The root of the problem – malice, misuse or mistake?
Mike Small · Computer Fraud & Security · 2009
Organisations worldwide rely on business-critical information systems to run their businesses, yet a major loophole for many of these systems is the administrator account. Much has been made of the threat of external hackers who cause security breaches in organisations. Although this is a real problem, the insiders in an organisation may be responsible for as many security breaches as external hackers. In addition, not only malice but also mistakes and misuse by employees are an important reason for loss of vital services. How can organisations protect themselves from these problems?