Skip to main content
ad info

 
CNN.com technology > computing
    Editions | myCNN | Video | Audio | Headline News Brief | Feedback  

 

  Search
 
 

 
TECHNOLOGY
TOP STORIES

Consumer group: Online privacy protections fall short

Guide to a wired Super Bowl

Debate opens on making e-commerce law consistent

(MORE)

TOP STORIES

More than 11,000 killed in India quake

Mideast negotiators want to continue talks after Israeli elections

(MORE)

MARKETS
4:30pm ET, 4/16
144.70
8257.60
3.71
1394.72
10.90
879.91
 


WORLD

U.S.

POLITICS

LAW

ENTERTAINMENT

HEALTH

TRAVEL

FOOD

ARTS & STYLE



(MORE HEADLINES)
*
 
CNN Websites
Networks image


Privacy policies fluster gathering of security specialists

Computerworld

(IDG) -- A gathering of info-security luminaries last week demonstrated not only how complex the corporate security picture is, but how completely experts on the subject could disagree.

Microsoft sponsored SafeNet2000: Policy Practice in the Internet Age.

The two-day event drew 250 information security luminaries, lawmakers, academics and auditors who formed working groups to try to hash out guidelines for tough issues including national infrastructure protection, global vulnerability and attack reporting structures.

  MESSAGE BOARD
 

But the group couldn't come to consensus on just how to get private-sector companies to build critical security functions into their infrastructures, and how to get them to report threats and vulnerabilities without risk of exposing themselves to unwanted outside attention.

Possible incentives included tax relief for companies that set minimum levels of security, to appealing to their better corporate natures.

"We want to impose upon people the need to contribute to the greater good to all the people who share the common communications infrastructure," said David Jerrell, director of the Federal Computer Incident Response Capability (FedCIRC). "We must convince people that viewing the bigger picture is the first step toward active defense."

IDG.net INFOCENTER

IDG.net - IDG.net Multimedia & Leisure page
 - Free daily newsletter for tech-savvy professionals
 - Get instant answers from the Dummies Network
 - Computerworld's topic-oriented communities

Related IDG.net Stories
 Vendors walk thin line
 Embedded HTML 'bugs' pose potential security risk
 Canadian privacy law raises ante
Features
 - Scholars: e-mail reveals 'language of love'
 - Tech skills help blend work, home lives
 - Getting a degree from inside a cubicle
Visit an IDG site


IDG.net search



Easier said than done, countered Harris Miller, president of the Information Technology Association of America (ITAA).

"Boards of directors aren't convinced there's any return on investment on information security and risk management," he said. "We've not been able to capture the minds and hearts of the CEOs and boards of directors about the importance of these issues."

Miller also suggested that companies will continue to be reluctant to report successful hacks because they're afraid of information leaks.

"The risks out there are clear: the fear of negative publicity, proprietary information shared in court, loss of public confidence or reduced trust in the economy itself," he said.

Microsoft also introduced two nascent products designed to address security from both the personal and corporate perspective.

Microsoft CEO Bill Gates demonstrated a Windows-compatible smart card that works as an access control on both the PC and physical building entryways. The smart card, now being pilot-tested at Microsoft, logs users off when the card is removed to go elsewhere in the building. Microsoft plans to release it sometime next year, but privacy advocates don't like the smell of it.

"That smart card would be very intrusive in terms of following the employees' movements around the building, even into the bathroom," said Barry Steinhardt, associate director of the American Civil Liberties Union.

Microsoft's second tool, P3P (Platform for Privacy Preference) client and server software, takes a more personal approach.

The software is designed to help users protect their own privacy by having the browser monitor what a Web site is configured to do with their information. If the privacy settings on a Web site don't match those the user has set on the browser, a red or yellow light goes on, depending on how severe the conflict. Microsoft plans to deliver this tool as part of its Internet Explorer 6.0 browser software when it releases its next new operating system, probably around the holiday season of 2001.

John McCarthy, group director at Forrester Research Inc., suggested that the flashing red and green lights on the tool bar may actually impede consumer confidence.

But Barb Lawler, customer privacy manager for Hewlett-Packard Co. in Palo Alto, Calif., thinks the tool will have a positive impact on consumer confidence.

"In spite of what Forrester says, P3P will fundamentally change the balance of power to the consumer," she said. "I like the idea of the browser interpreting what the Web site is doing with the user's personal information."




RELATED STORIES:
Industry group: Security key to 'next generation' Web
November 8, 2000
Documents reveal plan to develop Carnivore
October 23, 2000
Glitch temporarily exposes some Buy.com customer data
October 17, 2000
Location information could invade wireless privacy
October 5, 2000
Privacy group critical of first release of 'Carnivore' data
October 5, 2000

RELATED IDG.net STORIES:
Vendors walk thin line
Infoworld.com
Embedded HTML 'bugs' pose potential security risk
Infoworld.com
Canadian privacy law raises ante
Computerworld
Privacy concerns cool holiday spirit
Infoworld.com
Chief Privacy Officers: Forces or figureheads?
Computerworld
Viruses: The next generation
PC World
Keep Web snoops at bay
PC World
Uncle Sam wants your opinion on where your e-info goes
NWFusion.com

RELATED SITES:
Microsoft Corp.
Federal Computer Incident Response Capability
Information Technology Association of America

Note: Pages will open in a new browser window
External sites are not endorsed by CNN Interactive.

 Search   

Back to the top  © 2001 Cable News Network. All Rights Reserved.
Terms under which this service is provided to you.
Read our privacy guidelines.