ABSTRACT

A constant barrage of information about hackers bombards companies. There are hundreds if not thousands of books about computer security, network security, and operating system security. There are a number of security products on the market — some keep people out, some keep people in, some track people down. All of the Big Five accounting firms and many small, boutique firms are offering security consulting services. It is fair to say that computer security is a hot topic in society. As an information security consultant for one of the Big Five accounting firms, the author has participated in many penetration projects. Although every client is different, certain findings are uncovered in nearly all dial-in reviews. If an organization would take some time to fix the most common mistakes, it would go a long way toward preventing hackers. Here are the most common security risks that are found during a dial-in review.