Log in
::
Register
::
Not logged in
Home
Tags
Articles
Editorials
Stairways
Forums
Scripts
Videos
Blogs
QotD
Books
Ask SSC
SQL Jobs
Training
Authors
About us
Contact us
Newsletters
Write for us
Recent Posts
Recent Posts
Popular Topics
Popular Topics
Home
Search
Members
Calendar
Who's On
Home
»
SQLServerCentral.com
»
Editorials
»
Outsourcing Security
Outsourcing Security
Rate Topic
Display Mode
Topic Options
Author
Message
Steve Jones - SSC Editor
Steve Jones - SSC Editor
Posted Thursday, September 27, 2012 12:01 AM
SSC-Dedicated
Group: Administrators
Last Login: Yesterday @ 1:47 PM
Points: 31,406,
Visits: 13,722
Comments posted to this topic are about the item
Outsourcing Security
Follow me on Twitter:
@way0utwest
Forum Etiquette: How to post data/code on a forum to get the best help
Post #1365040
Stephanie J Brown
Stephanie J Brown
Posted Thursday, September 27, 2012 1:11 PM
Mr or Mrs. 500
Group: General Forum Members
Last Login: Thursday, May 09, 2013 2:01 PM
Points: 505,
Visits: 874
In some ways we outsource security already by relying on software from Webroot, Symantec, McAfee and others to protect our PCs from viruses and other nastiness. Outsourcing data security is just another step along that path, albeit one that requires more interaction than just passively accepting updates to a virus database.
I agree that communication skills will be essential. I also think a certain level of security knowledge will still be required in order to apply those communication skills and have the necessary conversations with the outsource provider, and also to help guide the security scope and / or put security audits in place.
Another example of the job not going away, just changing at the detail level...
Here there be dragons...,
Steph Brown
Post #1365469
bitbucket-25253
bitbucket-25253
Posted Thursday, September 27, 2012 2:52 PM
SSCertifiable
Group: General Forum Members
Last Login: Today @ 9:21 AM
Points: 5,099,
Visits: 20,191
I wonder who is responsible for checking the checkers .... what if the rogue individual works for the security firm. He/she becomes aware of a fault in the system and then executes same, BEFORE others in the firm can amend the code / test the new code/create an update/Upload the update to all its customers.
It becomes a never ending circle, it goes back to the old saying "trust no one not ever yourself"
If everything seems to be going well, you have obviously overlooked something.
Ron
Please help us, help you -before posting a question please
read
Before posting a performance problem please
read
Post #1365514
« Prev Topic
|
Next Topic »
Permissions
You
cannot
post new topics.
You
cannot
post topic replies.
You
cannot
post new polls.
You
cannot
post replies to polls.
You
cannot
edit your own topics.
You
cannot
delete your own topics.
You
cannot
edit other topics.
You
cannot
delete other topics.
You
cannot
edit your own posts.
You
cannot
edit other posts.
You
cannot
delete your own posts.
You
cannot
delete other posts.
You
cannot
post events.
You
cannot
edit your own events.
You
cannot
edit other events.
You
cannot
delete your own events.
You
cannot
delete other events.
You
cannot
send private messages.
You
cannot
send emails.
You
may
read topics.
You
cannot
rate topics.
You
cannot
vote within polls.
You
cannot
upload attachments.
You
may
download attachments.
You
cannot
post HTML code.
You
cannot
edit HTML code.
You
cannot
post IFCode.
You
cannot
post JavaScript.
You
cannot
post EmotIcons.
You
cannot
post or upload images.
Copyright © 2002-2013 Simple Talk Publishing. All Rights Reserved.
Privacy Policy.
Terms of Use.
Report Abuse.