Web 2.0 is major force and has numerous business benefits but it is posing companies to potential new risks.
Social networking sites, such as Facebook, LinkedIn and Twitter, have become the preferred method of communication for a whole generation of people and the ability to post “Status Updates” is fast becoming the new Email. Linkedin is adding one user per second and Facebook has reached 150 million users in just five years.
Some of the associated risks which organizations face as a result relate to phishing, harvesting of email addresses and of course the dangers of (relatively) simple social networking, not only to hack the employee’s present organization, say, but to the organization of losing an employee and all their leads because clients follow ‘their man/woman’ to their new job by tracing where they are at through sites such as LinkedIn. Hackers can follow the conversation on social media to identify the user problem or pain point and pretend to offer a solution which happen to be a malware to steal private and confidential data.
And then of course there is the downside of staff using bandwidth and their work time for purposes other than for which they are employed, and possibly preventing others (due to bandwidth/processing restrictions) from doing what they should. Many of these sites openly encourage people to download video clips.
The solution?
Usually the controls in ISO 27002 code of practice can be selected and applied in a manner to address the associated risks through a combination of management and technical policies, but of course this should be as the result of a risk assessment and should balance the three attributes of C, I and A.
For clear best practice guidance on how to tackle ‘Threat 2.0’, you should download
Web 2.0: Trends, benefits and risks!
This 112-page best practice report from IT Governance separates the hype from the tangible reality and provides:
1. A workable description of what ‘Web 2.0’ is and what it means, within the business environment, complete with a glossary of Web 2.0 terms.
2. A description of the business benefits to be derived from Web 2.0 technologies, with examples taken from real-life case studies.
3. An identification and discussion of ‘Threat 2.0’ – the information security risks inherent in Web 2.0 technologies, together with latest best-practice recommendations for mitigation.
During financial crisis when companies are cutting budgets. It is imperative that information security will have some budget cut but any drastic budget cut might not be wise. A major security breach might put the organization in irrecoverable situation. In this tough economy security professionals have to do an extraordinary job to sell the security to management and show them how security due diligence can make business safe, successful and compliant.
Do you think the advantages of social media outweigh the potential risks?
June 15th, 2009 3:15 pm
[…] Web 2.0 and social media business risks (deurainfosec.com) […]
September 13th, 2009 10:04 pm
test
October 4th, 2010 4:12 pm
Thank you……
There are some really great ideas here. Can’t wait to put some of these into action. Its really going to bring good vibrations where the vibrations should be…
October 18th, 2010 1:16 am
Best Life Insurance Quotes, Rates & Policy…
Merci pour votre article très intéressant…
January 2nd, 2011 12:58 pm
Hey, Admin, I am starting my own blog, I was wondering which blog platform you are using? Sorry for the noob question and thanks for you help in advance :)…
January 2nd, 2011 3:24 pm
I’m using WordPress 2.9.1
February 6th, 2011 6:54 am
Great Photography Tutorials…
Good topics, it open my eye , thanks…
September 18th, 2011 9:57 am
OH HAI…
I was just searching for this info for a while. After 6 hours of continuous Googleing, at last I got it in your web site. I wonder what’s the lack of Google strategy that don’t rank this kind of informative web sites in top of the list. Generally the…
September 19th, 2011 11:07 am
OH HAI…
Hello there, just became aware of your blog through Google, and found that it’s truly informative. I’m gonna watch out for brussels. I’ll be grateful if you continue this in the future. A lot of people will be benefited from your writing. Cheers!…
September 20th, 2011 3:38 pm
OH HAI…
Hi there, just became aware of your blog through Google, and found that it’s truly informative. I’m gonna watch out for brussels. I’ll appreciate if you continue this in the future. Numerous people will be benefited from your writing. Cheers!…
September 22nd, 2011 2:45 am
OH HAI…
This is really interesting, You are a very skilled blogger. I’ve joined your rss feed and look forward to seeking more of your wonderful post. Also, I’ve shared your site in my social networks!…
September 23rd, 2011 7:34 am
OH HAI…
Its like you read my mind! You appear to know a lot about this, like you wrote the book in it or something. I think that you can do with a few pics to drive the message home a little bit, but instead of that, this is wonderful blog. An excellent read. …
September 24th, 2011 6:37 pm
OH HAI…
Great post. I am facing a couple of these problems….
September 24th, 2011 6:58 pm
OH HAI…
I don’t even know how I ended up here, but I thought this post was great. I do not know who you are but certainly you’re going to a famous blogger if you are not already 😉 Cheers!…
September 24th, 2011 7:19 pm
OH HAI…
Greetings! Very helpful advice on this article! It is the little changes that make the biggest changes. Thanks a lot for sharing!”…
September 24th, 2011 8:07 pm
OH HAI…
I think other web site proprietors should take this website as an model, very clean and magnificent user genial style and design, as well as the content. You are an expert in this topic!…
September 24th, 2011 8:29 pm
OH HAI…
As I web site possessor I believe the content matter here is rattling excellent , appreciate it for your hard work. You should keep it up forever! Best of luck….
September 27th, 2011 5:38 am
http://www.eRealEstateSanDiego.com...
Pacific Real Estate Broker serving all of your San Diego county real estate needs. Search Ca homes for sale using our MLS search. Receive email updates of Realtor listings with prices and blog. Whether single-family houses, townhomes, luxury homes, bea…
October 1st, 2011 7:30 am
2011…
whoah this blog is excellent i love reading your posts. Keep up the great work! You know, a lot of people are looking around for this info, you can help them greatly….
October 4th, 2011 4:39 am
2011…
Hey very nice website!! Man .. Beautiful .. Amazing .. I’ll bookmark your web site and take the feeds also…I’m happy to find so many useful info here in the post, we need work out more techniques in this regard, thanks for sharing. . . . . ….
October 6th, 2011 5:29 pm
http://www.eRealEstateLaJolla.com...
Great InfoSec blog…..
October 16th, 2011 11:32 am
2011…
This is a topic close to my heart cheers, where are your contact details though?…
October 17th, 2011 5:42 am
2011…
I’ve recently started a website, the information you provide on this website has helped me greatly. Thanks for all of your time & work….
October 18th, 2011 5:19 am
2011…
Wonderful work! This is the type of information that should be shared around the web. Shame on Google for not positioning this post higher! Come on over and visit my website . Thanks =)…
October 20th, 2011 6:43 am
2011…
I got good info from your blog…
October 28th, 2011 5:34 pm
2011…
The blog was how do i say it… relevant, finally something that helped me. Thanks…
October 28th, 2011 5:56 pm
2011…
Hello there, I found your blog via Google while looking for a related topic, your website came up, it looks good. I’ve bookmarked it in my google bookmarks….
October 28th, 2011 6:41 pm
2011…
I’ve been surfing online more than 3 hours today, yet I never found any interesting article like yours. It’s pretty worth enough for me. In my view, if all webmasters and bloggers made good content as you did, the internet will be a lot more useful th…
October 29th, 2011 2:04 pm
2011…
Just want to say your article is as surprising. The clearness in your post is simply great and i could assume you are an expert on this subject. Fine with your permission let me to grab your feed to keep updated with forthcoming post. Thanks a million …
October 29th, 2011 4:13 pm
2011…
I will immediately grab your rss as I can’t find your email subscription link or e-newsletter service. Do you have any? Kindly let me know in order that I could subscribe. Thanks….
October 30th, 2011 7:08 am
2011…
I wanted to thank you for this great read!! I definitely enjoying every little bit of it I have you bookmarked to check out new stuff you post……
October 30th, 2011 7:53 am
2011…
I just could not depart your web site before suggesting that I extremely enjoyed the standard information a person provide for your visitors? Is going to be back often in order to check up on new posts…
November 17th, 2011 9:11 am
Websites we think you should visit…
[…]although websites we backlink to below are considerably not related to ours, we feel they are actually worth a go through, so have a look[…]……
December 19th, 2011 3:21 pm
Thank you for the {auspicious|good} writeup. It in fact was a amusement account it. Look advanced to {far|more} added agreeable from you! {By the way|However}, how {can|could} we communicate?…
Hi there, You’ve done an excellent job. I will certainly digg it and personally suggest to my friends. I’m sure they will be benefited from this web site….
January 1st, 2012 8:56 am
Causes of……
[…]bringing convenience to readers on a new level[…]……