<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: MOD Laptop &#8216;anomalies&#8217; = systemic failure</title>
	<atom:link href="http://www.alancalderitgovernanceblog.com/2008/07/mod-laptop-anomalies-systemic-failure/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.alancalderitgovernanceblog.com/2008/07/mod-laptop-anomalies-systemic-failure/</link>
	<description>Alan Calder, author of "IT Governance: a Manager's Guide to Information Security and ISO27001/ISO27002", talks about current governance and information security issues.</description>
	<lastBuildDate>Sun, 03 Oct 2010 05:23:49 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
	<item>
		<title>By: Bogdan Dragomir</title>
		<link>http://www.alancalderitgovernanceblog.com/2008/07/mod-laptop-anomalies-systemic-failure/#comment-7</link>
		<dc:creator>Bogdan Dragomir</dc:creator>
		<pubDate>Mon, 15 Sep 2008 15:53:54 +0000</pubDate>
		<guid isPermaLink="false">http://84.18.207.66/~alancald/?p=212#comment-7</guid>
		<description>That is interesting, it might not be an average of 10000, but that might represent the top losses; I believe that the question asked at the end of the article is a valid one &quot;what happens with all those laptops?&quot; Anyway, the &quot;silver bullet&quot; against loosing the laptop is as usual increased user awarenes. As for the confidential data existing on the laptop, ...there are several solutions such as: using a folder/file encryption software (folder lock), using a whole disk encryption solution (drivecrypt, pgp), not storing confidential data on your laptop ... or the OL&#039; method and highly recommended: don&#039;t buy/travel (with) a laptop unless you have the ability to take care of it!!</description>
		<content:encoded><![CDATA[<p>That is interesting, it might not be an average of 10000, but that might represent the top losses; I believe that the question asked at the end of the article is a valid one &#8220;what happens with all those laptops?&#8221; Anyway, the &#8220;silver bullet&#8221; against loosing the laptop is as usual increased user awarenes. As for the confidential data existing on the laptop, &#8230;there are several solutions such as: using a folder/file encryption software (folder lock), using a whole disk encryption solution (drivecrypt, pgp), not storing confidential data on your laptop &#8230; or the OL&#8217; method and highly recommended: don&#8217;t buy/travel (with) a laptop unless you have the ability to take care of it!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Svavar Ingi Hermannsson</title>
		<link>http://www.alancalderitgovernanceblog.com/2008/07/mod-laptop-anomalies-systemic-failure/#comment-6</link>
		<dc:creator>Svavar Ingi Hermannsson</dc:creator>
		<pubDate>Mon, 15 Sep 2008 15:52:49 +0000</pubDate>
		<guid isPermaLink="false">http://84.18.207.66/~alancald/?p=212#comment-6</guid>
		<description>speaking of losses running into the thousands, did any one read results from the study posted last month where it says that more than 10.000 laptops go missing at US airports each week!

that&#039;s 10.000 laptops each week? I&#039;ve never lost a laptop and I have a really hard time understanding how so many laptops can go missing each &quot;week&quot;

http://www.engadget.com/2008/07/06/study-says-more-than-10-000-laptops-go-missing-at-us-airports-ea/</description>
		<content:encoded><![CDATA[<p>speaking of losses running into the thousands, did any one read results from the study posted last month where it says that more than 10.000 laptops go missing at US airports each week!</p>
<p>that&#8217;s 10.000 laptops each week? I&#8217;ve never lost a laptop and I have a really hard time understanding how so many laptops can go missing each &#8220;week&#8221;</p>
<p><a href="http://www.engadget.com/2008/07/06/study-says-more-than-10-000-laptops-go-missing-at-us-airports-ea/" rel="nofollow">http://www.engadget.com/2008/07/06/study-says-more-than-10-000-laptops-go-missing-at-us-airports-ea/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bogdan Dragomir</title>
		<link>http://www.alancalderitgovernanceblog.com/2008/07/mod-laptop-anomalies-systemic-failure/#comment-5</link>
		<dc:creator>Bogdan Dragomir</dc:creator>
		<pubDate>Mon, 15 Sep 2008 15:48:25 +0000</pubDate>
		<guid isPermaLink="false">http://84.18.207.66/~alancald/?p=212#comment-5</guid>
		<description>I would guess that the number of laptops is a bit less important from the security stand point as long as all of them should have a full disk encryption deployed. How would you verify if all of them have the encryption active is simple by setting a software push taking place once the laptop comes to life. Lost of laptops is unlikely to be stopped; however you are right diminishing its number would reflect in decreased potential exposure. If working offline wouldn&#039;t be a requirement I would suggest enabling using laptops as &quot;thin clients&quot; and work on remote systems...
&quot;How does the MOD know that actual laptop losses aren&#039;t running into the thousands?&quot; that should be quite easy to figure out through periodic audit against machine network authentication.

Best regards,
Bogdan Dragomir
http://rosecurit.eu
rosecurit@rosecurit.eu</description>
		<content:encoded><![CDATA[<p>I would guess that the number of laptops is a bit less important from the security stand point as long as all of them should have a full disk encryption deployed. How would you verify if all of them have the encryption active is simple by setting a software push taking place once the laptop comes to life. Lost of laptops is unlikely to be stopped; however you are right diminishing its number would reflect in decreased potential exposure. If working offline wouldn&#8217;t be a requirement I would suggest enabling using laptops as &#8220;thin clients&#8221; and work on remote systems&#8230;<br />
&#8220;How does the MOD know that actual laptop losses aren&#8217;t running into the thousands?&#8221; that should be quite easy to figure out through periodic audit against machine network authentication.</p>
<p>Best regards,<br />
Bogdan Dragomir<br />
<a href="http://rosecurit.eu" rel="nofollow">http://rosecurit.eu</a><br />
<a href="mailto:rosecurit@rosecurit.eu">rosecurit@rosecurit.eu</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>

