Two times the malicious compliance stops all work


In my last position I was an IT-contractor for the government (gov’t fron now on). One of our roles was administration of the security suite. One of the ways this worked was through policies. For example we would get a policy to block all Adobe flash in our enterprise; update the security suite with this policy and now all flash-based software is disabled. Our gov’t lead would direct what policies to push to all workstations, and we would have to follow without question. Most of the time the policies would come from recent security threats, updates from the manufacturer, or seemingly just “intuition”. Again since we were all contractors, we would have to follow the instructions from the gov’t no matter how absurd it may seem. In two particular instances this caused a major stoppage of work for all our our in-house and remote staff.

Keep reading

via @notiun

Related post



  • Image
  • Image
  • Image
  • Image
  • Image
    Blogger Comment
    Facebook Comment

0 comentários:

Postar um comentário