remember the WSJ article...?
Aug. 7th, 2007 01:56 pmThis one - http://community.livejournal.com/techsupport/1450953.html - ?
I emailed the author to say " If you were being strictly accurate, you should have sub-titled it
"Ten sure ways to get yourself fired with extreme prejudice"."
.. she emailed me back...
**********************************************************************
Hi goose_entity,
Thanks for the candid feedback. As it turns out, I think there might be room for a follow-up story on things IT departments wish employees knew. Want to take a stab at offering some thoughts on this? I'm looking for specific tips - along the lines of the last story - highlighting what people can do to keep themselves and their companies secure and prevent legal and regulatory trouble. I would especially welcome any horror stories you can offer that illustrate why these tips are important.
Along with the note, can you confirm your full name, your location, the full name of your firm and your title there?
Let me know what you think, and thanks, in advance,
V
**********************************************************************
...!!!
Wow, Clue is still in the WSJ!
EDIT TO ADD
Another reply from V -
I appreciate it! To be clear, I'm looking for specific helpful tips
along the lines of the last story - simple things employees can do to
keep themselves and their companies safe, rather than general
information about IT security. Thanks very much, V
************************************
So, anyone got anything they would like to share? If you leave a comment here I will treat your comment as anonymous when sending it on, unless you say otherwise.
I emailed the author to say " If you were being strictly accurate, you should have sub-titled it
"Ten sure ways to get yourself fired with extreme prejudice"."
.. she emailed me back...
**********************************************************************
Hi goose_entity,
Thanks for the candid feedback. As it turns out, I think there might be room for a follow-up story on things IT departments wish employees knew. Want to take a stab at offering some thoughts on this? I'm looking for specific tips - along the lines of the last story - highlighting what people can do to keep themselves and their companies secure and prevent legal and regulatory trouble. I would especially welcome any horror stories you can offer that illustrate why these tips are important.
Along with the note, can you confirm your full name, your location, the full name of your firm and your title there?
Let me know what you think, and thanks, in advance,
V
**********************************************************************
...!!!
Wow, Clue is still in the WSJ!
EDIT TO ADD
Another reply from V -
I appreciate it! To be clear, I'm looking for specific helpful tips
along the lines of the last story - simple things employees can do to
keep themselves and their companies safe, rather than general
information about IT security. Thanks very much, V
************************************
So, anyone got anything they would like to share? If you leave a comment here I will treat your comment as anonymous when sending it on, unless you say otherwise.
no subject
Date: 2007-08-07 06:56 pm (UTC)no subject
Date: 2007-08-07 07:02 pm (UTC)no subject
Date: 2007-08-07 07:05 pm (UTC)no subject
Date: 2007-08-07 07:11 pm (UTC)Knowing that I have contributed to lowered blood pressure in my fellow sysadmins is enough reward for me.
no subject
Date: 2007-08-07 07:14 pm (UTC)no subject
Date: 2007-08-07 07:20 pm (UTC)no subject
Date: 2007-08-07 07:21 pm (UTC)also, please post if something comes of it :)
no subject
Date: 2007-08-07 07:22 pm (UTC)no subject
Date: 2007-08-07 07:25 pm (UTC)Thanks for the candid feedback. As it turns out, I think there might be room for a follow-up story on things IT departments wish employees knew. Want to take a stab at offering some thoughts on this? Iām looking for specific tips ā along the lines of the last story ā highlighting what people can do to keep themselves and their companies secure and prevent legal and regulatory trouble. I would especially welcome any horror stories you can offer that illustrate why these tips are important.
Along with the note, can you confirm your full name, your location, the full name of your firm and your title there?
Let me know what you think, and thanks, in advance,
Vauhini
--------------
I wonder if she's aware of the WSJ's computer policies while she's on the network.
Vauhini Vara
Reporter, The Wall Street Journal
vauhini.vara@wsj.com
415-765-8281 (desk)
206-423-3232 (cell)
no subject
Date: 2007-08-07 07:33 pm (UTC)no subject
Date: 2007-08-07 07:40 pm (UTC)no subject
Date: 2007-08-07 08:07 pm (UTC)And while my office doesn't do filtering for apps (man, I wish we did), it might be helpful to explain why companies prohibit applications such as P2P software (backdoors into the network, easy vector for viruses, easy target for lawsuits).
I can provide more info on these ideas if desired, and wouldn't mind being attributed or quoted - contact me if more info is desired at my username at gmail.com. Not that I'm after publicity, but I also don't have a problem being a quoted source - can't hurt when I start looking for a new job.
no subject
Date: 2007-08-07 08:08 pm (UTC)no subject
Date: 2007-08-07 08:11 pm (UTC)the little brat...heh.
no subject
Date: 2007-08-07 09:04 pm (UTC)no subject
Date: 2007-08-07 09:21 pm (UTC)Personally, I set up a separate VLAN for all the machines where the users are local admin, and monitor the outgoing traffic much a much finer comb. Even better is to have a 2 machines, one on the VLAN, and one locked down one thats on the regular lan.
no subject
Date: 2007-08-07 09:30 pm (UTC)no subject
Date: 2007-08-07 10:10 pm (UTC)no subject
Date: 2007-08-07 10:14 pm (UTC)no subject
Date: 2007-08-07 10:16 pm (UTC)- Don't write your passwords down on post-it notes and leave next to your workstation
- Don't print something out and take it to someone if you can e-mail it to them
- Don't install software on your laptop unless there is a genuine business need
- If you think you screwed something up...SAY SOMETHING or you'll make it worse
Better yet:
- Go back to waiting tables, you're too stupid to be around computers. :)
off the top of my head
Date: 2007-08-07 10:25 pm (UTC)---------------------
1) Always lock your workstation when you step away - CTRL/ALT/DEL enter takes less than 2 seconds - seriously, it's not rocket science.
2) Never give your password to anyone - not the temp, not your secretary, not the guy on the phone telling you he's from IT - if it's an IT person, they either have admin rights or can reset your password if necessary, or at the worst will have you type it in, anyone else needs to have their own password and access. Sharing passwords is like sharing a condom.
3) Don't put your frakking password on a yellow sticky note under your mouse pad, under your keyboard, or in the desk drawer.
4) Never ever ever click on "okay" or "yes" or "install" unless you have a clue what the little popup box is actually saying - if you don't, either click "no" or "cancel" or call your IT person to see what the heck that is
5) Yes, that must be a funny thing your a/best friend/ex-coworker sent you - look at how many other people 'fwd: fwd: fwd:'ed it too! But if it's an attachment that isn't business related? DON'T OPEN IT! Because when it turns out to be a worm, or a trojan, or porn or all of the above rather than a singing puppy, you are screwed.
Re: off the top of my head
Date: 2007-08-08 02:48 am (UTC)and my big bug bear. Keep work email distinct and separate from personal email. That means get a yahoo/gmail/aol account and use it for your personal mail. Do not use your work address. 4 words. We. Read. Your. Email.
Company time means company work. You're not being paid to read emails from you long lost brother's twin salamander.
no subject
Date: 2007-08-08 02:53 am (UTC)If you're running a (home) business get a business grade account!
With SLAs!
and QoS!
don't be a cheapskate.
Re: off the top of my head
Date: 2007-08-08 03:33 am (UTC)Re: off the top of my head
Date: 2007-08-08 03:36 am (UTC)