
The majority of UK IT directors still prefer passwords as their main defence against internal hackers - though experts warn this may be putting their systems' security at risk.
By Pia Heikkila
Published: 1 December 2000 17:00 GMT
A study published today by security consultancy Barron McCann found 92 per cent of IT managers interviewed said passwords provide the best protection against internal data thieves. Passwords were favoured over other security measures, such as encryption, smartcards or biometrics.
Peter Alderson, network sales and marketing manager at Barron McCann, believes security policies are often down to an IT manager's own attitude. He said: "One of the reasons passwords are still used as the main defence is because security is not considered a serious issue, it comes second to everything else."
The findings were met with concern from security experts. Dr Neil Barrett, technical director at consultancy IRM who has worked closely with the Customs & Excise, Inland Revenue and the police, said passwords are the weakest link in corporate systems security.
"Passwords can be easily guessed by the internal hacker. As they normally are between four and eight digits long, they can also be easily cracked by using a simple software programme which is available on the internet," he said.
Kent Browne, former hacker and now a security manager at IT services company Almdahl, said the shorter passwords become, the more they present an invitation to hack.
"To have four digit passwords protecting your business information is a joke. Any half decent cracker will crack it in a matter of minutes," he said.
Graham Welch, UK VP of security specialist RSA, said: "Everyone knows internal thieves are the largest risk to any company. IT directors should take responsibility over security and implement strong protection against crooks."
The study surveyed 200 companies across all industries in the UK.
Develop and deliver focussed and appropriate reporting to agreed and published service standards. Set standards for user access, data quality and ...
CompanyMcAfee creates best-of-breed computer security solutions that span large enterprises, governments, small- & medium-sized businesses, & ...
Desirable Business experience in the Defence Sector Experience in delivery of communications services Experience of living or working in the Middle ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business
Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business