Making information security easier
Luke Briner · Computer Fraud & Security · 2018
There is a perception that information security is basically some paperwork and a few pieces of hardware, a bit like fitting a burglar alarm to your house. Alternatively, too many people think that security is too complex and they effectively give up. Luke Briner of PixelPin believes that the current information security environment is too ad hoc, with piecemeal solutions, poorly defined roles and a rat's nest of certification, regulation and law. He makes a plea for greater simplicity and a clearer view of goals and the paths to them. For too many people, information security makes their head hurt. At best we can keep a light grip on a small part of the risk base, but at worst it feels like trying to climb a greasy pole. For every strong movement upwards we end up feeling like we know less than we did before. How is that possible? Just like being a doctor, lawyer or tightrope walker, working in information security is hard. Very hard.