Tuesday, October 9, 2007

Shutdown by internal incident

Last month, one of the Internet banks in Spain, got down during two complete days.
No operations were available, neither using internet, phone or offices due to a human error administering maybe host services (the bank argues was a mistake from a fomous outsourcing host company).
View the complete information here (in Spanish).

But the real problem is that there is no efficient and proved Business Continuity Plan and the common idea that 'bad hackers' are the only enemies to fight againts to. According to FBI quest, more than 75% of security indidents come from inside the enterprise.

Please, take into account Information Security is not firewalls, antivirus, antispam or IDS, but plans to recover business capabilities, risk analysis and convergence and support to business informartion activities. These other actions are those which give a real value to Information Security.

No comments: