New Top 10 IT Security Myths That Put You At Risk



iStock Risk

 

Gartner Analyst Jay Heiser explained that in InfoSec, there are a lot of "misperceptions" and "exaggerations" about both the threats you face and the solutions you use to protect your networks. All this false data boil down to "security myths" which are widely known and regularly used to explain things. Here are the ten myths, and a link to Ellen Messmer's article in InfoWorld where each of them gets busted and/or the cure is provided. This is a good read!

  1. "It won't happen to me"
  2. "InfoSec budgets are 10 percent of IT spend."
  3. "Security risks can be quantified"
  4. "We have physical security (or SSL) so you know your data is safe"
  5. "Password expiration and complexity reduces risk"
  6. "Moving the CISO outside of IT will automatically ensure good security"
  7. "Adhering to security practices is the CISO's problem"
  8. "Buy this tool <insert tool here> and it will solve all your problems"
  9. "Let's get the policy in place and we are good to go"
  10. "Encryption is the best way to keep your sensitive files safe"

Here is the link: http://www.infoworld.com/d/security/top-10-it-security-myths-putting-businesses-risk-220570




Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews