 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Business-Technology Weave &#187; defense contractor loses files</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/business-technology/tag/defense-contractor-loses-files/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/business-technology</link>
	<description>Closing divides, directing purpose, and achieving results.</description>
	<lastBuildDate>Tue, 21 May 2013 18:52:41 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Pentagon Loses 24,000 Files to Theft &#8211; and lessons to you</title>
		<link>http://itknowledgeexchange.techtarget.com/business-technology/pentagon-loses-24000-files-to-theft/</link>
		<comments>http://itknowledgeexchange.techtarget.com/business-technology/pentagon-loses-24000-files-to-theft/#comments</comments>
		<pubDate>Sat, 16 Jul 2011 16:38:06 +0000</pubDate>
		<dc:creator>David Scott</dc:creator>
				<category><![CDATA[000 files]]></category>
		<category><![CDATA[classified data theft]]></category>
		<category><![CDATA[data privacy]]></category>
		<category><![CDATA[data security]]></category>
		<category><![CDATA[defense contractor loses files]]></category>
		<category><![CDATA[Deputy Defense Secretary William Lynn]]></category>
		<category><![CDATA[foreign intruder steals data]]></category>
		<category><![CDATA[foreign intruder steals files]]></category>
		<category><![CDATA[information privacy]]></category>
		<category><![CDATA[pentagon loses 24]]></category>
		<category><![CDATA[Pentagon loses files]]></category>
		<category><![CDATA[security policy]]></category>
		<category><![CDATA[theft of 24]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/business-technology/pentagon-loses-24000-files-to-theft/</guid>
		<description><![CDATA[  The Pentagon is supposedly mounting a new cyber security initiative following the loss of 24,000 files.  They were actually stolen from a defense contractor but, as in any organization, the organization is ultimately responsible for the actions and activities of all subordinate elements:  contractors; vendors; solutions partners; individuals.   I also use the word [...]]]></description>
				<content:encoded><![CDATA[<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">The Pentagon is supposedly mounting a new cyber security initiative following the loss of 24,000 files.<span>  </span>They were actually stolen from a defense contractor but, as in any organization, the organization is ultimately responsible for the actions and activities of all subordinate elements:<span>  </span>contractors; vendors; solutions partners; individuals.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri">I also use the word “loss” for a very important reason:<span>  </span>Whether the Pentagon still has copies of the breached, stolen, files or not – they are lost in the sense that their exclusivity, their protection, and their discretion has been stolen.<span>  </span></span></span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><em><span style="font-family: Calibri;font-size: small">The files truly are not what they once were – and that is theft and loss.</span></em></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Here in the BTW, we often speak of <em>The Responsible Forward Edge</em> (RFE).<span>  </span>It’s a proactive, aggressive, forward posture regarding survey of risk, mounted protections, and the comport with best business/IT practices.<span>  </span>Best practices means constantly updated practices in accordance with evolving threats and the evolving security measures to counter them.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">The responsible organization does this pragmatically, for sure:<span>  </span>There’s budget to consider.<span>  </span>Other resources factor too:<span>  </span>time, available personnel for implementations and support, etc.<span>  </span>But today, there simply has to be a schedule of survey of liabilities – even if none seem to exist today, tomorrow they will:<span>  </span>Our environment is not static, and the number and nature of threats are not static either.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">What makes the Pentagon’s hack so dismaying is that “foreign intruders” made the theft.<span>  </span>According to Deputy Defense Secretary William Lynn, terabytes of data have been stolen over the past decade, involving “our most sensitive systems, including aircraft avionics, surveillance technologies, satellite communications systems and network security protocols.”</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri">In this case, Lynn didn’t specify a country for the attack, or even whether it was a country versus the work of simple criminal hackers.<span>  </span>However, a large part of the Pentagon’s new cyber security initiative is to share classified threat intelligence between defense companies.<span>  </span>Hmmm… someone couldn’t have thought to do that a decade ago?<span>  </span></span></span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">This should have been routine.<span>  </span>A lesson for all organizations is to get your people thinking, imagining, and working together.<span>  </span>Organizations should have, at a minimum, quarterly meetings with a significant block of time dedicated to security.<span>  </span>Employees, security oriented and otherwise, should volunteer what they’ve heard regarding threats, solutions, other outcomes.<span>  </span>Qualified personnel can vet ideas and threats – but it’s a nice exposure, and gets the organization thinking.  Remember too to solicit and share ideas between regional offices, and between all partnering-organizations.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">At the same time, IT can warn of social networking liabilities, breach conditions to avoid, and so forth; they can reinforce Acceptable Use, Content, Security, and other policies.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri"><strong>On this day</strong>, <strong>July 16<sup>th</sup></strong>:<span>  </span>In 1926, <span style="color: black">National Geographic takes the first natural-color undersea photos.</span></span></span></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/business-technology/pentagon-loses-24000-files-to-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
