All the latest UK technology news, reviews and analysis

International security guidelines updated

by James Middleton

06 Sep 2002

Be the first to comment

  • Tweet this

The international security standard developed by the Organisation for Economic Co-operation and Development (OECD) has been updated for the first time in 10 years to give more protection to companies using the internet.

The OECD's new 7799 guidelines will focus on security awareness, education and responsibility, proposing that security measures be incorporated from the ground up as an essential element of information systems.

Risk assessments will also be proposed as an essential tool for securing networks, and co-operation and swift action will be considered as vital to the prevention and detection of security breaches.

E-commerce minister Stephen Timms said: "We are faced with a major challenge of making the information age a safe place to do business. Today's launch marks a turning point in how we rise to that challenge.

"The UK has very actively supported and contributed to the revision of the original guidelines laid out in 1992. The new guidelines provide a set of principles that will help us create a culture of security."

The recent Information Security Breaches Survey from the Department of Trade and Industry revealed that fewer than a third of businesses encrypt files containing confidential details, and over a third of UK websites have no firewall in place.

Viruses are still identified as the cause of the most serious security breaches, but 17 per cent of businesses still have no software in place to guard against such attacks.

The Confederation of British Industry (CBI) welcomed the reviewed guidelines. CBI representative Jeremy Ward said: "Far too many businesses today are crossing the information highway without knowing anything about the risk.

"As a result, too many of them are becoming involved in nasty accidents involving information security.

"The key issue is not so much what individual businesses must do to protect themselves, although this is still very important, but rather the creation of an environment of trust and security.

"Development of such an environment will require close and co-ordinated co-operation between industry and government. The guidelines are the Green Cross Code of the information superhighway."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

34%

1%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Global Project/Programme Manager-with recruitment deployment experienc

My London client is looking for an experienced Programme...

PHP Developers (All Levels)

My leading client is looking for a number of excellent...

Group Services Manager - Telecoms

My client, a leading international name in Manufacturing...

Automated PHP Developer

My client is looking for an Automated Engineer/Developer...

To send to more than one email address, simply separate each address with a comma.