Windows IT Pro is the authoritative and independent resource for windows nt, windows 2000, windows 2003, windows xp. Features a collection of resources and magazines for windows IT professionals.
  
  
  Advanced Search 


October 22, 2008

Sometimes Security Surveys Are Incredibly Vague

RSS
Subscribe to Windows IT Pro | See More Security Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!
back to blog index

A new survey was published by Secure Computing and IDC. As is often the case, the duo polled a tiny percentage of existing companies and summarily published survey results that might make your eyes bug out. I'm not saying the results aren't useful. I'm just pointing out that there leading statements aren't well defined.

According to a press release, the survey polled "100 IT professionals and security decision makers in North American companies with 500 or more employees, found that 72 percent of organizations had no solution for preventing data leaks over email and 89 percent of organizations lacked an effective anti-spam solution."

Nothing wrong with that. But, people might read it and focus on the 72 and 89 percent figures without thinking about how the basis makes the percentages vague beyond reason.

Here's what I mean: There are hundreds of thousands - if not millions - of businesses in the USA alone. Toss in Canada and Mexico (which make up North America) and suddenly we're talking about multiple millions of businesses. How many of those companies have over 500 employees? I don't know the precise answer but I am certain that the answer could be summarized as "quite a lot." So the point here is that there's no top end figure regarding employees cited in the press release. So we really don't know what business sizes those "100 IT professionals" for other than companies with "over 500 employees."

It seems to me that if a poll taker can ask "does your company have over 500 employees?" then that poll taker could also ask "how many employees does your company have?"

That said, here's the summary of findings which might be useful to you:

"85 percent of respondents reported that they were very or extremely concerned about data leakage over email. Despite this concern, only 28 percent of those surveyed had implemented a system to prevent those data leaks, while 56 percent planned to do so in the upcoming year."

"The companies surveyed were much more worried about accidental data loss than deliberate leaks."

"28 percent of large organizations reported that their spam complaints had increased by more than 10 percent since the previous year."

"Only 11 percent of organizations surveyed said that their messaging security currently [blocks 99 percent of all spam] and 60 percent said that their solution could not provide even 95 percent effectiveness."

"More than half of those surveyed were currently using connection and/or reputation-based technology to drop threats at the network level. However, because many of these companies are not using the latest technology, their solutions are less than 75 percent effective."

"The majority (70 percent) of companies would like a single solution that addresses both inbound and outbound threats."

"Cost-cutting measures are spurring the move toward virtualization, with 34 percent of companies planning to adopt virtual security appliances in the next 12 months."

"Companies continue to be concerned about email-borne malware, including malicious URL links (56 percent), phishing attacks (49 percent) and malicious attachments (47 percent)."

"Over the next 18 months, 40 percent of organizations plant to increase their budgets for information protection and control."

So there you have it.

End of Article



Reader Comments

You must log on before posting a comment.

If you don't have a username & password, please register now.





Search Security Matters
 
Security Matters
JANUARY 2009
     1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28 29 30 31
       
or

 Recently in Security Matters
MD5 Collisions Put PKI At Risk
Make a Comment
Remote Code Execution in SQL Server
Make a Comment
Wordpress 2.7 Released: Watch Out For Automatic Upgrades
Make a Comment
Malware Fiesta Attracts and Infects Thousands

Last Comment
Opera's browser percentage is peanuts compared to IE or Firefox. Maybe the malware creator specifica...
(1 Comments)
A Slew of Patches Plus Two Zero-day Exploits
Make a Comment

More blogs about technology,
software, and Windows.

Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro Windows Dev Pro IT Job Hound ITTV
IT Library Technology Resource Directory Connected Home Windows Excavator Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 Copyright © 2009 Penton Media, Inc., All rights reserved. Terms and Use | Privacy Statement | Reprints and Licensing