Looking Out for Insider Threats Massachusetts

If the topic of protecting against insider threats makes many a government IT worker shudder, it's for good reason. Besides the millions of people employed by government agencies, the number of federal civil servants is on the rise, as is the number of people working for government-funded contractors and organizations that receive government grants. Add to that the number of postal workers and military personnel, and the "true size" of the federal government is around 14.6 million employees, according to Paul C. Light, government professor at New York University.

Local Companies

Consultants - Information Security
(781)6411511
391 Totten Pond Road, Suite 101
Waltham, MA
Automation Concetps & Technologies, Inc.
508.285.5080
91 Main Street
Marlborough, MA
EMC Corporation
(508) 435-1000
176 South Street
Hopkinton, MA
Cisco
(978) 244-8000
1414 Massachusetts Avenue
Boxborough, MA
Town & Country Concierge
(508) 984-1055
New Bedford, MA
Hill Management
(781) 934-7855
459 Washington St
Duxbury, MA
The Lexington Group Environmental Management Consultants Inc
(781) 676-0092
110 Hartwell Ave
Lexington, MA
White Oak Associates Inc
(781) 639-0722
17 Essex St
Marblehead, MA
Wellesley Sq Associates Ltd
(781) 237-1010
28 Cavanaugh Rd
Wellesley Hills, MA
Statenet
(617) 742-5851
130 Bowdoin St
Boston, MA



Stacey McDaniel

If the topic of protecting against insider threats makes many a government IT worker shudder, it's for good reason. Besides the millions of people employed by government agencies, the number of federal civil servants is on the rise, as is the number of people working for government-funded contractors and organizations that receive government grants. Add to that the number of postal workers and military personnel, and the "true size" of the federal government is around 14.6 million employees, according to Paul C. Light, government professor at New York University.

That's a lot of insiders.

IT threats from employees or contractors are a real problem -- and one of the most difficult problems managers must face because of the trusted position that insiders have. Various research estimates that up to 80% of security threats come from someone inside the organization. All it takes is one person to cause irreparable damage to an agency's data, systems, operations and reputation. The federal government's dependence on interconnected networks and communications systems significantly increases the risk of harm that could result from malicious inside activity. Therefore, it's critical that government agencies educate their employees to watch out for tell-tale characteristics of an attacker, and to employ security solutions designed to detect and deter these threats.

Identifying behaviors
Being able to recognize certain behaviors or traits commonly exhibited by employees preparing for an IT attack can help thwart a potential problem. The findings of a survey conducted by the U.S. Secret Service in 2006 show that internal compromises of computers and networks aren't an impulsive undertaking -- most are planned in advance. This means that educated employees and alert managers can often spot signs of potential attackers before a problem escalates.

Here are some of the other findings from the Secret Service study:

  • 80% of insiders who launched attacks on their companies had exhibited negative behaviors before the incident.
  • 92% had experienced a negative work-related event, such as a demotion, transfer, warning, or termination.
  • At the time of the incident, 59% were former employees or contractors, while 41% were still on the company payroll.
  • Of the former employees, 48% had been fired, 38% had resigned, and 7% had been laid off.
  • 86% were employed in a technical position. Of those, 38% were system administrators.
  • 21% were programmers, 14% were engineers, and 14% were IT specialists.
  • 96% of the inside attackers were male.
  • Just under one-third of the insiders had an arrest history.
  • 57% of insiders were perceived by others to be disgruntled.
  • The majority of insiders compromised computer accounts, created unauthorized backdoor accounts, or used shared accounts in their attacks.
  • Remote access was used to carry out the majority of the attacks.
  • The most frequently reported motive was revenge.

In June 2007, the Office of the National Counterintelligence Executive their own set own set of guidelines, intended to help government employees know how to identify, and then report, behavior that is indicative of a potential insider threat.

Security precautions
While securing the IT perimeter from external threats is essential, knowing and controlling who does what inside the perimeter is equally important. This requires network access control as well as endpoint and database security solutions.

Network Access Control makes sure that each endpoint connected to the networks is compliant with the agency's security and access policies. This stops unauthorized endpoints from gaining access and also prevents compromises from remote employees.

Endpoint Protection proactively analyzes application behaviors and network communications to detect and block attacks. Should a disgruntled insider try to run exploits like rootkits or spyware on an internal endpoint, this activity will be detected before it happens. Protection features also block read/write/execute commands from removable drives and prevent unauthorized applications from running on protected systems.

Database Security detects malicious database activity from legitimate users and provides an audit trail for all database activity. The solution's intelligent profiling technology automatically learns "normal" database usage patterns and alerts administrators when suspicious activity occurs.

The government is brimming with employees and contractors who have been given some form of access to the networks and communications systems on which our government operates. At the same time, insider threats are becoming more common, and they can be especially difficult to detect and thwart. Government IT systems hold information crucial to our national security, and can't afford the risk of an internal compromise. However, knowing the warning signs to look for and combining that knowledge with internal IT security measures are the best ways to keep the government's networks secure and national security intact.

Stacey McDaniel has been writing about high-tech issues for more than six years.

Featured Local Company

Consultants - Information Security

(781)6411511
391 Totten Pond Road, Suite 101
Waltham, MA

Regional Articles
- Looking Out for Insider Threats Acton MA
- Looking Out for Insider Threats Agawam MA
- Looking Out for Insider Threats Allston MA
- Looking Out for Insider Threats Amesbury MA
- Looking Out for Insider Threats Amherst MA
- Looking Out for Insider Threats Andover MA
- Looking Out for Insider Threats Arlington MA
- Looking Out for Insider Threats Attleboro MA
- Looking Out for Insider Threats Beverly MA
- Looking Out for Insider Threats Billerica MA
- Looking Out for Insider Threats Boston MA
- Looking Out for Insider Threats Braintree MA
- Looking Out for Insider Threats Bridgewater MA
- Looking Out for Insider Threats Brighton MA
- Looking Out for Insider Threats Brockton MA
- Looking Out for Insider Threats Brookline MA
- Looking Out for Insider Threats Buzzards Bay MA
- Looking Out for Insider Threats Cambridge MA
- Looking Out for Insider Threats Charlestown MA
- Looking Out for Insider Threats Chelmsford MA
- Looking Out for Insider Threats Chelsea MA
- Looking Out for Insider Threats Chicopee MA
- Looking Out for Insider Threats Danvers MA
- Looking Out for Insider Threats Dedham MA
- Looking Out for Insider Threats Dracut MA
- Looking Out for Insider Threats East Falmouth MA
- Looking Out for Insider Threats East Weymouth MA
- Looking Out for Insider Threats Easthampton MA
- Looking Out for Insider Threats Everett MA
- Looking Out for Insider Threats Fairhaven MA
- Looking Out for Insider Threats Fall River MA
- Looking Out for Insider Threats Fitchburg MA
- Looking Out for Insider Threats Foxboro MA
- Looking Out for Insider Threats Framingham MA
- Looking Out for Insider Threats Franklin MA
- Looking Out for Insider Threats Gardner MA
- Looking Out for Insider Threats Gloucester MA
- Looking Out for Insider Threats Haverhill MA
- Looking Out for Insider Threats Hingham MA
- Looking Out for Insider Threats Holyoke MA
- Looking Out for Insider Threats Hyannis MA
- Looking Out for Insider Threats Hyde Park MA
- Looking Out for Insider Threats Jamaica Plain MA
- Looking Out for Insider Threats Lawrence MA
- Looking Out for Insider Threats Leominster MA
- Looking Out for Insider Threats Lexington MA
- Looking Out for Insider Threats Longmeadow MA
- Looking Out for Insider Threats Lowell MA
- Looking Out for Insider Threats Ludlow MA
- Looking Out for Insider Threats Lynn MA
- Looking Out for Insider Threats Malden MA
- Looking Out for Insider Threats Marblehead MA
- Looking Out for Insider Threats Marlborough MA
- Looking Out for Insider Threats Mattapan MA
- Looking Out for Insider Threats Medford MA
- Looking Out for Insider Threats Melrose MA
- Looking Out for Insider Threats Methuen MA
- Looking Out for Insider Threats Middleboro MA
- Looking Out for Insider Threats Milford MA
- Looking Out for Insider Threats Milton MA
- Looking Out for Insider Threats Natick MA
- Looking Out for Insider Threats Needham MA
- Looking Out for Insider Threats New Bedford MA
- Looking Out for Insider Threats Newburyport MA
- Looking Out for Insider Threats Newton Center MA
- Looking Out for Insider Threats North Adams MA
- Looking Out for Insider Threats North Andover MA
- Looking Out for Insider Threats North Attleboro MA
- Looking Out for Insider Threats North Dartmouth MA
- Looking Out for Insider Threats Northampton MA
- Looking Out for Insider Threats Norton MA
- Looking Out for Insider Threats Norwood MA
- Looking Out for Insider Threats Peabody MA
- Looking Out for Insider Threats Pittsfield MA
- Looking Out for Insider Threats Plymouth MA
- Looking Out for Insider Threats Quincy MA
- Looking Out for Insider Threats Randolph MA
- Looking Out for Insider Threats Revere MA
- Looking Out for Insider Threats Roslindale MA
- Looking Out for Insider Threats Salem MA
- Looking Out for Insider Threats Saugus MA
- Looking Out for Insider Threats Scituate MA
- Looking Out for Insider Threats Shrewsbury MA
- Looking Out for Insider Threats Somerville MA
- Looking Out for Insider Threats South Hadley MA
- Looking Out for Insider Threats South Weymouth MA
- Looking Out for Insider Threats Southbridge MA
- Looking Out for Insider Threats Springfield MA
- Looking Out for Insider Threats Stoneham MA
- Looking Out for Insider Threats Stoughton MA
- Looking Out for Insider Threats Swampscott MA
- Looking Out for Insider Threats Taunton MA
- Looking Out for Insider Threats Tewksbury MA
- Looking Out for Insider Threats Walpole MA
- Looking Out for Insider Threats Waltham MA
- Looking Out for Insider Threats Watertown MA
- Looking Out for Insider Threats West Roxbury MA
- Looking Out for Insider Threats West Springfield MA
- Looking Out for Insider Threats Westborough MA
- Looking Out for Insider Threats Westfield MA
- Looking Out for Insider Threats Westford MA
- Looking Out for Insider Threats Weymouth MA
- Looking Out for Insider Threats Winthrop MA
- Looking Out for Insider Threats Woburn MA
- Looking Out for Insider Threats Worcester MA

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Family Home Services Real Estate Resources
Business Services Fashion Industrial Goods & Services Retail & Consumer Services
Career Financial Services Insurance Software
Cars Food & Beverage Internet Technology
Computer Hardware Franchise Legal Telecommunications
Construction Health Miscellaneous Trade Shows
Education Holidays Nightlife Travel
Entertainment Home Appliances Online Database Weddings
Environmental Home Electronics Pets World History