Feeds

Cameron to ink cyber deal with India, protect Brit outsourced data

UK will also share infosec expertise and threat intelligence

Internet Security Threat Report 2014

Prime Minister David Cameron will step up UK co-operation with India on cyber security on Tuesday in a bid to better protect data stored on Indian servers as well as share intelligence on breaking threats.

Cameron is in India as part of a three-day trade trip designed to build stronger business ties with the vast emerging nation.

The deal, set to be signed in New Delhi by Cameron and Indian PM Manmohan Singh will mark “an unprecedented level of co-operation with India on security issues”, Downing Street told the FT.

The joint task force to be announced will apparently see the UK sharing its expertise in tackling cyber threats in order to better secure the increasing amount of business and personal data stored on servers in India.

“Other countries securing their data is effectively helping us secure our data. I think this is an area where Britain has some real competitive and technology advantages,” said Cameron.

It’s unclear whether this sharing of expertise will come with a bill attached – after all, it is primarily a trade mission – or if the need to ramp up the security of outsourcing providers is the main goal.

The risk to UK data stored abroad has been highlighted many times over the years, most recently last year after revelations that Indian call centre staff were selling on the personal details of millions of Britons.

New Delhi-based Forrester analyst, Katyayan Gupta, told The Reg that although the deal should give Indian firms much needed access to advanced security skills and resources from the UK, the insider threat will persist.

"That is why there is a need for stricter SLAs between the Indian outsourcing firms and their international clients. Moreover, its essential that there is a regular audit of these SLAs," he added

"Plus, Indian outsourcing firms should be pushed to achieve higher/highest levels of information security certifications, including ISO 27001 and others."

The deal will also apparently see the UK and India sharing threat intelligence to thwart cyber attacks on their systems.

However, India’s attempts to secure its own infrastructure have been less than convincing over the years with government sites often taken offline or defaced by hacktivists.

Most recently, news emerged in December that the government and military had suffered one of its worst ever breaches after 10,000 email accounts belonging to top officials were compromised.

Symantec also warned last year that consumers and SMBs in the country were under increasing risk of targeted threats as attackers looked to exploit piecemeal security and low levels of awareness. ®

Internet Security Threat Report 2014

More from The Register

next story
George Clooney, WikiLeaks' lawyer wife hand out burner phones to wedding guests
Day 4: 'News'-papers STILL rammed with Clooney nuptials
Shellshock: 'Larger scale attack' on its way, warn securo-bods
Not just web servers under threat - though TENS of THOUSANDS have been hit
Apple's new iPhone 6 vulnerable to last year's TouchID fingerprint hack
But unsophisticated thieves need not attempt this trick
PEAK IPV4? Global IPv6 traffic is growing, DDoS dying, says Akamai
First time the cache network has seen drop in use of 32-bit-wide IP addresses
Oracle SHELLSHOCKER - data titan lists unpatchables
Database kingpin lists 32 products that can't be patched (yet) as GNU fixes second vuln
Researchers tell black hats: 'YOU'RE SOOO PREDICTABLE'
Want to register that domain? We're way ahead of you.
Stunned by Shellshock Bash bug? Patch all you can – or be punished
UK data watchdog rolls up its sleeves, polishes truncheon
prev story

Whitepapers

Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
The next step in data security
With recent increased privacy concerns and computers becoming more powerful, the chance of hackers being able to crack smaller-sized RSA keys increases.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.