Is it lack of understanding? Or a form of denial?
I have several clients that I have dealt with over the past few years that run various types of businesses, from Credit Collection to small completely web-based store fronts. And a lot of them don’t seem to get what the big deal about Security is. They search the web or talk to their peers and hear or read about the headaches that Security implementations can cause, then decide that, “No they don’t really need that.” And of course when I try to talk to any of my clients about Security, I make sure that I’m trying to talk to them in a language they can understand, not too technical, but also not talking down to them either. Sometimes I get through, and sometimes I don’t. But I think some of the reason there is so much confusion out there is it has not been explained in a plain enough language for some people to understand why they need it and what they can do to get it. Some seem to think it will cost them a fortune, or be a huge hassle or headache. And some people wait until after something happens to go “Oh! I guess we need to have some kind of security thing now.” I’ll do my best to take a stab at explaining why you need to have security, with examples over the course of a few posts and see if it will be of help to anyone out there.
*** This is a Security Bloggers Network syndicated blog from Technomagic authored by David. Read the original post at: https://varne.wordpress.com/2010/04/29/is-it-lack-of-understanding-or-a-form-of-denial/

