Opinion

Letters

By CSO Contributor

Page 3

I want to specifically comment on the article's commentary that patching no longer works. There clearly are patch horror stories, as there are horror stories with every other type of security countermeasure. That doesn't mean that patching doesn't improve security as a whole.

While there is a need for improvements in the process of deploying patches, it does work when applied well. Do we claim that seatbelts don't work because an accident victim didn't wear one? Blaster was an example where well-applied patching greatly minimized potential damage; however, it was not a perfect solution. For that matter, nothing is the perfect solution. The only people selling perfect security solutions are fools or liars. What is needed is Defense in Depth and properly trained staff. Articles that give the impression that patching as a whole is ineffective are dangerous.
Ira Winkler
Chief Security Strategist
HP

$firstKeyword

RESOURCE CENTER
Loading...
VIRTUAL CONFERENCE
Security Directions: A Virtual Conference

Security Directions Available On Demand Sept. 30 - Dec. 30

Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.

» Register Now

WEBCAST
Protecting PII: How to Work with IT to Manage Risk

Compuware Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.

» View this Webcast

Featured Sponsors