Register now for Fin24 Dashboard and get access to portfolios, watchlists, financial comparison tools, and a whole lot more to help you achieve your financial goals.

Data provided by McGregor BFA
All data is delayed
Loading...
Where am I? Home
 
Prices are delayed by 15min.
Join the Fin24.com conversation about JSE-listed stock by using every time you tweet.

Security buck stops with IT

Sep 25 2007 14:30

Related Articles

Bonding with your bank

Cyber attacks new war weapon

Huge stock spam attack

 

Top Stories

Cell C move sparks price war

May 27 2012 11:21

There's a price war raging between South Africa's cellphone networks after Cell C lowered the rates of its prepaid calls by more than 34%.

Another golf estate victim

May 27 2012 13:09

The oversupply of golf estates has claimed another victim.

MyCiti buses running at a loss

May 28 2012 07:53

The City of Cape Town has spent R175m running the Myciti bus service since the Soccer World Cup compared to an income of R35m, a report says.

 
Share Share line Print
Pretoria - While most business executives are aware of security incidents at their companies, ownership of the problem is still perceived to rest with IT departments, a study by Deloitte Touche Tohmatsu has found.

The Global Security Study found that about 63% of organisations had an information security strategy, but only 10% had their information security led by business-line leaders.

"The contradictory findings highlight the security paradox financial institutions are facing. On the one hand, it is clear that respondents have identified the major security issues and the necessary actions they must take to improve security and privacy practices.

"On the other hand, many financial institutions are falling behind when it comes to taking action", said Kris Budnik, security specialist with Enterprise Risk Services, Deloitte.

According to the survey, the greatest root cause of external breaches continued to be the "human factor" - the organisation's employees, customers, third parties and business partners.

The survey found that the top three breaches were viruses and worms; e-mail attacks including spam; and phishing/pharming. Breaching was the most worrisome element for organisations.

"But even though financial institutions are directly affected by these types of breaches, they are still reluctant to take responsibility for the security of their customers' computers, most likely because of the enormity of such an undertaking," says Budnik.

About 66% of respondents said they should not be held accountable for protecting the computers of their customers who do online business with them.

However, a high number of repeated occurrences of breaches could be attributed to employees through their misconduct (intentional action) and errors and omissions (unintentional action).

While errors and omissions were identified as a major security issue, almost 22% of the respondents provided no employee security training over the past year and only 30% said their staff was well skilled with adequate competencies to respond to security needs.

"Despite these gaps, identifying the problem is at least half the battle and so financial institutions are definitely moving in the right direction to close these gaps," Budnik said, especially in the case of South Africa.

The survey was conducted by face-to-face interviews and on-line questionnaires which focused on senior information technology executives at many of the top 100 global financial services organisations.

The respondents represented public and private organisations from all continents, divided into five regions including Europe, the Middle East and Africa.

- Sapa

 
 
Comment on this story
0 comments
Comments have been closed for this article.
It pays to know the cost and what you’re getting in return
May 28 2012 09:33

Investors may not have a clue what they’re paying their money managers or they type of service they’re getting, or, whether they can actually negotiate lower fees. (Reuters)

Sasha

"In the short term this is true, Greece will dominate the headlines on a day to day basis, until their next elections when there would be some clarity to answer the question, "What next for Greece?" Amazingly everyone except the politicians seem to be lining themselves up for worst case scenario, b... Read their blog...

Recently updated
Podcasts
The Sishen saga

Legal expert Peter Leon on the increasingly complex legal wrangle over the Sishen Iron Ore mine. Time: 8:17 Listen Here...

Before you list

Is the clarion call of the JSE calling? Listen to Fin24’s expert panel discussion before you list your small business. Time: 17:29

Compare and Buy

Compare and apply for hundreds of financial products from many suppliers.

Credit cards Medical aid Current accounts Think Money

Money Clinic

Money Clinic Do you have a question about your finances? We'll get an expert opinion.
Click here...

Loading...