Firewall Wizards mailing list archives

Re: Equifax Canada


From: "Keith A. Glass" <salgak () speakeasy net>
Date: Mon, 20 Jun 2005 14:04:28 +0000


-----Original Message-----
From: Paul D. Robertson [mailto:paul () compuwar net]
Sent: Monday, June 20, 2005 12:53 PM
To: 'Adrian Grigorof'
Cc: firewall-wizards () honor icsalabs com
Subject: Re: [fw-wiz] Equifax Canada

We have to stop treating security as a service industry in companies and
start treating it as a fiduciary repsonsibility.  The firewall *should* be
a hurdle to business, and business should be happy to have that hurdle-
make it over and you should have some level of assurance that you're doing
better than average, plow through it and you should be penalized.

Back when I ran the firewalls (20+ of them, several different types) at SEC's EDGAR project, I remember the moaning and 
wailing from submittors (you could either individually make EDGAR filings as a corporation, OR there were a bunch of 
companies that specialized in EDGAR filings. . . ).

ALL complained when we upgraded firewalls.  All IMMEDIATELY stopped whining when we pointed out that if you wanted that 
"insider" financial information released to self-selected portions of the public prior to official release, we could 
always leave things the way they were. . . .

Keith
nowadays, doing firewalls for the DoD


_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: