'The Internet issue'

Earlier this year I wrote a retrospective on Y2K and said that I'd be back to talk about what is surely the biggest cluster of information risks facing the world over two decades on, namely those associated with the Internet.  

Well OK, so it has taken me a couple of months to get around to it but anyway here goes.

Threats

  • Malicious individuals
  • Malicious groups
  • Accidents and natural events

Vulnerabilities

  • Shared resource
  • Insecure base
  • Naivete 

Impacts

  • Extreme dependence
  • Cascading effects
  • Catastrophic outages

Preventive controls


Detective controls


Corrective controls


Technical controls


Procedural controls


Administrative controls


 

Popular posts from this blog

Pragmatic ISMS implementation guide (FREE!)

Two dozen information risks that ISO forgot

Philosophical phriday - compliance risk

ISMS internal audit priorities

Reading between the lines of ISO27001 [L O N G]

Passionate dispassion

45 ISO Management Systems Standards

Philosophical phriday - a noncompliance ramble

Adaptive SME security Crowdstrike special