Skip to main navigation

Information security in a borderless world: time for a rethink - Ernst & Young - Global

Information security in a borderless world: time for a rethink

Information security framework

Advancing technology has created access to information that is far too big for barricades.

Summary: Traditional security models focus on keeping external attackers out. But there are just as many threats on the inside.

Mobile technology, cloud computing, social media, employee sabotage — these are only a few of the internal threats organizations face. Externally, it’s not just about the lone hacker who strikes for kicks.

Nearly two thirds of the respondents in our Global Information Security Survey (60%) believe that their risk has increased. Only 3% believe their risk is decreasing.

It’s time to rethink information security programs and the strategies organizations should use to keep their most valuable assets safe.

Information security should be strategically aligned with the broader business agenda and based on an organization’s risk tolerance.

What constitutes an acceptable level of information security risk in an environment when intellectual property, personal customer information and the brand are at stake? It’s a tough decision, but one that should be made to form the foundation of a transformational information security program.

Advancing technology has created access to information that is far too big for barricades. Instead, companies need to learn how to embrace change securely.

Our approach starts with trust

Our integrated security approach can help your organization build a program that enhances trust with your customers, vendors, business partners and employees — in a way that is cost-effective and sustainable.

It’s time to shift perspective

Information security is not a “check the box” compliance exercise. No one solution can inoculate a network from attack, and protecting information is not solely IT’s responsibility.

Information security framework

Instead, the new integrated security approachis predictive and enterprise-wide. It proactively protects whileanticipating the worst. It embraces rather than bans. It focuses ontrust, not paranoia.

By rethinking your information security strategy and using our integrated security approach, your organization can manage the right risks and drive value.


Next »

Back to top