From:
http://www.informationweek.com/management/showArticle.jhtml?articleID=201203456
"The woman, who worked in VeriSign's human resources department,
failed to comply with company policies that mandate that data be
encrypted
......
The Company has a policy on how to manage laptops that contain
sensitive information and company data, which in this case was not
followed," the company said in a written statement. "That policy
includes not leaving laptops in vehicles in plain view, keeping the
amount of confidential and sensitive data stored on laptops to a
minimum, and using data encryption tools to protect those sets of data
that absolutely must be stored on a laptop. Going forward, we will
continue to review our security procedures to prevent future human
errors of this type."

This goes to show that employees can not be trusted to encrypt data as
directed by the policies. Policies and user awareness just don't work.
Instead the encryption must be forced on laptops. FDE must be bare
minimum for all laptops that leave the facilities.
_______________________________________________
FDE mailing list
[email protected]
http://www.xml-dev.com/mailman/listinfo/fde

Reply via email to