Feeds

Security barometer survey - the results are in

Read on...

  • alert
  • submit to reddit

High performance access to file storage

Reg Reader Studies The results of last month's Security barometer survey have been collected, perused and compiled and are now available to all interested readers in a handy PDF format.

Thanks very much to all those who participated - your input enabled us to draw some interesting conclusions about the psychology of security, which we summarise as follows:

Perhaps understandably, companies who have suffered some form of attack in the past are highly aware of the risk of a similar attack, while newer threats - such as spyware - are incorrectly not judged as high risk.

At the same time, nearly three times as many respondents had experienced unscheduled downtime due to software or hardware failure, compared to downtime due to security issues. While security issues remain important, there is a tendency to overhype them.

Nonetheless, more than half of respondents considered that they wasted a day or so every month dealing with security issues. Over 10 per cent of those surveyed said they had suffered some kind of security attack in the last three months. Obviously, there is a cost implication to this.

Overall, and as might be expected, larger companies are more likely to have implemented security policies than smaller ones. Those who have no policy in place see fewer problems – they are unaware when a passive or benign virus is present and they do not perceive the denial of service attack as being anything other than the internet running slowly.

Those with fully implemented policies see more – and react more – even to threats which are not likely to be of high importance.

Those with partially implemented policies are in the worst situation psychologically – they can see a lot more than they could before they started implementing a policy, but have only a partial means of dealing with the threat.

That's the summary. The full report is available here, with a supplementary slideset available here (both PDF).

Your industry needs you

Sign up here to become a permanent member of our Reg Reader Studies Survey Panel. You'll get the occasional email alerting you to a new survey and may even get the chance to win Reg goodies.

High performance access to file storage

More from The Register

next story
Audio fans, prepare yourself for the Second Coming ... of Blu-ray
High Fidelity Pure Audio – is this what your ears have been waiting for?
Dropbox defends fantastically badly timed Condoleezza Rice appointment
'Nothing is going to change with Dr. Rice's appointment,' file sharer promises
MtGox chief Karpelès refuses to come to US for g-men's grilling
Bitcoin baron says he needs another lawyer for FinCEN chat
Did a date calculation bug just cost hard-up Co-op Bank £110m?
And just when Brit banking org needs £400m to stay afloat
Zucker punched: Google gobbles Facebook-wooed Titan Aerospace
Up, up and away in my beautiful balloon flying broadband-bot
Apple DOMINATES the Valley, rakes in more profit than Google, HP, Intel, Cisco COMBINED
Cook & Co. also pay more taxes than those four worthies PLUS eBay and Oracle
It may be ILLEGAL to run Heartbleed health checks – IT lawyer
Do the right thing, earn up to 10 years in clink
France bans managers from contacting workers outside business hours
«Email? Mais non ... il est plus tard que six heures du soir!»
prev story

Whitepapers

Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
HP ArcSight ESM solution helps Finansbank
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.