|
The Threat Profile Has Shifted |
 - Historically, most company have concentrated their security efforts on perimeter-based security. That is, things that restrict access or the movement of information. Things like firewalls, anti-malware & VPNs – things to keep the bad guys out.
- And while all those things are necessary, one must really take an information-centric approach to security and assume that the threats come from within. That is not to say the people within your company are acting out of malicious intent, but often, even with perfectly good intentions, they will send stuff outside of your company. And once it’s out there, it’s out there.
- Our most valuable assets are roaming around the internet
# An average user processes around 110 emails per day —28% of all email generated goes outside of the company —20% of all email has at least one attachment 
- Here is a very tell statistic from Gartner—84% of high cost security incidents are a result of insiders sending confidential material outside of their company.
- That means if you are only concentrating on perimeter-based security, you are addressing no more than 16% of the potential high-cost issues.
|