Schneier pic

Users fear venturing too far online

Experts warn more must be done to safeguard internet retail and banking

Written by Phil Muncaster

At the annual Information Security Solutions Europe (ISSE) event in Rome this month, some experts warned that the growth of e-commerce and online banking is being undermined by a lack of awareness and fear of transacting via the internet.

In a panel debate, Peter Keller of telecoms firm Swisscom argued that as many as a third of consumers may be limiting themselves to browsing and email because they are afraid to attempt more complex procedures online.

He blamed scaremongering by the mass media and poorly engineered, difficult-to-use products as the main causes of user insecurity.

Security expert Bruce Schneier agreed, arguing that internet service providers (ISPs) could play a vital role in providing support and protection for consumers.

"Computers are too hard to use," he said. "Home users don't have an [IT department] to be their trusted security adviser, but ISPs could fulfil that role."

He added that vendors should be held liable for flaws in products and services that can result in enterprise customers suffering financial loss, bad publicity or non-compliance with regulations.

"If you don't [enforce vendor liability] the problem will never be fixed, but if you do, the technologies will come out of the woodwork to fix the problem because there will be money to be made from it," Schneier argued.

Keller said vendors must inform customers about the "true risks rather than confusing them with too many security messages". He added that regulation may be required to enforce quality and reliability of some products.

Michael Howard, a senior Microsoft security manager, admitted that Microsoft has been guilty of bombarding users with overly technical information.

"Users don't make good trust decisions partly because they don't know what's going on," he said. "No one would understand some of the dialogue boxes we've given."
He added that technology vendors cannot assume the end-user is educated, so security measures should be built in as standard.

"We're going to provide these baseline defences in the operating system to protect you and then provide the functionality to unlock things if you are an alpha geek and want to do this," he said.

The Italian minister of communications Paolo Gentiloni urged the European Commission to regulate in matters of "standardisation, interoperability and security certification" to create a minimum standard for security. "It would be worth achieving a common position within the European Community," he said.

Gentiloni also warned that IP-based applications such as IP TV and VoIP need "new standards and models in order to guarantee communication security".

The European Commissioner for Information Society and Media, Viviane Reding, acknowledged in her keynote the importance of diversity in IT to reduce the risks of depending on one type of technology. The Commission "expects the private sector to be proactive in areas [such as] usability and interoperability ", she added.

  • Have your say
  • Send to a friend
  • Print this
  • Share

Tags:

reader comments

related articles

 

Icann opens up to the world

Affirmation of Commitments will loosen US grip on the internet 30 Sep 2009

Europe calls on UK to sharpen ICO's teeth

Data protection powers must be brought into line with the rest of EU, says Viviane Reding 24 Jun 2010

RSA 2010: Special Report

All the news from the security event of the year 03 Mar 2010

related white papers

today's top stories

Financial IT job market recovery continues

Recruitment growth suggests IT budgets are increasing 30 Jul 2010

Satellite broadband touted as digital divide clincher

KA-SAT launch promises 10Mbit/s service for hard-to-reach locations 29 Jul 2010

Ofcom slams ISPs for exaggerated broadband speed claims

New code of practice for ISPs planned by the regulator 27 Jul 2010

Aerohive offers traffic light Wi-Fi monitoring

Firm promises simple 'red, yellow or green' system with Client Health Score tool 27 Jul 2010

Flaw in top wireless security protocol WPA2 uncovered

Disgruntled insiders could hack corporate wireless LAN 26 Jul 2010

Advertisement

How to achieve business and financial-system implementation success
A look at how organisations - regardless of size - can work towards successful business software installations and factors that determine the outcome.

Case study: Specsavers put customer care into focus
How Specsavers captured customer feedback at point of sale and incorporated the results into its CRM system.

Advertisement

Citrix

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you thousands of white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

Latest poll

ICO to lean more heavily on public sector bodies

ICO to lean more heavily on public sector bodies

The ICO has said it will lean more heavily on public sector bodies to secure timely FOI responses, do you think this is:

View poll results

Latest audio and video articles

picture of Jason HartVideo

Ethical hacker reveals the security secrets behind cloud computing

Jason Hart, Senior VP at Cryptocard, shows Computing just how easy it is to illegally gain access to corporate cloud services to wreak havoc and steal money. 29 Jun 2010

gartner logoVideo

Part 1: 2010 trends in SOA and Application Development and Integration

Gartner analyst Paolo Malinverno explores trends in SOA 29 Jun 2010

Latest in-depth articles

Map of 3G coverageComment

The risks of selling off the 800MHz radio spectrum at the wrong price

It's a choice between revenue now or universal broadband later 30 Jul 2010

Luton Borough Council officesAnalysis

Local authority leads the way in digital backup technology

Luton Borough Council tells of the benefits of early adopter of VTL, data deduplication and virtualisation 27 Jul 2010

Primary Navigation