[Techtalk] the cost of security holes debate

Carla Schroder carla at bratgrrl.com
Mon Jul 22 21:38:41 EST 2002


On Monday 22 July 2002 09:46 pm, Hamster wrote:

>
> The sales pitch went along these lines:
> Q. How much is your car/house worth?
> Q. How much insurance do you pay on that car/house in case it gets stolen
> or damaged or destroyed.
>
> ok (work out as percentage)
>
> Q. How much is your data worth to you in a dollar value.
>
> Then the salesguy would use the percentage calcuated after the first two
> questions, to give some sort of perspective as to how much people are
> prepared to pay to safeguard other things, yet would baulk at a one off
> payment to purchase a firewall. In just about every case I think, the cost
> of the firewall was much less than the equivalent insurance figure.
>
> Hamster

That's a good approach. 

I think what will really get their attention is when people start suing for 
collateral damages- when an IIS server, for example, spreads Nimda far and 
wide, and everyone downstream sues for damages. 

Carla



More information about the Techtalk mailing list