Sidebar: First Among Equals
Computerworld -
Companies often put functionality or time to market first when it comes to their corporate Web sites, but they should put security at the top of the list, says Jonathan G. Gossels, president of SystemExperts Corp., a Sudbury, Mass.-based provider of network security consulting services with nine offices throughout the U.S.
That means the security team must rank as a major stakeholder as sites are built and revised.
"Security should be part of the overall plan. That's early; that's before anything has been written," Gossels says.
Companies should have guiding principles when it comes to IT security, and those principles must apply to Web sites, says Bala Iyer, an assistant professor in the information systems department at Boston University's School of Management.
Without those guiding principles, companies "could drop the ball on security" as they build their Web systems, Iyer says. Still, he believes many companies push security down on their list of priorities.
Gossels recommends that companies empower workers "to blow the whistle when something isn't being built securely. The ownership of securing the firm is shared by everybody in the firm. Everybody's reputation suffers if the cargo goes out without shutting the door."
Security
Additional Resources



White Papers & Webcasts
Share our Strength
Download Now
Lower the Cost and Complexity of a Mobile Workforce through Automation
Download This Resource Now!
Top 10 Things to Know about Data Protection
Download Now
Managing Mobility: Improve Data Security, Compliance and Manageability
Download This Resource Now!
Managing Secure File Transfer to Save Time, Money and IT Resources
Learn how companies are using innovative technology to overcome these challenges and improve user productivity by offloading e-mail attachments and replacing FTP with...
Ponemon Study: The Business Risk of a Lost Laptop
Download Now
Security Convergence Equals Network Security Cost Savings
Listen to IBM Internet Security Systems' take on network security convergence.
Airport Insecurity: The Case of Lost Laptops
Download Now
Disaster Recovery 2008: Reduced Costs and Improved Performance
How long can your Enterprise afford to be without your data? With an accelerated disaster recovery program, you never have to answer this...
