Tuesday, June 06, 2006

On the Value of Monitoring

Very smart outlook on things related to monitoring comes from SecurityIncite:

"From a security point of view, monitoring is not very interesting. The idea of knowing what has happened, without really doing anything about it - strikes me as a waste of time. But that is if your job title has SECURITY in it. If you are an auditor or compliance officer, the last thing you want to do is remediate. "

Monitoring =/= protection, it never did equal that, and should not be. Monitoring is about verification, confirmation, assurance!

No comments:

Dr Anton Chuvakin