New Top 10 IT Security Myths That Put You At Risk

iStock Risk


Gartner Analyst Jay Heiser explained that in InfoSec, there are a lot of "misperceptions" and "exaggerations" about both the threats you face and the solutions you use to protect your networks. All this false data boil down to "security myths" which are widely known and regularly used to explain things. Here are the ten myths, and a link to Ellen Messmer's article in InfoWorld where each of them gets busted and/or the cure is provided. This is a good read!

  1. "It won't happen to me"
  2. "InfoSec budgets are 10 percent of IT spend."
  3. "Security risks can be quantified"
  4. "We have physical security (or SSL) so you know your data is safe"
  5. "Password expiration and complexity reduces risk"
  6. "Moving the CISO outside of IT will automatically ensure good security"
  7. "Adhering to security practices is the CISO's problem"
  8. "Buy this tool <insert tool here> and it will solve all your problems"
  9. "Let's get the policy in place and we are good to go"
  10. "Encryption is the best way to keep your sensitive files safe"

Here is the link:

Subscribe to Our Blog

Comprehensive Anti-Phishing Guide

Get the latest about social engineering

Subscribe to CyberheistNews