Connect with us

Hi, what are you looking for?

HEADLINES

IT experts advocate use of ‘zero trust’ model to deal with security

Everyone needs to learn how to “disrupt any criminals’ ability to profit off your information,” said SpyCloud CEO/co-founder Ted Ross.

SAN JOSE, CALIFORNIA – Everyone needs to learn how to “disrupt criminals’ ability to profit off your information,” said SpyCloud CEO/co-founder Ted Ross, here at NetEvents 2019: Global IT Summit. And arguably the best way to do this is to apply the “zero trust model” as far as cybersecurity is concerned.

Today, on average, people over 55 have approximately 12 passwords, Millennials have eight, and those belonging to Gen Z have five. Fifty-nine percent of all people use the same password/s everywhere; and here, the younger generations may be said to be at a disadvantage “because they have fewer passwords to rotate even if they go online more often (than their elders),” Ross said.

These passwords include those used for work, with the Federal Bureau of Investigation (FBI) noting that 65% of reported fraud is actually business email compromise fraud. Approximately $8t million are lost per day in US alone; with the total losses reaching $12.5 billion in last five years. Sadly, just over 3% is recovered from this amount.

But Ross said that “work-related accounts are only part of the problem (with security). Personal and family accounts are even more at-risk.” This is worth highlighting because when personal accounts are hacked, work-related accounts may also already be compromised.

Advertisement. Scroll to continue reading.

Cybercriminals “take everything they can get their hands on,” Ross said. And then “they focus on monetizing the information.”

This is why, Ross reiterated, the “zero trust model” is always worth considering.

Erin Dunne, director for research services of Vertical Systems Group, seconded Ross’s position, particularly since “with all the security issues, it’s terrifying.”

For Vikram Phatak, founder of NSS Labs, “there’s no reason for companies to be the one to secure everything. Instead, shift the paradigm to service provider paradigm.” This is because for companies to “do everything isn’t going to work; it’s not sustainable.” And here, “simplification of security “for the average person to use” is recommended.

Brad Casemore, research VP for data center networks at IDC, agrees. “There was a time when products/services were complex, and this has huge implications with adaption. Like Phatak, Casemore stresses the “need to simplify”.

Advertisement. Scroll to continue reading.

Scott Raynovich, principal analyst at Futuriom, said that “security management tools are (already) out there, but many people continue not to use them. So human behavior needs to be tackled.”

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

The Philippines’ global ranking for local threats rose from 76th to 66th, highlighting the need for stronger cybersecurity measures.

HEADLINES

Despite 65% having adopted generative artificial intelligence (GenAI capabilities), 89% of IT leaders are concerned that flaws in GenAI cybersecurity tools could put their...

APPS

PSBank is reinforcing its commitment to security through key enhancements to its PSBank Mobile app.

White Papers

Hyper-personalized attacks and agent AI subversion will require industry-wide effort to root out and address. Business leaders should remember that there’s no such thing...

HEADLINES

GCash, a financial super app and cashless ecosystem, reaffirmed its commitment to trust, security, and collaboration with customers, stakeholders, and law enforcement to ensure...

HEADLINES

Senator Mark Villar recently filed a resolution seeking a senate inquiry on the trade of International Mobile Subscriber Identity (IMSI) catchers, which allow fraudsters...

HEADLINES

Under the DSA, Globe and GoTyme may share with digital bank GoTyme information about mobile numbers potentially used by fraudsters, including names, addresses, and...

HEADLINES

In 2024, Converge blocked a record 183 billion entry attempts to  683,000 URLs / domains it has registered in its system as illegal sites....

Advertisement