Friday November 21, 2008 10:44 PM AEST
Latest Comments
"when i login to face book it tells me i am cookies enabled what does this mean"
by celeste | Nov 21, 2008 5:15 PM
 
"Hi this is the mail I received Brett Karpman show details Nov 17 (3 days ago) Reply Atten..."
by Rodney Churchyard | Nov 20, 2008 6:13 PM
 
"security through obscurity...shows how detached HIPAA is from reality."
by priceOfFishInChina | Nov 20, 2008 1:19 PM
 
"Umm. no. The 6.5 product is mounting the offline VM image and performing a scan for patch ..."
by eric | Nov 20, 2008 8:15 AM
 
"it's great i tried it"
by divyacharan | Nov 20, 2008 12:24 AM

Security vs. privacy

  • Email a Friend
  • Print Page
By Tim Mather
Mar 14, 2008 3:22 PM
Tags: security, | privacy, |
The real concern about privacy today is not confidentiality, but access. In today's electronic society, the real problem is who has access to your personal information.

This personal information can be accessed very easily technologically and then aggregated and sorted or processed. While many companies claim to have privacy policies governing how this will be used, those same companies invariably also reserve the right to change that policy at any time and without any prior consent — or even notice.

For most, this lack of control is the real privacy concern. Most people would have much less concern over this access and usage if they had an assurance over who and how their supplied personal data would be used — whether by the government for agreed upon security needs, or by commercial enterprises for agreed upon convenience or benefit in return.

The vast amounts of personal information available and sought today, effectively means that non-technical enforcement of access and usage is completely impractical. For information security professionals, our task should be to foster the development of system enforceable privacy policies, governing not only what personal information can be collected, but how such information can be accessed and used (and audited) once collected — as well as the security of such information while held.

Tim Mather, chief security strategist, RSA Conferences

Secure Computing Magazine

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
 
Risk Management Whitepapers