In Depth

Intellectual Property Security: Don't Lose Your Head

Intellectual property isn't always easy to identify. It's even harder to protect. Here's how CSOs can work with others to protect their companies' future.

By Simone Kaplan

April 01, 2003CSO — Pity the CSO. His worth is often measured by what doesn't happen on his watch. And he's often asked to protect things you can't see.

If you think it's tough to secure a building or a network, try protecting an idea. Ideas are invisible; they have a habit of working their way into conversations—and not always with the people who should be hearing them. They can get lost or stolen without anyone knowing they're even gone until your competitor beats you to market with an innovation you thought was yours alone.

Yet ideas are much more valuable than many of the tangible assets a CSO is sworn to protect. Intellectual property can be anything from a particular manufacturing process, plans for a product launch, a chemical formula or the names of the countries in which your patents are registered. In short, this kind of intangible proprietary information can amount to nothing less than your company's competitive future.

More and more, protecting such assets falls within the job description of the CSO. However, sometimes intellectual property ranks lower on a CSO's priority list than other security concerns, not because it is any less important but because it's just so hard to wrap your brain around. Intellectual property also varies from company to company and industry to industry. A CSO in the entertainment industry, for example, is not necessarily going to look at IP loss and theft in the same way as a CSO at a chemical company—so CSOs will approach protection of their companies' assets differently.

The upside is that IP loss, and how it happens, is predictable. Which means you can act preemptively. But IP protection requires patience and tenacity. Like everything else in life, it's not easy.

Understand What to Protect

Think of intellectual property as the lifeblood of an organization. "If a company loses its assets, it could die," says James Chandler, president of the National Intellectual Property Law Institute. Intellectual property comprises the principal assets by which a company is able to create its products or services. If those assets are lost or stolen, the company could lose its foothold in the marketplace. In fact, intellectual property theft costs U.S. companies about $300 billion per year, according to Richard Isaacs, senior vice president at The Lubrinco Group, a risk management company.

The best way CSOs can protect proprietary information is by educating themselves and their employees about what their organizations hold valuable. If all employees understand what needs to be protected, they can better understand howand from whomto protect it. To do that, CSOs must communicate on an ongoing basis with the executives who oversee intellectual capital. Meet with the CEO, COO and representatives from HR, marketing, sales, legal services, production and R&D at least once a quarter, if not more often, says John Pontrelli, director of security at W.L. Gore & Associates. "You must work in concert as a group to adequately protect IP," he says, emphasizing that such communication is an ongoing process, not a onetime event.

RESOURCE CENTER
Loading...
VIRTUAL CONFERENCE
Data Center Directions Virtual Conference

Data Center VCAttend this free, 100% online event exploring tools and techniques for making your data center deliver for today and tomorrow.

» Learn more and register here

WEBCAST
The Surest Path to Effective and Efficient Compliance

VeriSignIn this webcast, we explore why and how — with best practices, practical tips and solutions that work — to ease your compliance challenge.

» View the webcast

Featured Sponsors
Sponsored Links

Think your data is safe? Think again. It's time to Outthink the Threat. Get eBook now

Learn how the new Quad-Core AMD Opteron™ processor improves performance

Diebold: Frost & Sullivan Global Physical Security Systems Integrator of the Year

Revolutionizing Endpoint Security with a Single Agent

Envision Identity-Based Access Control for the Datacenter

E-LOAN Maintains Reputation as a Privacy Leader with Symantec

Data Loss Prevention: Keeping Sensitive Data Out of the Wrong Hands

Prudential Financial Protects its Brand with Symantec

Envision Identity-Based Access Control for the Datacenter

Digital Identity Protection and Data Security Get Personal

Welcome to the age of Service-Oriented Security (SOS)

Enabling Compliance with Converged Mainframe Security and Storage

The Case for Business Software Assurance ~ Securing Your Applications

Forrester Total Economic Impact (TEI) report: Save Millions in Fraud Losses.

IS/IT Project Mgt. Credentials From Villanova - 100% Online

Rolling the dice with your security? Take the Self-Assessment Test now

Configuration Assessment: Choosing the Right Solution

Data Protection: Challenges for the Traveling User

Key strategies for C-level executives and security staff

7 Requirements of Data Loss Prevention

Information Security: Data Drains and How to Prevent Loss

How Are Open Source Development Communities Embracing Security Best Practices?

IDC Defines an Identity and Access Management Submarket

Using Likewise to Comply with PCI Data Security Standard

IDC Defines an Identity and Access Management Submarket for Managing Privileged User Accounts and Meeting GRC Requirements

Everything Today's CISO Needs to Know About Using SSO to Succeed in the Web 2.0 Era

Solving Online Credit Fraud Using Device Reputation