Friday | 10 July, 2009
CSO
Insiders, Not Hackers, Biggest Information Theft Risk
Juan Carlos Perez 03/10/2002 11:50:52

Companies worried about hackers stealing their trade secrets should be even more afraid of former employees, competitors and contractors, according to a new study conducted in the US.

Intellectual property and proprietary information are more at risk from ex-employees, foreign and domestic competitors and contractors working on-site than from computer hackers, according to a study released Monday by PricewaterhouseCoopers, the US Chamber of Commerce and the American Society for Industrial Security (ASIS) International.

The study, titled "Trends In Proprietary Information Loss," defines proprietary information and intellectual property as "information that is not within the public domain and which the owner has taken some measures to protect." It refers to, for example, information about new products and services.

"The 'insider' threat problem is perceived to be the most serious. This means that companies may want to consider investing more in human resources and vendor screening processes, as well as educating employees about tools and techniques to upgrade their information technology security practices," the study reads.

The study's findings are based on survey responses from 138 chief executive officers of US companies of all sizes. Respondents were asked about intellectual property and proprietary information losses incurred between July 1 2000 and June 30 2001. About 40 per cent of the companies polled reported suffering the loss of this type of confidential information.

Based on the survey responses, the study concluded that US companies suffered up to $US59 billion in intellectual property and proprietary information losses between July 2000 and June 2001. Most of those losses resulted from legal fees and lost revenue associated with the theft of this privileged information. Areas affected included research and development, customer information and financial data.

Computer hackers ranked fifth in terms of risks to intellectual property and proprietary information, followed by vendors and suppliers, current employees, partners, intelligence services, external manufacturers and the media.

However, as more and more sensitive corporate information is stored and transmitted using IT systems, the issue of hackers "is an area that should be earmarked for heightened scrutiny by businesses," the study reads.

In what will be good news to hackers, most respondents don't require that this type of confidential information be encrypted when sent over the Internet. However, most respondents do recognise that the Internet, computer networks, computing devices and related products create new threats to the protection of intellectual property and proprietary information.

Comments

Post new comment

Login or register to link comments to your user profile, or you may also post a comment without being logged in.
The content of this field is kept private and will not be shown publicly.
Enter the fully qualified URL, eg. http://www.example.com/
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Additional Resources
Newsletter Subscription
Sign up for our CSO Online newsletters!
RSS Feeds
Syndicate content
 
Whitepaper

Reducing the risk of insider abuse

The potential for insider abuse can never be eliminated completely, but the steps outlined in this white paper can reduce the potential for such abuse. Read on to ensure no one person can alter your operations to their personal advantage or to the detriment of your organisation.

Sponsored Links