- BlackBerry Storm vs. the iPhone
- 2008 IT industry graveyard
- Top 10 worst uses for Windows
- Economic crisis means double duty for IT pros
- BlackBerry Storm, RIM's first touchscreen device, rolls in
Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:Application Performance Solutions | App Performance | Networking Solution | SafeGuard Enterprise Solution Center | SOA | Test your Web Filter | Value of WDS
U.S. government agencies are scrambling to plug one of their biggest security holes: sensitive information -- names, addresses and Social Security numbers, for example -- stored on laptops, handhelds and thumb drives.
Laptop Losers Hall of Shame: The 10 worst security breaches of all time from unencrypted data
In the last year, agencies have purchased 800,000 licenses for encryption software through the federal Data at Rest (DAR) Encryption program, which is run jointly by the General Services Administration and the U.S. Department of Defense.
"Sales have been very brisk," says Fred Schobert, CTO for integrated technology services at the General Services Administration’s Federal Acquisition Service. "We've been somewhat overwhelmed."
The government’s fast adoption rate of encryption software comes after numerous headline-grabbing security breaches. Laptop encryption has also been on the rise among corporations, including the likes of EMC and IBM.
It’s been two years since teens stole a laptop from the home of a U.S. Department of Veterans’ Affairs employee’s home, putting at risk for identity theft a database of 26.5 million names and Social Security numbers for 26.5 million veterans and military personnel.
But this year alone, laptops with personally identifiable information have been stolen from Bolling Air Force Base, a Marine Corps base in Okinawa, Japan and the National Institutes of Health in Bethesda, Md. In all of these cases, data that wasn’t encrypted on these laptops could have been used by thieves for identity theft, according to a list of known security breaches compiled by the Privacy Rights Web site.
While sales on the DAR Encryption program are stronger than anticipated, federal officials admit they haven’t secured all of their laptops, handhelds and removable drives yet.
``It was originally thought that there would be about 1 million laptops in DoD and one million in civilian agencies. We roughly came up with the number of 2 million laptops. However that number is informal. It’s constantly being expanded and contracted,’’ says David Hollis, program manager for the Defense Department’s Data at Rest Tiger Team.
``We’re not worrying about how many laptops and PDAs there are in the government. We’re trying to provide an opportunity for federal, state and local governments to secure what’s out there,’’ Hollis said.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comments (7)
security or lack therofBy Anonymous on October 11, 2008, 4:45 pmthe final results speak for themselves.
Reply | Read entire comment
alludaBy Anonymous on June 12, 2008, 10:22 amhola... ...señor(a) mes un agrado comunicalme con uste medirijo auste por quese que puede alludalme asel visible mi sueño per mitiendome uste llegal donde quiero...
Reply | Read entire comment
Too many initiativesBy Anonymous on May 27, 2008, 9:24 amI work for USDA. Encryption is mostly a waste of time and money. There is another initiative, the one my Agency follows, to have all PII info removed from machines....
Reply | Read entire comment
'security'By Anonymous on May 25, 2008, 12:03 pmNow that the price of voting has fallen... used to be worth somein BUT everyone is selling multiple votes now... Profit on access to 'secure' info now dropping...
Reply | Read entire comment
Laptop EncryptionBy Anonymous on May 23, 2008, 10:20 pmWell, it's good that the feds are encrypting their laptops. But, how about an enforceable policy that states that Personal Identifiable Information is NOT permitted...
Reply | Read entire comment
View all comments