SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Integrating IT >> Development Environments

Canadian companies must 'urgently address' security skills gap

Canadian companies must 'urgently address' security skills gap

By:  Nestor E Arellano  On: 23 May 2007 For: ITWorldCanada.com Creator

Nearly half of all companies here experiencing security breaches over the past five years, according to a recent survey

COMMENT ON THIS ARTICLE

Canadian businesses need to act quickly to correct a "skills gap" in the areas of systems control and application protection, say security experts.

This has become imperative, with nearly half of all companies here experiencing security breaches over the past five years, they say.

The dire need for IT teams to be trained in these areas was expressed yesterday, after the rather disquieting results of an Ipsos Reid survey were announced.

According to the survey, 47 per cent of Canadian companies were victims of virus attacks and other security breaches in the last five years.

Little surprise then that – according to the survey – most corporate decision makers here see a need intensifying the "security" training of IT staff.

The survey was commissioned by Microsoft partner and IT systems builder, CMS Consulting Inc. in Toronto.

More than half (67 per cent) of the executives polled said they believed their staff would benefit from more security training.

"Organizations feel good about their [IT] structures but perceive a significant skills gap when it comes to dealing with the threats out there," said Brian Bourne, president, CMS Consulting.

The said ongoing training of IT staff was essential to bridge this gap.

In that context, Bourne announced the Security Education Conference Toronto (SecTor), would be held in the city later this year (November 20 and 21).

The conference, he said, will be a forum for identifying and discussing digital threats facing corporations.

The good news is many companies are keenly aware of mounting security risks and the need to urgently address these.

Seventy-six per cent of the firms polled in the Ipsos Reid study said securing their IT networks is one of their top priorities.

Bourne said 90 per cent of companies that conducted "self-penetration tests" reported their systems were "effectively compromised" by the testers.

This indicates a growing need to beef-up protection for control systems, according to another vendor who spoke at the event.

"Organizations haven’t been able to scale up to the challenges," according to Chris Blask, founder and CEO of Lofty Perch Inc., a Toronto-based provider of cyber security products.

Blask said improving integration of company assets under a single IT infrastructure and control system has boosted efficiency but also elevated inherent risks.

For instance, he said most air traffic control facilities have perimeter security, operational systems, and IT components tied to networks, and switches monitored by a single control system.

Most networks are also accessible via Internet to enable remote access.

"While firewalls are deployed to protect these systems, connections to the PSTN (public switched telephone network) and wireless services are often inadequately defended against breaches," Blask said.


Sign up for our Newsletters












Print |  Views: 1959   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Nestor E Arellano Nestor E Arellano Nestor Arellano – Newswire Specialist Nestor edits and posts newswire content for ITWorldCanada’s online publications and e-newsletters. Nestor joined ITWC in 2006 as a senior writer and ... more

Related Content

Cyber criminals breach US electrical grid
Cyber criminals breach US electrical gridIntrusions by cyber spies from China, Russia and elsewhere are pervasive, according to government officials
Wi-Fi networks still insecure in London's City
Wi-Fi networks still insecure in London's CityAfter years of stark warnings, many Wi-Fi networks located in London's City financial district still lack basic levels of security, a security vendor claims to have found.
Would you hire Dubai to run your infrastructure?
Would you hire Dubai to run your infrastructure?The issue was not political, at least not in my mind. It was all about security. In the national hoopla over whether a foreign government or those under its control should run operations at major U.S. ports, I heard lots of misplaced xenophobia. I wanted to understand the security implications as they might apply to networks in a similar situation, and that took me back to 1999.
Crosscheck Networks targets developers with SOA testing tool
development teams implementing soa (services-oriented architecture) can quickly test the quality of their enterprise wsdls using a scoring system, the boston, mass.-based vendor said.crosscheck networks inc. released version 4.0 of soapsonar, which provides developers a feedback loop to help improve quality of wsdls and, in turn, increase inte

Comments (0)

No Comments!
Name: (required) eMail: (optional)

Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.