[Dshield] The Cost of Security

Tomas L. Byrnes tomb at byrneit.net
Sat Nov 10 20:59:13 GMT 2007


The archetype of this analysis is the Gartner do "The Price of
Information Security" Doc # R-11-6534, John Pescatore, 8 June 2001.

There's a paper that was written for PGP by the Ponemon institute last
year called "Cost of a Data Breach" that pegged the cost @ $182 per
record compromised.

Gartner says this will increase 20% in the next year:
http://security.tekrati.com/research/9457/

 

> -----Original Message-----
> From: list-bounces at lists.dshield.org 
> [mailto:list-bounces at lists.dshield.org] On Behalf Of Tony Earnshaw
> Sent: Saturday, November 10, 2007 11:09 AM
> To: General DShield Discussion List
> Subject: Re: [Dshield] The Cost of Security
> 
> Pete Cap skrev, on 10-11-2007 15:31:
> 
> > Does anyone know of any really good whitepapers on 
> evaluating the cost to an organization as a result of network 
> intrusions?
> 
> It isn't just "network intrusion" as such. The buggers on 
> your own network can cost you a fortune, once they've got a foothold.
> 
> I'm not just talking Windows or $$$IDS, I'm talking about 
> people from the inside. In my cases illoyal employees and/or users.
> 
> On my (Unix/Linux) networks, all the more reason to install 
> and monitor anti root kit stuff and monitor regularly the 
> seemingly most innocent logs.
> 
> --Tonni
> 
> --
> Tony Earnshaw
> Email: tonni at hetnet dot nl
> _________________________________________
> SANS Network Security 2007 in Las Vegas September 22-30. 39 
> courses, SANS top instructors.  http://www.sans.org/info/9346
> 



More information about the list mailing list