首页> 外文期刊>SC magazine >SEAL OF APPROVAL
【24h】

SEAL OF APPROVAL

机译:批准印章

获取原文
获取原文并翻译 | 示例
       

摘要

As its executive director, W. Hord Tipton may run the show at nonprofit (ISC)2, which manages the security industry's flagship certification - the CISSP - but he knows no credential can serve as a silver bullet. "I once had a CIO at a major [federal government] department ask me how many CISSPs does he need to have to guarantee perfect security," recalls Tipton, 68, the former CIO of the U.S. Department of Interior. "The answer, of course, is, 'It's not possible.' Even if you have the perfect person in place, and they write you the perfect policy and configure your systems perfectly, but you don't have compliance with those policies, there isn't a single thing your security person can do." Human error remains the Achilles' heel of most security operations. An organization can have all of its ducks in a row, but if an employee decides to click on an email attachment claiming to be a work-related document, but which actually turns out to be a trojan for which there is no detection, the most knowledgeable security pro in the world may not be able to save its network from compromise.
机译:作为执行董事,W·霍德·提普顿(W. Hord Tipton)可能会在非营利组织(ISC)2上主持该展会,该组织管理着安全行业的旗舰认证CISSP,但他知道没有任何凭证可以作为灵丹妙药。美国内政部前首席信息官,现年68岁的提普顿回忆说:“我曾经在一个主要的(联邦政府)部门担任首席信息官,问我需要多少个CISSP才能保证完美的安全性。” “答案当然是,'不可能'。”即使您拥有一个完美的人,他们会为您编写完美的策略并完美地配置您的系统,但是您不遵守这些策略,安全人员却无能为力。人为错误仍然是大多数安全操作的致命弱点。组织可以连续放置所有鸭子,但是如果员工决定单击声称是与工作有关的文档的电子邮件附件,但实际上却是无法检测到的特洛伊木马,世界上知识渊博的安全专家可能无法挽救其网络免受威胁。

著录项

  • 来源
    《SC magazine》 |2012年第5期|p.2123-24|共3页
  • 作者

  • 作者单位
  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2022-08-17 13:23:26

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号