Spire Security News and Views
Spire Security is a market research and analysis firm dedicated to bringing clarity to the information security world. This is Pete Lindstrom's blog - focused on providing analysis and insight to the happenings of the day, current security trends, and missing pieces to the information security puzzle.




Subscribe to "Spire Security News and Views" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.
 

 

Friday, July 16, 2004
 

FUD stands for fear, uncertainty, and doubt. Gene Amdahl is credited with originating the term (see here for more info). In the security space, we like to say that "FUD sells." I have come to the recent conclusion that FUD actually doesn't sell. In the security space, what sells is RAL, or regulation, annoyance, and loss. Let's look:

  • Regulation - many new regulations spawn at least some routine spending on consulting to evaluate the enterprise and develop some notion of compliance. Regulations provide the framework and the teeth to actually get folks to consider the implications of security. They also tend to drive people who focus on them towards a "least common denominator" method of security which may be effective at protecting against the threat of regulatory fines but often will not protect against the threat of compromise.
  • Annoyance - heck, who doesn't hate spam? Spam, worms, viruses - all very common in today's networked world. People spend money on them because they are annoying.
  • Loss - it often takes an attack to wake up an enterprise. This is unfortunate, but true.

All of these things provide "comfort food" in some sense to enterprises who struggle with the notion of FUD - that is, that you just never know how, when or where your risks are with any degree of certainty (we can do a heck of a lot better than we are doing today, however). In general, RAL is reactive and tactical.


11:09:12 PM    comment []


Click here to visit the Radio UserLand website. © Copyright 2004 Pete Lindstrom.
Last update: 7/23/2004; 3:55:44 PM.
This theme is based on the SoundWaves (blue) Manila theme.
July 2004
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
Jun   Aug