<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Digital ID Coach &#187; Information security</title>
	<atom:link href="http://digitalidcoach.com/tag/information-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://digitalidcoach.com</link>
	<description>Helping you pull yourself together.</description>
	<lastBuildDate>Sat, 14 Jan 2012 06:46:06 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Customer Info Data Management</title>
		<link>http://digitalidcoach.com/2011/01/customer-info-data-management/</link>
		<comments>http://digitalidcoach.com/2011/01/customer-info-data-management/#comments</comments>
		<pubDate>Mon, 31 Jan 2011 19:40:57 +0000</pubDate>
		<dc:creator>coach</dc:creator>
				<category><![CDATA[future]]></category>
		<category><![CDATA[history]]></category>
		<category><![CDATA[records]]></category>
		<category><![CDATA[academia]]></category>
		<category><![CDATA[Artificial intelligence]]></category>
		<category><![CDATA[Britain]]></category>
		<category><![CDATA[Data collection]]></category>
		<category><![CDATA[data retention]]></category>
		<category><![CDATA[Facebook Inc]]></category>
		<category><![CDATA[Information security]]></category>
		<category><![CDATA[Matt Flynn]]></category>
		<category><![CDATA[PII]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[The Telegraph]]></category>
		<category><![CDATA[trust]]></category>
		<category><![CDATA[trusted parties]]></category>
		<category><![CDATA[United Kingdom]]></category>

		<guid isPermaLink="false">http://digitalidcoach.com/?p=476</guid>
		<description><![CDATA[Across the pond in the UK, The Telegraph posted an article back in Aug. 2008, How Big Brother watches your every move, about the level of data collection by the Government, law enforcement agencies and private companies. From the article: In one week, the average person living in Britain has 3,254 pieces of personal information stored [...]


Related posts:<ol><li><a href='http://digitalidcoach.com/2011/11/pii-2011-personal-identity-management/' rel='bookmark' title='PII 2011: Personal Identity Management'>PII 2011: Personal Identity Management</a></li>
<li><a href='http://digitalidcoach.com/2012/01/the-secret-life-of-your-personal-data/' rel='bookmark' title='The secret life of your personal data'>The secret life of your personal data</a></li>
<li><a href='http://digitalidcoach.com/2011/07/trust-culture-chaos-and-the-market/' rel='bookmark' title='Trust, Culture, Chaos, and the Market'>Trust, Culture, Chaos, and the Market</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Across the pond in the UK, The Telegraph posted an article back in Aug. 2008, <a href="http://www.telegraph.co.uk/news/uknews/2571041/How-Big-Brother-watches-your-every-move.html">How Big Brother watches your every move</a>, about the level of data collection by the Government, law enforcement agencies and private companies. From the article:</p>
<blockquote><p>In one week, the average person living in Britain has 3,254 pieces of personal information stored about him or her, most of which is kept in databases for years and in some cases indefinitely.</p></blockquote>
<p>We know it&#8217;s not <em>just Big Brother</em> but is really the 10,000 Little Brothers that are collecting the data. We also know they&#8217;re collecting way beyond what&#8217;s actually needed to complete any specific transaction. According to Matt Flynn, <a href="http://360tek.blogspot.com/2008/09/89-of-security-incidents-in-2007.html">89% of data leakage incidents in 2007 went unreported</a>. While there&#8217;s a mismatch in years, I don&#8217;t think it alters the big picture: corporations treat personal datalike a big slushy resource with no regard for the individuals behind it. Moreover, I don&#8217;t think this practice or attitude has changed since this time. Facebook is a prime example of this corporate hubris.</p>
<p>There&#8217;s a short and informative post on Information Answers about the <a href="http://informationanswers.com/?page_id=61">Trust Index Outputs</a> that proposes a set of questions to help score trustworthiness on 12 topic areas. The specific questions that lead to the scores on each topic aren&#8217;t included, but I like the 12 areas:</p>
<ol>
<li>Overall Approach</li>
<li>Data Collection</li>
<li>Data Use</li>
<li>Minimum Data Capture</li>
<li>Data Accuracy</li>
<li>Data Retention</li>
<li>Subject Access</li>
<li>Data Security</li>
<li>Data Sharing</li>
<li>Liability</li>
<li>Data Breaches</li>
<li>Adding Value</li>
</ol>
<p>A set of metrics like this would go a long way toward recognizing and connecting with potential (and currently wasted) value in the information marketplace.</p>
<p class="cm"><strong>Coaching moment</strong>: As a person, I&#8217;d love to have some way of measuring the information sharing practices of companies I do business with. I&#8217;d love to know that someone was being held accountable for doing things in a measurable, trustworthy manner. As a company, I&#8217;d love to have the opportunity to show my value AND ensure cost-saving and efficient ways of keeping the data accurate and appropriate to my specific needs. Such a proposal as this Trust Index helps point to how we can make this happen. If you&#8217;re reading this as an individual, would you like to see such a thing? If you&#8217;re a company, what are your concerns?</p>
<div class='bookmarkify'><a name='bookmarkify'></a><div class='linkbuttons'><a href='http://del.icio.us/post?url=http://digitalidcoach.com/2011/01/customer-info-data-management/&amp;title=Customer Info Data Management' title='Save to del.icio.us' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/delicious.png' style='width:16px; height:16px;' alt='[del.icio.us] ' /></a> <a href='http://www.facebook.com/share.php?u=http://digitalidcoach.com/2011/01/customer-info-data-management/' title='Save to Facebook' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/facebook.png' style='width:16px; height:16px;' alt='[Facebook] ' /></a> <a href='http://www.linkedin.com/shareArticle?mini=true&url=http://digitalidcoach.com/2011/01/customer-info-data-management/&title=Customer Info Data Management' title='Share on LinkedIn' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/linkedin.png' style='width:16px; height:16px;' alt='[LinkedIn] ' /></a> <a href='http://ma.gnolia.com/bookmarklet/add?url=http://digitalidcoach.com/2011/01/customer-info-data-management/&amp;title=Customer Info Data Management' title='Save to Ma.gnolia' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/magnolia.png' style='width:16px; height:16px;' alt='[Ma.gnolia] ' /></a> <a href='http://technorati.com/faves?add=http://digitalidcoach.com/2011/01/customer-info-data-management/' title='Add to my Technorati Favorites' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/technorati.png' style='width:16px; height:16px;' alt='[Technorati] ' /></a> <a href='http://twitter.com/home/?status=Customer Info Data Management+http://digitalidcoach.com/2011/01/customer-info-data-management/' title='Save to Twitter' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/twitter.png' style='width:16px; height:16px;' alt='[Twitter] ' /></a> <a href='http://www.feedburner.com/fb/a/emailFlare?itemTitle=Customer Info Data Management&amp;uri=http://digitalidcoach.com/2011/01/customer-info-data-management/&amp;loc=en_US' title='Email this to a friend' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/email.png' style='width:16px; height:16px;' alt='[Email] ' /></a>  <a title='See more bookmark and sharing options...' href='http://digitalidcoach.com/2011/01/customer-info-data-management/#bookmarkify' rel='nofollow'><small>More&nbsp;&raquo;</small></a></div></div>

<p>Related posts:<ol><li><a href='http://digitalidcoach.com/2011/11/pii-2011-personal-identity-management/' rel='bookmark' title='PII 2011: Personal Identity Management'>PII 2011: Personal Identity Management</a></li>
<li><a href='http://digitalidcoach.com/2012/01/the-secret-life-of-your-personal-data/' rel='bookmark' title='The secret life of your personal data'>The secret life of your personal data</a></li>
<li><a href='http://digitalidcoach.com/2011/07/trust-culture-chaos-and-the-market/' rel='bookmark' title='Trust, Culture, Chaos, and the Market'>Trust, Culture, Chaos, and the Market</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://digitalidcoach.com/2011/01/customer-info-data-management/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Five A&#8217;s of Security</title>
		<link>http://digitalidcoach.com/2009/09/the-five-as-of-security/</link>
		<comments>http://digitalidcoach.com/2009/09/the-five-as-of-security/#comments</comments>
		<pubDate>Mon, 07 Sep 2009 16:59:01 +0000</pubDate>
		<dc:creator>coach</dc:creator>
				<category><![CDATA[history]]></category>
		<category><![CDATA[records]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[Access control]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[Authorization]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[File system permissions]]></category>
		<category><![CDATA[Human Interest]]></category>
		<category><![CDATA[Information security]]></category>
		<category><![CDATA[online accounts]]></category>
		<category><![CDATA[online world]]></category>
		<category><![CDATA[Personal and online security]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[storage systems]]></category>
		<category><![CDATA[Technology/Internet]]></category>

		<guid isPermaLink="false">http://digitalidcoach.com/?p=367</guid>
		<description><![CDATA[Personal and online security is a desirable state and a complex idea. This guide offers a general overview of the main idea that, when used together, help us establish a level of security that makes us comfortable using our computer in an online world. Awareness The first subject in talking about security is awareness. We [...]


Related posts:<ol><li><a href='http://digitalidcoach.com/2011/02/identity-as-revealed/' rel='bookmark' title='Identity as Revealed'>Identity as Revealed</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Personal and online security is a desirable state and a complex idea. This guide offers a general overview of the main idea that, when used together, help us establish a level of security that makes us comfortable using our computer in an online world.</p>
<p><a href="http://www.flickr.com/photos/toofarnorth/3645627701/in/set-72057594108237449/"><img class="alignleft size-full wp-image-369" title="A is for Awareness" src="http://digitalidcoach.com/wp-content/uploads/2009/09/A0.jpg" alt="A is for Awareness" width="75" height="75" /></a></p>
<h3>Awareness</h3>
<p>The first subject in talking about security is awareness. We need to be aware, for example, that we are not always safe in the world (online and offline). When we are online, most people are aware that there are certain dangers such as viruses, phishing, and spam that threaten our safety (personal, financial, or data). Once we know that problems exist, we are more likely to learn about and take steps to avoid danger and keep ourselves safe and secure.</p>
<p><a href="http://www.flickr.com/photos/63943575@N00/2823662965/"><img class="alignleft size-full wp-image-368" title="A is for Authentication" src="http://digitalidcoach.com/wp-content/uploads/2009/09/A1.jpg" alt="A is for Authentication" width="75" height="75" /></a></p>
<h3>Authentication</h3>
<p>Authentication is the process of verifying that you are the real you. Your friend may authenticate you to other friends by saying something like &#8220;this is my friend Chris&#8221; (or whatever your name is). You may prove that you&#8217;re who you are to a business entity by answering questions that only you would know the answer to. You are usually being authentic when you speak honestly, from your perspective, to someone you love.</p>
<p><a href="http://www.flickr.com/photos/63943575@N00/3405643567/"><img class="alignleft size-full wp-image-370" title="A is for Authorization" src="http://digitalidcoach.com/wp-content/uploads/2009/09/A2.jpg" alt="A is for Authorization" width="75" height="75" /></a></p>
<h3>Authorization</h3>
<p>When you are authorized, you have access to a computer system. Verifying users of your computer, or your work&#8217;s computer, or any storage systems or online accounts, can help you track the activity in files and resources. An unauthorized user can be prevented from gaining access to your information. Authorization is the process of assigning permission to use certain files and resources.</p>
<p><a href="http://www.flickr.com/photos/63943575@N00/2723946899/"><img class="alignleft size-full wp-image-371" title="A is for Access Control" src="http://digitalidcoach.com/wp-content/uploads/2009/09/A3.jpg" alt="A is for Access Control" width="75" height="75" /></a></p>
<h3>Access Control</h3>
<p>Setting permissions on files, directories, accounts, or computers can establish limits to these resources. You may wish to be the only person that read and update your personal finances, for example. This is referred to as individual read-write access (only the owner of the file can read or update). At work, your group may have access to read and maybe edit a collaborative document. Most of the web pages offer global read-only access. Individual, group, or global access can be set to allow reading, editing, and/or other permissions.</p>
<p><a href="http://www.flickr.com/photos/47207654@N00/3008015350/"><img class="alignleft size-full wp-image-372" title="A is for Auditing" src="http://digitalidcoach.com/wp-content/uploads/2009/09/A4.jpg" alt="A is for Auditing" width="75" height="75" /></a></p>
<h3>Auditing</h3>
<p>As individual computer users, we don&#8217;t often think about the clues that we can use to track where we&#8217;ve been and what we&#8217;ve been doing. However, whenever we visit a web site, the site&#8217;s server automatically keeps a record of things like our domain name or IP #, the time and date of our request, the page or file requested, a code indicating success or error, the number of bytes transferred, and more. As the visitor, we don&#8217;t have such tracking tools (and in many cases, don&#8217;t need them). However, as our habits and travels on the Internet are increasingly scrutinized by the sites we visit, we have a stronger case for understanding what is being compiled about us.</p>
<p class="cm"><strong>Coaching moment</strong>: In reality, these five A&#8217;s are somewhat intertwined. For example, it doesn&#8217;t make sense to have Authentication without Authorization. Access control doesn&#8217;t happen without Authentication and Authorization, and none of these make sense without Awareness.</p>
<p class="cm">What does this have to do with digital identity? These are the pieces that make up our digital records, including who we are and what we&#8217;re allowed to do. Sometimes we have control over these decisions, and sometimes control is in the hands of others. It depends on the context of where we are and what we need.</p>
<div class='bookmarkify'><a name='bookmarkify'></a><div class='linkbuttons'><a href='http://del.icio.us/post?url=http://digitalidcoach.com/2009/09/the-five-as-of-security/&amp;title=The Five A&#8217;s of Security' title='Save to del.icio.us' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/delicious.png' style='width:16px; height:16px;' alt='[del.icio.us] ' /></a> <a href='http://www.facebook.com/share.php?u=http://digitalidcoach.com/2009/09/the-five-as-of-security/' title='Save to Facebook' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/facebook.png' style='width:16px; height:16px;' alt='[Facebook] ' /></a> <a href='http://www.linkedin.com/shareArticle?mini=true&url=http://digitalidcoach.com/2009/09/the-five-as-of-security/&title=The Five A&#8217;s of Security' title='Share on LinkedIn' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/linkedin.png' style='width:16px; height:16px;' alt='[LinkedIn] ' /></a> <a href='http://ma.gnolia.com/bookmarklet/add?url=http://digitalidcoach.com/2009/09/the-five-as-of-security/&amp;title=The Five A&#8217;s of Security' title='Save to Ma.gnolia' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/magnolia.png' style='width:16px; height:16px;' alt='[Ma.gnolia] ' /></a> <a href='http://technorati.com/faves?add=http://digitalidcoach.com/2009/09/the-five-as-of-security/' title='Add to my Technorati Favorites' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/technorati.png' style='width:16px; height:16px;' alt='[Technorati] ' /></a> <a href='http://twitter.com/home/?status=The Five A&#8217;s of Security+http://digitalidcoach.com/2009/09/the-five-as-of-security/' title='Save to Twitter' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/twitter.png' style='width:16px; height:16px;' alt='[Twitter] ' /></a> <a href='http://www.feedburner.com/fb/a/emailFlare?itemTitle=The Five A&#8217;s of Security&amp;uri=http://digitalidcoach.com/2009/09/the-five-as-of-security/&amp;loc=en_US' title='Email this to a friend' onclick='target="_blank";' rel='nofollow'><img src='http://digitalidcoach.com/wp-content/plugins/bookmarkify/email.png' style='width:16px; height:16px;' alt='[Email] ' /></a>  <a title='See more bookmark and sharing options...' href='http://digitalidcoach.com/2009/09/the-five-as-of-security/#bookmarkify' rel='nofollow'><small>More&nbsp;&raquo;</small></a></div></div>

<p>Related posts:<ol><li><a href='http://digitalidcoach.com/2011/02/identity-as-revealed/' rel='bookmark' title='Identity as Revealed'>Identity as Revealed</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://digitalidcoach.com/2009/09/the-five-as-of-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

