Security's Everyman

Security's Everyman

Monday, February 19, 2007

Glad it's not me

A buddy called me the other day to share a story. A couple of consultants came to the office to help set up a new application that was required for compliance. The CIO told him that they were to have full network access. All of his concerns went unheeded. Then to top it off he was told to give them a temporary local admin account to the web and SQL server. By this time his head is ready to explode.

The real kicker came when a network tech went to connect them to the network. He asked if they needed to be added to the domain!! My friend about fell out of his chair. It's hard for him to work in an environment that is so security ignorant about such basic things. Needless to say he is thinking hard about a new job.

Creative Commons License
This work is licensed under a Creative Commons Attribution-NC-SA 3.0.