Access and Feeds

IT Security: Businesses that Spend Big on Security Aren’t Always the Most Secure

By Dick Weisinger

Do you know how much your business spends on IT security?  A lot of businesses don’t have any idea. And when they do know that number they often use it as an estimate for the security of their organization — more spending must equate to more security.

“In most instances, the chief information security officer (CISO) does not have insight into security spending throughout the enterprise,” says Gartner Research. “This is partly because few cost accounting systems break out security as a separate line item, and many security-relevant processes are carried out by staff who are not devoted full-time to security, making it impossible to accurately account for security personnel.”

The Gartner report also looked at the correlation to spending on security and the achieved level of security at the organization. They found that just because a business spent a lot of money on security, the overall level of security of the business didn’t necessarily improve.

Gartner suggests that the best way to improve IT security is to simplify the IT infrastructure.  The greater the complexity of the architecture the more difficult it becomes not only to secure but also to assess and to monitor.

The Gartner report found that ” the majority of organizations will continue to misuse average IT security spending figures as a proxy for assessing security posture through 2020.”

 

Digg This
Reddit This
Stumble Now!
Buzz This
Vote on DZone
Share on Facebook
Bookmark this on Delicious
Kick It on DotNetKicks.com
Shout it
Share on LinkedIn
Bookmark this on Technorati
Post on Twitter
Google Buzz (aka. Google Reader)

Leave a Reply

Your email address will not be published. Required fields are marked *

*