Alarmed

The Real Barrier to Security: We're All Too Lazy

By Scott Berinato

December 17, 2007CSO — I like to use the Alarmed column for broad contemplation at the start of each new year; it just seems like a good time to reflect on ideas like the erosion of privacy, security types doing Good in post-tsunami Indonesia, or the relative merits of cash. This year I've been ruminating on a major barrier to improving information security: You're lazy.

OK, I'm lazy, too. But you're still lazy, and here's a test to prove it: Imagine someone offered you a free 60-inch plasma TV and free cable for life, provided you never again used a remote control. It's, what, 10 steps across the room, in exchange for high-def heaven. You taking that deal? Or say a car dealer knocked $2,000 off the price of your new wheels, but only if you gave up your power windows and locks. You going to walk around your car to unlock your doors with a key, or lean way back across the back seat to crank your down your screaming kid's window? Would you buy that car?

Or, what if your bank said it could drastically decrease your chances of suffering fraud and identity theft, for free; all you'd have to do is agree to never bank or shop online again. Would you do it?

Of course you wouldn't. Neither would I. You're lazy, and so am I. Or put another way, we're addicted to convenience. Product developers and marketers are pushing it on us like never before because they know that we can't resist it. We crave it. We make our buying decisions based on it. Easy is our heroin.

Have to wring out a mop? Nah, here's a disposable pad. Have to put the kid down to slide the minivan door open? Don't bother, we'll give it an remote activated electric motor. One of my favorite examples of our laziness is a phenomenon that parents everywhere know. It's called Gogurt. For the non-parents, this is yogurt in a plastic tube. Just rip open (along a pre-torn notchno need for scissors!) and squeeze down the gullet.

Hey, look, getting out a spoon and peeling back the foil top can be a real pain, you know?

But so what, right? As Bertrand Russell writes in "In Praise of Idleness" (which does not celebrate sloth), we can assume that "labor is, on the whole, disagreeable." So if Gogurt saves time and makes a parent's life a little more agreeable, how is that bad?

RESOURCE CENTER
Loading...
VIRTUAL CONFERENCE
Data Center Directions Virtual Conference

Data Center VCAttend this free, 100% online event exploring tools and techniques for making your data center deliver for today and tomorrow.

» Learn more and register here

WEBCAST
The Surest Path to Effective and Efficient Compliance

VeriSignIn this webcast, we explore why and how — with best practices, practical tips and solutions that work — to ease your compliance challenge.

» View the webcast

Featured Sponsors
Sponsored Links

Think your data is safe? Think again. It's time to Outthink the Threat. Get eBook now

Ponemon Study: How Much Does a Data Breach "Cost"?

Data Protection: Challenges for the Traveling User

Envision Identity-Based Access Control for the Datacenter

IT Service Management: Metrics That Matter

Configuration Audit and Control for Virtualized Environments

The PCI Data Security Standard

Configuration Audit and Control for Virtualized Environments

E-LOAN Maintains Reputation as a Privacy Leader with Symantec

Data Loss Prevention: Keeping Sensitive Data Out of the Wrong Hands

Prudential Financial Protects its Brand with Symantec

Envision Identity-Based Access Control for the Datacenter

Using Likewise to Comply with PCI Data Security Standard

Solving Online Credit Fraud Using Device Reputation

Take our CSO role survey and receive a copy of the results

IDC Defines an Identity and Access Management Submarket

IDC Defines an Identity and Access Management Submarket for Managing Privileged User Accounts and Meeting GRC Requirements

Everything Today's CISO Needs to Know About Using SSO to Succeed in the Web 2.0 Era

Learn how the new Quad-Core AMD Opteron™ processor improves performance

Revolutionizing Endpoint Security with a Single Agent

Prepare for (ISC)2® Certification With Villanova - Online

Key strategies for C-level executives and security staff

Configuration Assessment: Choosing the Right Solution

ITCi White Paper: Challenges and Opportunities of PCI

Effective Security with a Continuous Approach to ISO 27001 Compliance

Rolling the dice with your security? Take the Self-Assessment Test now

7 Requirements of Data Loss Prevention

Information Security: Data Drains and How to Prevent Loss

How Are Open Source Development Communities Embracing Security Best Practices?

Digital Identity Protection and Data Security Get Personal

The Case for Business Software Assurance ~ Securing Your Applications

Forrester Total Economic Impact (TEI) report: Save Millions in Fraud Losses.

Diebold: Frost & Sullivan Global Physical Security Systems Integrator of the Year

Welcome to the age of Service-Oriented Security (SOS)

Enabling Compliance with Converged Mainframe Security and Storage