RE: Security procedure question



A Security department is only as strong as policy. If it is documented and
the person is a risk, kill his access and let his supervisor either barter
for it back (with conditions) or gets rid of the risk.

-----Original Message-----
From: listbounce@xxxxxxxxxxxxxxxxx [mailto:listbounce@xxxxxxxxxxxxxxxxx] On
Behalf Of Curtis Duck
Sent: Tuesday, September 26, 2006 4:08 PM
To: 'Krpata, Tyler'; 'MandommGmail'
Cc: security-basics@xxxxxxxxxxxxxxxxx
Subject: RE: Security procedure question

I agree something very heavy and sharp too. Human stupidity can be broken
all it takes is education either gently or very rough.


-----Original Message-----
From: listbounce@xxxxxxxxxxxxxxxxx [mailto:listbounce@xxxxxxxxxxxxxxxxx] On
Behalf Of Krpata, Tyler
Sent: Monday, September 25, 2006 12:36 PM
To: MandommGmail
Cc: security-basics@xxxxxxxxxxxxxxxxx
Subject: RE: Security procedure question

Oh, you can defend against that. You just need something heavy and/or
sharp that you can swing easily.

-----Original Message-----
From: MandommGmail [mailto:mandomm@xxxxxxxxx]
Sent: Monday, September 25, 2006 6:15 AM
To: Saqib Ali; Brown, Sam; mario@xxxxxxxxxxxxx; lists@xxxxxx
Cc: security-basics@xxxxxxxxxxxxxxxxx
Subject: Re: Security procedure question

I'm concerned about a user leaving the id and password on paper in or
near
the laptop.

There is no way one can defend against a user who decides to stick a
sticky
pad on his laptop and leaves his password there. The best encryption
tool
does not defend against human stupidity.

Alex


---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------



This e-mail and any attachments may contain confidential and
privileged information. If you are not the intended recipient,
please notify the sender immediately by return e-mail, delete
this
e-mail and destroy any copies. Any dissemination or use of this
information by a person other than the intended recipient is
unauthorized and may be illegal.

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------



Relevant Pages

  • RE: Using Web mail (hotmail, gmail, yahoo, etc) for Business mails
    ... Another issue with these webmail products is the mass storage that they now ... In highly secured environments they can pose as much of a security ... risk as USB drives and removable storage. ... The NSA has designated Norwich University a center of Academic Excellence ...
    (Security-Basics)
  • How to get into Penetration testing?
    ... I think it is very good for a pen tester to have programming ... security company's position. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence ...
    (Security-Basics)
  • Re: Changing user password policy
    ... doing this with good security. ... > EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... > The NSA has designated Norwich University a center of Academic Excellence ... Our program offers unparalleled Infosec management ...
    (Security-Basics)
  • RE: Sandboxie
    ... No sandbox product is fool proof. ... Java's first security model was fairly secure. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic ...
    (Security-Basics)
  • RE: A degree in MSIA - the various programs
    ... I am a 2005 graduate of the Norwich University Information Assurance ... Norwich is the well-known Information Security Specialist, ...
    (Security-Basics)