Feeds

Perceived security risks vary widely across Europe

Says IT firm that got hacked in France, but not the UK

  • alert
  • submit to reddit

Protecting users from Firesheep and other Sidejacking attacks with SSL

Firms in different European countries are divided on what security risks pose the biggest threat to their business. Multinationals are failing to take this into account when devising corporate policies.

These are the main findings of research conducted by security specialist Evidian which found that viruses were seen as the major threat in France, Spain and Germany (two in five named it the top risk) but British firms were far more concern about sabotage by disgruntled employees.

Meaning in Scandinavia 50 per cent of the firms questioned in a Europe-wide survey of 250 firms thought that accidental damage by staffers was the greatest risk facing firms. In Italy, financial fraud was identified as the biggest headache.

The research also identified considerable differences in the areas of the business infrastructure perceived to be most at risk. In Germany and Spain, Intranets were identified by the majority of respondents as being most in need of protection, whilst in France, Scandinavia and Benelux it was Web sites.

In Britain, 60 per cent of companies identified corporate databases as the most vulnerable points of the IT infrastructure.

Firewalls and password security remain by far the most popular technologies to protect corporate networks and data across most of Europe, except (interestingly) in Germany where encryption is now the most recognised technique.

We think these differences reflect variations in national character as much as real threats but Evidian, which is a subsidiary of Groupe Bull, is calling for firms to consider applying local variations to corporate security, within the bounds of making sure overall security policies are still consistent.

Last August, Bull had to mount an internal investigation after confidential customer data was left on a French Web server in plain view sans password or cryptographic protection. Customers reportedly affected included Royal Air Force, Barclays and France Telecom.

The problems didn't affect Bull's UK site and we can't help pondering whether Evidian decided a review of different approaches to security throughout Europe was called for after it's own up close and personal experiences. But the survey does throw up some interesting findings and raises the question of whether multinational firms are not giving local BOFHs enough autonomy. ®

External Links

Evidian's survey of European security

Related Stories

Too much security is holding back ecommerce
Risk managers run scared of online cockups
Online brigands take to billing fraud and identity theft

The next step in data security

More from The Register

next story
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
Infosec geniuses hack a Canon PRINTER and install DOOM
Internet of Stuff securo-cockups strike yet again
THREE QUARTERS of Android mobes open to web page spy bug
Metasploit module gobbles KitKat SOP slop
'Speargun' program is fantasy, says cable operator
We just might notice if you cut our cables
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
Greater dev access to iOS 8 will put us AT RISK from HACKERS
Knocking holes in Apple's walled garden could backfire, says securo-chap
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
Saudi Petroleum chooses Tegile storage solution
A storage solution that addresses company growth and performance for business-critical applications of caseware archive and search along with other key operational systems.
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.