Michael Dahn has an interesting post on PCI and the lack of education.
One of the questions he poses is:
"Are we so willing to sell security that we ignore the care involved in properly educating someone how to use it?"
I have been asking the same question too, and my answer is "Yes, it certainly seems that way".
I think the reason is twofold - lack of education and understanding among the clients, and the fact that security companies are companies - they are out to make a profit.
There is a need for proper training. No doubt. But on the other hand, most business' is not about security - they just require a minimum level of security.



Recent comments
14 weeks 5 days ago
14 weeks 6 days ago
14 weeks 6 days ago
15 weeks 4 hours ago
15 weeks 14 hours ago
15 weeks 1 day ago
18 weeks 2 days ago
19 weeks 4 days ago
21 weeks 6 days ago
22 weeks 1 day ago