Wednesday, February 13, 2008

IT Risks Mythunderstandings

One of the problems with managing IT security is that many organisations believe that they are protected when that may not be the case. Many still misunderstand the basics of protecting systems and to illustrate this Symantec have produced a report on the Four Myths of IT Risk Management. These fundamental myths are:

- The myth that IT risk management is focused only on IT security;
- The myth that IT risk management is project driven;
- The myth that technology alone can manage IT risk;
- The myth that IT risk management has already become a formal discipline.

Symantec’s report analyses and exposes the security gaps that belief in the myths can cause and underlines the importance of understanding IT vulnerabilities and convergence (which is covered in depth in a range of ARC’s 2008 courses). If you want to know more this link takes you to the report:

http://www.symantec.com/business/theme.jsp?themeid=itrisk_report

The Symantec site also has a three-part podcast concerning the report available to download.