{"id":36724,"date":"2019-10-05T05:08:58","date_gmt":"2019-10-04T21:08:58","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=36724"},"modified":"2019-10-05T10:26:15","modified_gmt":"2019-10-05T02:26:15","slug":"use-zero-trust-model-to-deal-with-security-say-it-experts","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2019\/10\/05\/use-zero-trust-model-to-deal-with-security-say-it-experts\/","title":{"rendered":"IT experts advocate use of \u2018zero trust\u2019 model to deal with security"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>SAN JOSE, CALIFORNIA \u2013 Everyone needs to learn how to \u201cdisrupt criminals\u2019 ability to profit off your information,\u201d said SpyCloud CEO\/co-founder Ted Ross, here at NetEvents 2019: Global IT Summit. And arguably the best way to do this is to apply the \u201czero trust model\u201d as far as cybersecurity is concerned.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Today, on average, people over 55 have approximately 12\npasswords, Millennials have eight, and those belonging to Gen Z have five.\nFifty-nine percent of all people use the same password\/s everywhere; and here,\nthe younger generations may be said to be at a disadvantage \u201cbecause they have\nfewer passwords to rotate even if they go online more often (than their\nelders),\u201d Ross said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">These passwords include those used for work, with the\nFederal Bureau of Investigation (FBI) noting that 65% of reported fraud is actually\nbusiness email compromise fraud. Approximately $8t million are lost per day in\nUS alone; with the total losses reaching $12.5 billion in last five years.\nSadly, just over 3% is recovered from this amount.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">But Ross said that \u201cwork-related accounts are only part of\nthe problem (with security). Personal and family accounts are even more\nat-risk.\u201d This is worth highlighting because when personal accounts are hacked,\nwork-related accounts may also already be compromised.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cybercriminals \u201ctake everything they can get their hands on,\u201d\nRoss said. And then \u201cthey focus on monetizing the information.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This is why, Ross reiterated, the \u201czero trust model\u201d is\nalways worth considering.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Erin Dunne, director for research services of Vertical\nSystems Group, seconded Ross\u2019s position, particularly since \u201cwith all the\nsecurity issues, it\u2019s terrifying.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For Vikram Phatak, founder of NSS Labs, \u201cthere\u2019s no reason\nfor companies to be the one to secure everything. Instead, shift the paradigm\nto service provider paradigm.\u201d This is because for companies to \u201cdo everything\nisn\u2019t going to work; it\u2019s not sustainable.\u201d And here, \u201csimplification of\nsecurity \u201cfor the average person to use\u201d is recommended.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Brad Casemore, research VP for data center networks at IDC, agrees. \u201cThere was a time when products\/services were complex, and this has huge implications with adaption. Like Phatak, Casemore stresses the \u201cneed to simplify\u201d. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Scott Raynovich, principal analyst at Futuriom, said that \u201csecurity management tools are (already) out there, but many people continue not to use them. So human behavior needs to be tackled.\u201d <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Everyone needs to learn how to \u201cdisrupt any criminals\u2019 ability to profit off your information,\u201d said SpyCloud CEO\/co-founder Ted Ross.<\/p>\n","protected":false},"author":2,"featured_media":36725,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[272,54,6914,6917],"class_list":["post-36724","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-netevents","tag-security","tag-spycloud","tag-zero-trust"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36724","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=36724"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36724\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/36725"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=36724"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=36724"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=36724"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}