Padlock

Joint effort key to IT security future

Co-operation between public and private sectors crucial to raising internet security levels

Written by Phil Muncaster in Warsaw

Co-operation between public and private sectors is crucial in order to secure critical national infrastructures (CNI) and raise internet security levels, according to experts at the Information Security Solutions Europe event in Warsaw.

In his keynote speech, Steve Lipner, Microsoft’s senior director of security engineering strategy, argued that securing the CNI is a challenge for both governments and IT organisations worldwide due to the growth of targeted, organised attacks.

“It’s a government and industry problem,” Lipner said. “The government can’t solve it all because private entities [run] the critical infrastructure. But government has the resources the private sector is not likely to have.”

Lipner argued that government has a key role in providing the policy environment to improve security, offering incentives where appropriate and driving basic research and development. Although he also acknowledged that vendors must make products resilient through proper and rigorous testing, Lipner refused to accept they should be held liable for faults, as was recommended by the recent Lords report on internet security.

“Liability and legislation can have unintended consequences for competitiveness, innovation, product acceptance and the supplier ecosystem,” he argued. “No law forced Bill Gates to send round that memo on trusted computing in 2002.”

Costin Raiu, head of research and development at security vendor Kaspersky Lab, added that forcing liability on to vendors would probably make the problem worse. “I would ask a different question - ‘Should we make security software mandatory?’ - because most problems come from users who don’t run security software,” he added.

Roger Dean, executive director of e-business trade association Eema, said that vendor liability would be impractical to implement, but argued that more information sharing of best practices between vendors should be encouraged.

Tags:

reader comments

related articles

Safe handle

Firms must be alert to social engineering tricks

IT experts at ISSE show warn firms to step up physical security measures to protect data 26 Sep 2007

 

Interview : Network security needs to have depth

Sourcefire CTO Martin Roesch says UTM appliances alone are not enough to protect extensive networks 24 Sep 2007

Can online crime ever be beaten?

A new report offers an insight into the scale of e-crime and what can be done about it 25 Sep 2007

WLAN rivals release new security products

AirMagnet and AirTight Networks go head-to-head 24 Sep 2007

UK data laws to grow some teeth

GuardianEdge’s Alan Fudge says US-style data breach notification laws are heading this way 21 Sep 2007

Managing IT risk in unchartered waters of "Security 3.0"

Firms need to think about reducing spending, not throwing money at the problem, advises analyst Gartner 20 Sep 2007

Europe-wide ID cards scheme in the spotlight

New electronic ID scheme will be discussed at next week's ISSE security event 30 Sep 2008

Cable brands tax avoidance 'corrosive'

Lib Dems unveil plans to tax 'golden goodbyes' and other anti-avoidance measures in a £5bn package. 15 Sep 2008

Banks should be liable for e-fraud

House of Lords committee describes current system as 'wholly unsatisfactory' 11 Jul 2008

related whitepapers

today's top stories

CIOs must embrace collaboration tools

Author Don Tapscott gives Angelica Mari his reasons for promoting social networking tools and says transparency is the key to security 04 Dec 2008

On a quest to build a connected society

BT Design’s JP Rangaswami talks to Gareth Morgan about his pivotal role in the telecoms giant’s efforts to deliver universal broadband and his plans to tap into the creativity of the open source community 04 Dec 2008

IT leaders must stand by India

A sense of perspective is the most important response from IT leaders to the attacks in Mumbai 04 Dec 2008

Case study: Clifford Chance

Law firm implements Sun platform and reduces datacentres to gain efficiency and cost synergies 03 Dec 2008

Should CRM be more sociable?

As vendors rush to add more social networking bells and whistles to their CRM products, some experts warn that users must tread carefully when venturing into online communities 03 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Doctors looking at a computerAnalysis

Watchdog wants IT to cure privacy woes

Information Commissioner Richard Thomas is urging organisations to put privacy protection at the top of their procurement and development criteria 04 Dec 2008

Colin McDonaldComment

Web 2.0 has potential to transform staff training

Employees can sharpen their IT skills through using the latest interactive training tools, writes Colin McDonald 04 Dec 2008

Advertisement

Primary Navigation