The CIA Triad: Are all your bits in one basket?

The CIA Triad: Are all your bits in one basket?

By Richard Moss | Dec 23, 2008 | 3181 reads

Security professionals often focus on the “C” in the CIA Triad of Security but yet another major break on the sub sea cable systems emphasizes the need for a balanced approach and an appropriate emphasis on the “A” in the availability of business services!

 The cable cut this time is on the route between Europe, the Middle East and Asia Pacific and has brought disruption to telephone services and internet communications, caused by cuts in not one but three underwater cables beneath the Mediterranean Sea impacting the FLAG FEA, SMW4, and SMW3 lines. Service disruption in Asia looks to be minimal this time but we are approaching the 2nd anniversary of an undersea earthquake off the coast of Taiwan on December the 26th 2006 which brutally disrupted communications across East Asia by damaging similar sub-sea cables. The cable break then took out 98% of communication for Malaysia, Singapore, Thailand and Hong Kong with repairs taking over a month to complete.
 
This type of disruption brings organizations to a halt and costs millions of dollars with many – particularly in the financial services industry or commodities trading industry - grinding to a halt in a very short space of time so they often measure and optimize the speed at which they get live data feeds to tens of milliseconds of performance.
 
Yet IT and purchasing departments often buy communication networks on price, price and, err, well, price to be honest … but not all service providers and networks are the same and this is where security professionals need to step in and provide advice and input to the purchasing and selection process to ensure that any penny-pinching procurement policies are business-appropriate and don’t cost millions through later service disruptions such as these and … that services providers who are less-than honest when it comes to the reliance built within their network topology don’t lose your company millions when problems in their networks do occur!
 
Think of it this way: the difference between a Tier 1 and tier 4 datacenter can be articulated in terms of availability or annual downtime of that asset with roughly a Tier 1 DC down for 28 hours per year while a Tier 4 is allowed less than half of one hour outage in the same period. Unfortunately there’s nothing analogous for communication networks except the standard SLA, which in reality is nothing better than your average holiday travel insurance i.e. if you lose something you get token damages – so if the network’s not available here’s a few dollars compensation (normally calculated in 1/x of what you pay the service provider in the first place so your not being compensated for the business your company is losing!)
 
And with today’s bandwidth hungry and latency intolerant applications being business critical, it’s no good when the link to London or Singapore is cut trying to cram all the traffic down an alternative pipe – 2 into 1 just does not go! Well, alright it does … if you stuff all those bits hard enough you can make them fit, they just have to travel a lot slower!
 
I can tell you from experience: when one of the cross-harbor tunnels in Hong Kong is unavailable the traffic in the remaining 2 flows less well when you try and stuff all the cars, trucks, busses and mopeds down the other two …! Enough analogies for one blog?
 
So not to labor a point – the C.I.A. Triad must, must, must have a balanced approach especially when the availability of applications and business critical services is outsourced to 3rd part service providers; So, take care as you have been warned twice now, and both times at Christmas, so have a happy one if you are celebrating!

Add comment

Post a Comment

The content of this field is kept private and will not be shown publicly.
Verification Code
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
 

Comments

Comments

Dresses, evening, cocktail,

Dresses, evening, cocktail, prom dresses, formal gowns from dresseslife. Homecoming dresses and bridesmaid
Graduation Dresses

Official Ed Hardy Store for

Official Ed Hardy Store for all Clothing and Gear by Christian Audigier. The lifestyle brand is inspired by vintage tattoo art incorporating apparel Ed Hardy Clothing
Ed Hardy Shoes Ed Hardy Boots Ed Hardy Hoodies ugg boots tiffany jewellery ED Hardy Lady Tee
ED Hardy Mens Tee

Welcome to our corporation.

Welcome to our corporation. We can supply many kinds of brand shoes,jeans,handbags,clothes,watch,nfl jersey,cheap nfl jerseys,nfl jerseys,etc Our products are popular with High Qual...

第二の永久歯といわ

第二の永久歯といわれるインプラントですが、興味はあっても
インプラント治療に対して、 不安をお持ちの方がたくさんいらっしゃいます。
障害者

As we all know, louis

As we all know, louis vuitton established in 1854, and now subordinates in France produces the high-quality luxurious thing specially Moet Hennessy Louis Vuitton 09 New Arrivals. The founder is Second wave! LV limited store in Tokyo himself. Louis Vuitton Rift - Black the host hits is various leather Louis Vuitton Rift - White (for example Louis Vuitton Keepall 45 - White, Louis Vuitton Lodge GM White and so on).

And has anyone ponders why Louis Vuitton Beverly GM White and Louis Vuitton Sale Events do not fade form 1854 to now? I think first, Louie Vuitton insists its style since continuously. louis vuitton brand since 150 has been advocated the fine, quality, comfortable “travel philosophy” as design foundation. How to Select a Perfect Louis Vuitton Bag Gift which has already spread over the world becomes traveling finest symbol.

Second, from the beginning of design to the present, the letter canvas bag is printed with “Let Louis Vuitton Outlet Satisfy Your Luxury Dream” to symbolize that at first this It's Desirable to Shop LV Designer Bags Online, is following the rich legendary color and Athens's design becomes classical fashion. For 100 years, the world has experienced many changes, people also change the purse and the esthetic idea along with it, but the prestige of Louis Vuitton Milla Clutch MM remarkably, is maintaining at the present the unequalled charm. Now we find out all the classical works of Louis Vuitton Griet Louis Vuitton AURELIA GM: the Louis Vuitton Aurelia MM first generation: Louis Vuitton Mini HL which all along is the Similar questions with endorsement Obama Louis Farrakhan equipment symbolic mark. Moreover, DAIMER bi-color check canvas began in 1888 and actually in 1996 LV’s designer uses the exquisite graceful brownish yellow tone to promote .And we know EPI embossing, this altogether has black, brown, green, yellow, blue, red, the loose skinned orange seven colors, LV Louis Vuitton Cruise Collection 2009
water grain only in a leather equipment right bottom stamping Louie Vuitton Cuts Prices in Japan to Boost Sales
. The effect of OPERA grain handbag is making the striking contrast between the prefacing and the embossing, only has black red two color OPERA which is only aims at the female only, the feminization design of LV. TAIGA dermis: except has the TAIGA forest to be green, but also has the new series ACAJOU depth brown belt to be purplish red, has division the soft incrustation. MONOGRAMVERNIS which is used as the basis with the traditional MONOGRAM design, pressed the fashionable bright surface the real cerebral cortex material, the color aspect has used the young lively water blue color and the milk soy-and-sugar sauce, symbolized the LV vital epoch.

Third, Louis Vuitton Latest Fashion Releases in 2009
follows the time step closely, innovates unceasingly, every year can promote some classic products. In 2001 LV promoted the fall &winter handbags and wallets were inspired form military subject, three kind of designs were made completely by the facile black cowhide, but matched the yellow brass button which played the part. Also after the processing, the handbags looked specially, were carved “LV” on the brass button and the surface. Louis Vuitton Spring and Summer of 09, Exotic French Charm
understood to keep the classics, the noble value feeling by using all kinds of strategies. Cites an example, in order to satisfy the modern travelers regarding the traveling quality fine request, LV produced the liquor bags which has been possible to deposit two bottles of good wine, and also had may momentarily open, the fold to use for reading and the sketch furniture. This is “the LV travel philosophy” essence which also the reason a lot of people adore LV.

Finally people who used Louis Vuitton Huron
all know LV quality. Someone show her LV handbag or put out Louis Vuitton Mohican
frequently saying: LV is still the most durable, such as this one I used for 7 years. This point does not exaggerate, I saw a 10 year-old Louis Vuitton Damier Azur Bags
which only hides the color changes slightly the depth, and the edge does not have the obvious attrition.
In a word, choose louis vuitton store
are choosing the individuality, high-quality goods.

when one of the cross-harbor

when one of the cross-harbor tunnels in Hong Kong is unavailable the traffic in the remaining 2 flows less well when you try and stuff all the cars, trucks, busses and mopeds down the other two …!

classified ads |USA jobs |tempurpedic mattress

Information on Blogger

leave a comment

knowledge_central_tab

 
 
Knowledge Central
Trusted Mobility Index
The mobile ecosystem of devices, services and networks is at a critical inflection point.While the mobile revolution is unleashing massive opportunities in both emerging and mature economies, it is also increasing in complexity and confusion. The reality is the lightning-fast adoption of powerful, smart devices is outpacing society’s ability to secure them. Today, trust in mobility hangs in the balance.
The state of the Internet, Q4, 2011
Geography appears to play a role in frequency of observed attacks on specific ports. For example, Port 23 (Telnet) is a favorite target for attacks observed to be originating from South Korea and Turkey, where it accounted for more than five times the number of attacks targeting the next most popular port (445 in both countries). Other instances of geography-based port targeting include observed attacks centered on Port 1433 (Microsoft SQL Server) in China and on Port 80 (WWW/HTTP) in Indonesia.
 
 
 
HID Global deploys a centralized, web-based IP access control solution at Fuxi Power Plant
Unable to meet the needs for real-time monitoring with its traditional patrol system, China's Fuxi Power Plant has deployed HID Global's VertX V2000.
StubHub: How to spot fraud before it happens
Whenever a list of log-on credentials is dumped onto the Web, retailers get hit with waves of automated attacks. Here's how ticket marketplace StubHub fights the threat.