<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Business-Technology Weave &#187; insider threat</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/business-technology/tag/insider-threat/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/business-technology</link>
	<description>Closing divides, directing purpose, and achieving results.</description>
	<lastBuildDate>Mon, 17 Jun 2013 19:25:46 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Security Vulnerabilities Leach Further and Further “Inside”</title>
		<link>http://itknowledgeexchange.techtarget.com/business-technology/security-vulnerabilities-leech-further-and-further-%e2%80%9cinside%e2%80%9d/</link>
		<comments>http://itknowledgeexchange.techtarget.com/business-technology/security-vulnerabilities-leech-further-and-further-%e2%80%9cinside%e2%80%9d/#comments</comments>
		<pubDate>Mon, 10 Oct 2011 23:19:06 +0000</pubDate>
		<dc:creator>David Scott</dc:creator>
				<category><![CDATA[ID theft ring in New York]]></category>
		<category><![CDATA[ID theft ring in NYC]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[insider threat]]></category>
		<category><![CDATA[restaurant workers stealing credit card info]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/business-technology/security-vulnerabilities-leech-further-and-further-%e2%80%9cinside%e2%80%9d/</guid>
		<description><![CDATA[  Today, most organizations continue to think of security as an “us” vs. “them” proposition.   Outside breaching entities try to punch their way in to networks, websites, data stores, etc., and we have firewalls, encryption, evolving practices, and so on, to prevent intrusions and thefts.   This mindset no longer serves, and hasn’t for [...]]]></description>
				<content:encoded><![CDATA[<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"><a href="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/161/files/2011/10/credit-card.jpg"><img class="alignleft size-medium wp-image-960" src="http://cdn.ttgtmedia.com/ITKE/uploads/blogs.dir/161/files/2011/10/credit-card.jpg" alt="" width="236" height="155" /></a> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Today, most organizations continue to think of security as an “us” vs. “them” proposition.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Outside breaching entities try to punch their way in to networks, websites, data stores, etc., and we have firewalls, encryption, evolving practices, and so on, to prevent intrusions and thefts.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">This mindset no longer serves, and hasn’t for awhile.<span>  </span>Of course, a long-standing “inside” threat has been that of human error, which can lead to breach.<span>  </span>But there’s more – oh so much more…</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Authorities in New York City have busted the largest identity theft ring ever.<span>  </span>Members have been charged with stealing the credit card information over a period of 16 months of thousands of Americans and Europeans.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">The insider threat here?<span>  </span>Many of the stolen credit card numbers were stolen by company staff persons who had access to cardholders’ numbers:<span>  </span>People employed at stores, restaurants, banks, etc., using skimming devices.<span>  </span>Imagine going out to dinner, paying with your card, and finding all manner of unauthorized charges in the ensuing weeks or months… would you have associated those charges – that breach – with a particular dinner out?<span>  </span>Not likely.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">But further, for any business, whether restaurant, bank, lawn service – <em>anything</em> – recognize that vetting employees and their associated honesty now takes on another dimension.<span>  </span>Not only do you have to monitor for theft of physical assets or cash at-hand, but you must monitor the ethical practices of employees regarding credit, and use of electronic systems.<span>  </span>Many organizations do this, and have for years.<span>  </span>Many, many, more do not – particularly in the realm of small-to-medium (SMB) business.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri">This particular ID theft ring also specialized in the creation and use of counterfeit credit cards.<span>  </span>The counterfeit cards were dispensed to collusive shoppers, who used the cards to purchase high-value items for resale, sometimes over the ‘net.<span>  </span></span></span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Recognize too that the ability to replicate swipe strips, holographic authenticators, complicated engraving… is becoming more basic and affordable – and that is daunting.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">To business, and individuals, I again say:<span>  </span>View every activity through a security prism:<span>  </span>Assess every activity, and every plan, from a security perspective.<span>  </span>Run frequent reports and track accounting very closely.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Stay safe.</span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNoSpacing" style="margin: 0in 0in 0pt"><span style="font-size: small"><span style="font-family: Calibri"><strong>NP</strong>:<span>  </span>Cannonball &amp; Coltrane, LP.</span></span></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/business-technology/security-vulnerabilities-leech-further-and-further-%e2%80%9cinside%e2%80%9d/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
