Wednesday | 3 December, 2008
Can security's human side stop data breaches?
As human error increasingly becomes the top reason for security breaches, behavior-based strategies are making their way into the workplace to supplement technology
Joan Goodchild (CSO Online) 07/10/2008 14:29:00

Shira Rubinoff was a practicing psychologist in 2004. When it came to technology, her experience was simply as a tech user, certainly not a tech guru. Then one day she was phished.

"After it happened, I was like: "There's got to be a better solution out there. Because once you put security in people's hands, so much can happen."

Rubinoff decided to take her background in human behavior and turn it into a security software firm that taps into how the mind works in order to prevent phishing attacks. Her US-based company, Green Armor, provides a product that uses a visual cue on the Web log-in page that is unique to each user of the site. The cue is generated using a mathematical formula based on the user id. It uses a colored box and a short word, a method she developed after extensive research and experimentation about how users memorize and retain information.

The idea, according to Rubinoff, is that users will know if something is amiss much easier than with the usual authentication techniques currently used by many online banking and other secure sites.

"This approach deals specifically with the humanistic factors of technology," said Rubinoff, who was recently named a "Women of Influence" award winner at the Executive Women's Forum because of her work on the software. "I think other technology out there look for technology problems. They forget there is a person sitting behind the computer that is very easily manipulated."

Human behavior is increasingly becoming a hot area of focus in security. In fact, a new study from networking giant Cisco says risky behavior tops the list of reasons for security breach. The study, which surveyed 1,000 employees and 1,000 IT professionals from various industries and company sizes in 10 countries, was conducted to examine security and data leakage at a time when employee lifestyles and work environments are changing dramatically.

"We conducted this research in order to understand behavior, not technology per se," said John N. Stewart, chief security officer of Cisco. "Security is ultimately rooted in users behavior, so businesses of all sizes and employees in all professions need to understand how behavior affects the risk and reality of data loss - and what that ultimately means for both the individual and enterprise."

The research found one in five surveyed admit to altering security settings on computers. Additionally, one of four employees admitted verbally sharing sensitive information to non-employees. And a whopping seven in ten surveyed said they regularly use unauthorized applications at work.

Similar findings from consulting firm Deloitte earlier this year back up the Cisco research. A Deloitte survey of more than 100 companies found 75 percent cited human error as the leading cause of security failures.

Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Sign up for our Computerworld newsletters!
RSS Feeds
Market Place

 
D-Link Networking Knowledge Centre

D-Link Australia & New Zealand

D-Link is the global leader in connectivity for small, medium and large enterprise business networking. The company is an award-winning designer, developer and manufacturer of networking, broadband, digital electronics, voice and video communication.

To Find out more about D-Link solutions visit www.dlink.com.au

D-Link Networking Knowledge Centre

D-Link Australia & New Zealand

Featured Products

  • IP BASED PHONE SYSTEM
    D-Link VoiceCenter

    D-Link VoiceCenter is an IP based phone system designed to meet the needs of small businesses. D-Link have solely partnered with Microsoft to package Microsoft’s Response Point software to bring you VoiceCenter. For more info on VoiceCenter's products and events please visit: http://voicecenter.dlink.com.au
  • AWARD WINNING STORAGE
    DNS-343 4-Bay NAS Enclosure

    D-Links new 4-bay network attached storage enclosure has just received ZDNet's Editor's Choice award and a rating of 9 out of 10 by Craig Simms from CNET See the review here. The DNS-343 release followed the great success of its smaller sibling the 2-bay DNS-323. Targeted at both the home IT enthusiast and commercial users needing a flexible storage solution the DNS-343 is showing good market performance.
  • EVERY BUSINESS NEEDS ONE
    DSA-3600 Multi-Service Gateway

    Any business that’s serious about networking must consider installing this gateway. Feature rich the DSA-3600 multi-service business gateway is a complete network solution that delivers reliable and cost-effective services to SMB and enterprise branch offices. Perfect for setting up a commercial grade wireless connection for the office the unit is simple and easy to manage.
  • WI-FI FOR MOBILE WORK SITES
    DIR-451 Mobile 3G Router

    Perfect for mobile and temporary work-sites the mobile 3G router quickly and easily can connect your site back to the office. Recently the United States Air Force has used D-Link Mobile 3G routers on its remote base camps to connect soldiers with other Air Force departments, local agencies, friends and families. To see the complete case study click here.

New Products

  • XTREME N DUO ROUTER - DIR-855
    The highly anticipated simultaneous broadcasting dual band wireless N router has arrived. The DIR-855 is set to make massive waves and take home/SOHO wireless networking to a new generation. Unlike other networking manufacturers who promote dual band the new DIR-855 will provide users simultaneous dual band wireless networks, opening up another range of opportunities for wireless networking.
  • DUAL BAND USB ADAPTER
    DWA-160 Xtreme N USB Wi-Fi

    The new dual band wireless N USB adapter is ideal for simultaneous dual band environments. For example in apartment buildings where there are heavily congested 2.4GHz Wi-Fi or at the home stream HD video over the network and making VoIP calls at the same time.

Coming Soon

  • WI-FI ACCESS POINT/BRIDGE
    DAP-1522 Xtreme N Duo

    A new addition to the Xtreme N family this wireless N access point/bridge effectively doubles available wireless bandwidth. Designed for users looking to get a true wireless connection that can handle multiple High-Definition video streaming throughout the house it can take the home network to a new level.
  • GOT NAKED DSL
    DVA-G3670B ADSL2+ Wireless G VoIP Modem Router

    Naked DSL customers now have the perfect feature rich product solution the DVA-G3670B to take advantage of naked DSL features. This ADSL2+ (naked DSL compatible) modem Wireless G router comes with 2 VoIP phone connections and is ideal for the growing market who don't want to pay the unnecessary line rental fee. Ultimately this unit is an ideal all-in-one home network solution and even SOHO small business solution.

Download

Case Studies

Whitepapers

D-Link TV

Watch videos about D-Link products and much more
http://www.dlinktv.com

D-Link Training

Find out more about D-Link products trainings and certification program
http://training.dlink.com.au
Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links