h1

Three simple rules of good security…

August 6, 2010

I’ve been taking a look at internetevolution recently. They are running an interesting series of ‘lectures’ about all sorts of IT related issues. Security was first up and Richard Stiennon kicked of with a talk called ‘What CXOs consistently fail to grasp about enterprise security’.

One of his slides is particularly useful. Titled ‘Three simple rules of good security’ it listed:

  1. Secure networks assume that hosts are hostile
  2. Secure hosts assume the network is hostile
  3. Secure applications assume the user is hostile

I couldn’t resist adding a fourth in the comments:

‘Secure users assume the application is hostile.’

Advertisement

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.