Tag: insider risk

  • Insider Risk: Not An Excuse!

    Avis are in the news with 299,006 customers’ information stolen & leaked. Such breaches are not uncommon, sadly. But the spin on this one has me concerned. Avis blame “Insider wrongdoing” for the breach, as if this is some acceptable explanation. To be clear: it is not. Risk management doesn’t stop at the front door.

    Read more

  • Time, Gentlemen

    It’s time to fix Police Vetting “It is obvious that Wayne Couzens should never have been a police officer. Whilst holding a position of trust, in reality he was a serial sex offender. Warning signs were overlooked throughout his career and opportunities to confront him were missed. We believe that Sarah died because he was

    Read more

  • Keep Your Friends Close, But Keep Your Enemies Closer

    Anyone who follows my musings will have seen me write about trust and trusting people; about Insider Risk and the impact of Vetting/Clearance processes upon this. One of the problems with trying to understand or characterise Bad Actors – even statistically – is that of getting hard data. Those with the hard data are often

    Read more

  • Insider/Nearsider Subversion of MFA

    MFA is becoming ubiquitous for many of us. I’d like to: You what?! So before we get down to subverting some extremely useful and important technology that provides MFA, we should probably define some terms. But MFA is secure, right? Security is a fascinating area. It’s full of edgecases and devil-in-the-detail situations. Sometimes one needs

    Read more