iTnews
  • Home
  • News
  • Business
  • Strategy

Global firms reach compliance breaking point

By Robert Jaques
Dec 15 2006 9:55AM
Follow google news

Too few security experts to implement compliance projects.

Global firms reach compliance breaking point
Global businesses have reached "compliance breaking point" as they struggle to put the necessary IT security resources in place to comply with ever more stringent legislation, new research has warned.

The conclusion is based on a report commissioned by security firm McAfee and conducted by Dr Jonathan Liebenau, senior lecturer in information systems at the London School of Economics Department of Management.

The research suggests that a company's reputation could be damaged by disclosure laws now in force in the US that look set to become more widespread.

Many businesses are reliant on a very limited number of specialists who can manage information risks and understand compliance.

Companies that lose these internal capabilities often struggle to find replacements either on the labour market or through outsourcing.

The study suggests that the best example of the direct link between IT security and the strategic business function is the requirement to give public notice of a security breach.

This has been the law since 2004, but poses serious risks for business reputation and business continuity.

Dr Liebenau found that by mid-2006, reports of security breaches in the US were numbering between eight and 10 per week. To date, almost 94 million records containing sensitive personal information have been involved in security breaches.

"The mandatory reporting of security breaches will have far-reaching implications on a company's reputation management," he said.

"The practice of reporting breaches, now commonplace in the US and quickly spreading to several regions in the world, will impact the way individuals and organisations think about information handling in general and reputation protection in particular."

Surprisingly, Dr Liebenau's research found that compliance requirements may be increasing security risks because guidelines, standards and compliance concerns overshadow business security needs.

The report also pointed out that the costs involved in monitoring and meeting compliance requirements can take resources away from dealing with live security threats.

Researchers found that chief information officers, security officers and IT directors believe that compliance is playing an ever-increasing role in IT security, but many businesses are struggling to cope with its requirements.

According to one banking security expert in the UK: "We understand Sarbanes-Oxley and what it's good for, but in practice you do what you can."

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:
breakingcompliancefirmsglobalpointreachstrategy

Related Articles

  • Home Affairs opens internal "conversation" on adopting three types of AI Home Affairs opens internal "conversation" on adopting three types of AI
  • Meta accuses Australia of breaching free trade agreement Meta accuses Australia of breaching free trade agreement
  • Australia Post's future IT estate to rely on 13 "platform ecosystems" Australia Post's future IT estate to rely on 13 "platform ecosystems"
  • Gov to sustain key tech programs with new billions Gov to sustain key tech programs with new billions
Join our WhatsApp Channel

Partner Content

AI is delivering business value today
Partner Content AI is delivering business value today
Intelligence × Trust: the equation that will decide Australia's AI winners
Promoted Content Intelligence × Trust: the equation that will decide Australia's AI winners
From test case to control tower: How DXC and ServiceNow are governing enterprise AI at scale
Promoted Content From test case to control tower: How DXC and ServiceNow are governing enterprise AI at scale
Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
Promoted Content Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment

Sponsored Whitepapers

Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
1 in 3 companies lose SaaS data. Here’s how to prevent it
1 in 3 companies lose SaaS data. Here’s how to prevent it

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Meta accuses Australia of breaching free trade agreement

Meta accuses Australia of breaching free trade agreement

Home Affairs opens internal "conversation" on adopting three types of AI

Home Affairs opens internal "conversation" on adopting three types of AI

Gov to sustain key tech programs with new billions

Gov to sustain key tech programs with new billions

Australia Post's future IT estate to rely on 13 "platform ecosystems"

Australia Post's future IT estate to rely on 13 "platform ecosystems"

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.