[Full-disclosure] Could InfoSec be Worse than Death?

Kenneth F. Belva ken at ftusecurity.com
Mon Sep 25 16:30:36 BST 2006


Paul,

Thanks for your comments.

>Unless you can demonstrate concrete revenue generationg directly
>attributable to security, I don't think you can overcome that perception
>(and loss avoidance through trust building does not generate revenue.)

I believe the purpose of the paper is to move away from the loss avoidance
model and describe information security in fashion that demonstrates how
security mechanisms have a direct role to play in the creation of assets
and business relationships.

Ken




Full-Disclosure is hosted and sponsored by Secunia.