seen as a genuine business enabler rather than just a necessary evil."

 

 

MJ

If You Liked This Article, You May Also Like...

Related Products and Services


Latest Government Technology News


Industry Solutions for Government

Read real world deployments of technology in government from our sponsors.

View All Industry Solutions

Marketplace


This section
brought to you by:
Ca - Transforming IT Management

CA World® 2008
An educational and networking conference for IT professionals.
  • 800+ conference sessions.
  • Free pre-conference education classes for registered attendees; available on a first-come basis.
November 16-20, 2008

SF Health Plan

  Yes! I would like more information about CA's solutions for Government.

Security Management

The Evolution of Identity and Access Management IAM has become a key tool in the organization’s security and risk management efforts. Many Govt. organizations however, are not realizing the potential of a fully evolved IAM solution. This paper helps them achieve that goal.

How can a comprehensive IAM solution help me reduce security risk and achieve easier compliance? Identity and Access Management (IAM) solutions help you manage users and their access to your IT resources while acheving more effective compliance.

IT Governance

IT Governance: Making the Difference in Cities, Counties and States Project and portfolio management helps government respond to old and new challenges. Featuring case studies from California Department of Agriculture, New York City, and Oakland County, Michigan.

CA Information Governance Solution Brief The CA Information Governance solution helps you solve an array of challenges with unique offerings including federated records management, email management, retention management and business process automation.

Enterprise Management

IT Network Management: State and Local Governments Face New Challenges Network and voice management tools help agancies get optimum performance from today's increasingly complex networks.

Success Stories: San Francisco Health Plan San Francisco Health Plan helps more people access affordable healthcare by simplifying IT management

Success Stories: Social Services Agency, County of Santa Clara County of Santa Clara improves the quality of social services with simplified IT management

CA Network & Voice Management Solution Brief Integrated, fault and performance management for end-to-end service assurance of multi-vendor, multi-technology converged networks.

Risk Compliance and Best Practices

Key Trends in the IAM Market and how CA's R12 Suite Addresses these Trends Identity and Access Management (IAM) has been a major force in the enterprise IT marketplace for years now.This paper will address the question: What's driving interest in IAM solutions?

Network and VoiceManagement for Evolving Business IT management specialist CA provides a foundation for delivering the value of unified network and voice management

A Vision for Dynamic Business Service Management By applying new levels of consolidation, automation and insight, dynamic Business Svc Mgt delivers improved service levels and cost controls

Deploying the CMDB for Change & Configuration Management The Configuration Management Database (CMDB) plays a critical role within the ITIL framework.

The Changing Face of Network Management Automated NCCM tools reduce the downtime and degradation caused by configuration changes.