passwords and security

33
Get work done even under lock and key. Passwords and Security Vishnu Gopal, mobME

Upload: vishnu

Post on 06-May-2015

1.165 views

Category:

Technology


2 download

DESCRIPTION

mobME Passwords and Security

TRANSCRIPT

Page 1: Passwords And Security

Get work done even under lock and key.

Passwords and Security Vishnu Gopal, mobME

Page 2: Passwords And Security

RESTRICT ACCESS TO IMPORTANT STUFF

Page 3: Passwords And Security

RESTRICT ACCESSDo not obstruct work.

Page 4: Passwords And Security

WHAT. HOW. PROBLEMS. BENEFITS.

Page 5: Passwords And Security

secure documents:email, keys, content

Page 6: Passwords And Security

technical: chat logs, logins, code, server access, billing info

Page 7: Passwords And Security

example:securing email.

Page 8: Passwords And Security

STOP forwarding @mobme mails to personal accounts.

Page 9: Passwords And Security

choose STRONG passwords not used

elsewhere.

Page 10: Passwords And Security

do not reveal your password.

Page 11: Passwords And Security

change the password often, say once a month.

Page 12: Passwords And Security

Problem 1: I can’t remember my ruddy password.

Page 13: Passwords And Security

Problem 2: I can’t access a computer and something

needs to be done now!

Page 14: Passwords And Security

Problem 3: I can’t be bothered to change my password!

Page 15: Passwords And Security

Solution 1: There’ll be a central person or database to ask.

Page 16: Passwords And Security

Solution 2: Give up your key. Change it afterwards.

Account for this.

Page 17: Passwords And Security

Solution 3: Somebody else will do it for you.

Page 18: Passwords And Security

Benefit 1: Track and account activity.

Page 19: Passwords And Security

Benefit 2: Defined Responsibility

Page 20: Passwords And Security

Benefit 3: Prevent accidents.

Page 21: Passwords And Security

Benefit 4: Prevent social engineering hacks

Page 22: Passwords And Security

This is hard to do well and

get the right balance.

Page 23: Passwords And Security

But the problems are not technical.

Page 24: Passwords And Security

Let’s analyze the FA server wipeout.

Page 25: Passwords And Security

No defined responsibility.

Page 26: Passwords And Security

Too much access.

Page 27: Passwords And Security

Not enough documentation & help.

Page 28: Passwords And Security

How do you prevent this?

Page 29: Passwords And Security

fundamental tradeoff here is: secure systems

are harder to access

Page 30: Passwords And Security

but secure systems prevent accidents and

hacks...

Page 31: Passwords And Security

and just for that reason, they decrease overall

turnaround time.

Page 32: Passwords And Security

what can you do?

Page 33: Passwords And Security

FinisQuestions?

vish.in