Data breach du jour

If a couple of kids could breach the security then the heads should roll.

The only way to stop (or at least significantly reduce) breeches is to make it a criminal offence for a breech to have occurred. The CEO and CFO should be targeted too, not just the CIO.

The only reason for breeches IMO is underinvestment and lack of focus in security. There’s always something “more important” than security to spend the IT budget on. Well the risk of criminal sanctions would change that attitude in the C suite pretty quickly.

But it’s only the kids who understand these things. :roll_eyes:

Bearing out your point, the Director in charge of DGFiP has acknowledged that only 0.1% of its workforce is focused on cyber security, or 100 out of 93,000. There are plans to increase this!

2 Likes

I hope the Impôts was intelligent and hired those kids quick.

2 Likes

No Sue, I had many security experts in my team. We had heavyweight security even before the internet was a thing. No vulnerabilities would be countenanced and we had regular, audited, penetration testing. All managers took it very seriously. The spread of the internet just meant the serious manner in which we managed security should have become universal.

These kids aren’t smart or whizz kids, they are just pushing open doors. Now if it’s state sponsored highly trained spooks one is trying to fend off, that’s another matter, but we would have coped well with that too :slightly_smiling_face:

Management focus is all it takes.

1 Like

They aren’t smart Karen, they are just a couple of brats exploiting sloppy security. Something as simple as poor password management can leave sloppy systems wide open.

Yes, because there are no repercussions for those involved :roll_eyes: