Wednesday, 14 July 2010

People ignore policy

Give people an inch, and they take a mile. Having a written IT policy and educating users are important steps in ensuring appropriate use of IT systems. But at the end of the day, controls need to be implemented to guarantee compliance. Kevin Beaver has posted a good example of the reactive nature, and unfortunate consequences, to what he describes as ‘disconnected’ policies on his securityonwheels blog.

The reactive nature of policies that people ignore

