|
|
Posted: Fri, June 20, 2008
Staff 'ignoring data security'
IT staff are ignoring their data security responsibilities and could be the primary source of enterprise data leaks, a survey of over 300 professionals at the recent Infosecurity conference in London has warned.
According to the research, conducted by digital security specialist Cyber-Ark, one third of respondents admitted to using the power of their
position to access confidential information using administrative passwords, with nearly half of those saying the information accessed was not relevant to them.
Furthermore, half of IT administrators did not have permission to access privileged accounts, while only 30 percent changed privileged passwords on a quarterly basis, with one in ten never having
changed them.
"For most people, administrative passwords are a seemingly innocuous tool used by the IT department to update or amend systems," said Mark Fullbrook, UK director of Cyber-Ark. "To
those 'in the know' they are the keys to the kingdom and if unprotected or fall into the wrong hands wield a great deal of power."
A recent report from Gartner indicated that sales of enterprise security software products rose by 19.8 percent last year, to reach a market worth
of $10.4 billion (£5.3 billion). The analyst highlighted compliance, data leakage and privacy issues as the main drivers of growth on enterprise security spending.
© Adfero Ltd
|
|
|
|
|