The InfoSec Blog

System Integrity: Context Is Everything

Navigation
  • About The Author
  • Presentations
  • System Integrity
You are here: Home › Crime › Sony backs U.S. ineffective cybersecurity legislation
← A large scale failure of information security
Compliance? What Compliance? →

Sony backs U.S. ineffective cybersecurity legislation

1 July, 2011 | Filed under: Crime, Failures, Law, Politics & Economics, Risk, Security and tagged with: compensatory, Computer security, controls, detective, Legislation, preventative, Sony, United States Congress

Magic Link

Image via Wikipedia

http://www.vancouversun.com/news/Sony+backs+cybersecurity+legislation/5030033/story.html

“If nothing else, perhaps the frequency, audacity and harmfulness of
these attacks will help encourage Congress to enact new legislation to
make the Internet a safer place for everyone,” the Sony executive said.

“By working together to enact meaningful cybersecurity legislation we
can limit the threat posed to U.S. all,” he said.

To people like us, IT Audit and InfoSec types, ‘control‘ come in 3 forms

  • preventative
  • detective
  • compensatory

It seems that this legislation focuses on the 3rd and not the first.
It might even be seen to discourage the second.

Related articles
  • Sony backs U.S. cybersecurity legislation (canada.com)
  • DOD Website Sells Public On Cybersecurity Strategy (informationweek.com)
  • Companies To Spend $130 Billion On Cybersecurity In 2011 (teamshatter.com)
  • Obama to Introduce Cybersecurity Proposal (circleid.com)
  • White House to unveil cybersecurity proposal (theglobeandmail.com)
  • What do we need to do to reach “cybersecurity awareness”? (nakedsecurity.sophos.com)
  • White House Cybersecurity Plan: What You Need To Know (huffingtonpost.com)
  • Microsoft Endorses White House Cybersecurity Plan (blogs.wsj.com)
Enhanced by Zemanta

Did you like this article? Share it with your friends!

Written by Anton Aylward

Security Evangelist

Visit my Website
← A large scale failure of information security
Compliance? What Compliance? →

Leave a Reply Cancel reply

You must be logged in to post a comment.

Calendar

July 2011
M T W T F S S
« Jun   Aug »
 123
45678910
11121314151617
18192021222324
25262728293031

Search

Archives

Tag Cloud

Access control Apple Botnet Business Business Continuity Planning Certified Information Systems Security Professional CISSP Computer security Confidence trick Consultants controls Donn Parker Editing English language FMEA fraud HP Individual Standards Information security infosec International Organization for Standardization IPad IPhone ISO/IEC 27001 Laptop laptops Law Linux Malware Management Microsoft Open source owasp Policy Risk Risk analysis Risk assessment Risk Management Security Site Management Standards statistics Technology United States Vulnerability

Meta

  • Log in
  • Entries RSS
  • Comments RSS
  • WordPress.org

Popular Pages

  • The Classical Risk Equation
  • Separation of Duties: Infosec, IT and Audit
  • “Cybercrime” is still Crime and “Cyberfraud” is still Fraud
  • Risk Analysis makes no sense … Does it?
  • Are *you* ready to give up yet?
  • Why InfoSec Positions go unfilled
  • Security
  • Risk

Categories

Advisories & Vulnerbilities

  • bugtraq @ insecure.org
  • SANS Security Alerts
  • SANS Storm Center
  • Secunia Advisories
  • Symantec Security Response – Advisories
  • Symantec Security Response – Resent Viruses

Blogroll

  • Augusto Paes de Barros
  • Bob Johnston
  • Daniel Accioly Rosa
  • Deep Litter
  • DHS Daily Report
  • Eduardo Neves
  • Emergent Properties
  • Gary Hinson
  • Hayden’s Harangues
  • Martin McKeay
  • Schneier on Security
  • The Quiet Earth
  • The Security Team
  • Watchguard Wire

Security Links

  • CERT-CC
  • E2K Security
  • focus-ids @ insecure.org
  • fulldisclosure @ insecure.org
  • Identity mangement news
  • Incidents
  • InfoWorld- Security
  • isn @ insecure.org
  • joatBlog
  • Kill-HUP.com
  • Mark O’Neill’s Radio Weblog
  • microsoft @ insecure.org
  • Microsoft TechNet – Security
  • MSDN- Security
  • Network World Fusion NetFlash
  • Network World on Privacy
  • Network World on Security
  • Network World on Wireless Security
  • nmap-hackers @ insecure.org
  • Scott Granneman- Intellectual Property
  • Scott Granneman- Privacy
  • Scott Granneman- Security
  • Scott Loftesness- Digital Identity
  • Security Blog
  • Stupid Security
  • THE Network Security Blog – Geek Troy Jessup
  • Wi-Fi Networking News
  • Wifi Security Project

© 2013 The InfoSec Blog

Powered by Esplanade Theme by One Designs and WordPress