Warning: The magic method WPML_Absolute_Url_Persisted::__wakeup() must have public visibility in /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php on line 30
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
Warning: Cannot modify header information - headers already sent by (output started at /usr/home/corsec/public_html/corsec.com/wp-content/plugins/sitepress-multilingual-cms/classes/url-handling/resolver/wpml-absolute-url-persisted.php:30) in /usr/home/corsec/public_html/corsec.com/wp-includes/rest-api/class-wp-rest-server.php on line 1893
{"id":8938,"date":"2016-11-15T09:54:27","date_gmt":"2016-11-15T14:54:27","guid":{"rendered":"https:\/\/www.corsec.com\/?p=8938"},"modified":"2016-11-30T15:30:21","modified_gmt":"2016-11-30T20:30:21","slug":"secured-partners","status":"publish","type":"post","link":"https:\/\/www.corsec.com\/secured-partners\/","title":{"rendered":"Are Your Partners Putting Your IP at Risk?"},"content":{"rendered":"
What if your intellectual property was at risk and you weren’t even aware? In today\u2019s highly competitive and often vulnerable world, the companies we choose to partner with play a large role in the security of our products. We take precautionary measures to sign the proper documentation like\u00a0NDAs and Teaming Agreements, but at the end of the day, we are trusting someone else with our source code, our innovative technology, and our company’s livelihood.<\/p>\n
Corporate exposure occurs when partners don\u2019t properly protect assets they have been trusted to keep safe. Would you pursue a\u00a0partnership with a company without knowing their policies and practices on protecting your IP?<\/p>\n
Vet the firms that hold your company\u2019s assets in their hands, learn from the experience a colleague of ours\u00a0recently detailed:<\/p>\n
—<\/p>\n
\u201cAll it took to jeopardize my entire company\u2014all my hard work and investments- was a selfie. A selfie!\u201d<\/p>\n
When an old colleague of mine said that, I was probably as confused as you are right now. He wasn\u2019t much for social media, aside from an obligatory LinkedIn account. Honestly, as he sat at the helm of a multi-million dollar entity, I couldn\u2019t see him taking a selfie.<\/p>\n
As it turns out, it wasn\u2019t his selfie that left his company in ruins, it was one captured by an \u201cemployee\u201d for a vendor he had recently hired to do some security testing on a new and unreleased product. Under the stress of budget limitations and time constraints, his product engineer contracted with a poorly vetted vendor that didn\u2019t have a proper facility or office space- he worked out of his basement.<\/p>\n
As one could imagine, the security consisted of little more than a standard locking door, and background checks for those coming and going were non-existent. In retrospect, his legal team should have been more involved, but \u201cwho would have thought that a security \u2018firm\u2019 could operate like that?\u201d<\/p>\n
All it took was an innocent, \u201cFriday is finally here!\u201d photo that was shared on Facebook, Twitter, and of course Instagram, and BOOM. The supply chain was breached, and his company\u2019s IP was globally available\u00a0in a poorly captured photo.<\/p>\n
The IP, along with any potential revenue amassed from their product, was compromised, and here he was left grappling with his board of directors, who now wanted him to fire one of his many respected employees, and ultimately left to pick up the pieces created by the vendor\u2019s poor security. Poor security that, if he or his legal teams took the time to educate those making the decision, could have been completely avoided.<\/p>\n
As it turns out, he came to ask me if our company provided any unlimited liability in the case of a security breach.<\/p>\n
The truth is, I knew we could offer him completely vetted employees and unparalleled IP security. Knowing how vulnerable the supply chain is, we take every precaution to create and maintain a supply chain security policy. We limit portal access, have dedicated laboratory staff, and employ a FIPS 140-2 and CC evaluated Unified Threat management system including VPN, firewall, and intrusion prevention.<\/p>\n
No one is gaining access to our client\u2019s IP.<\/p>\n
Unfortunately, it may be too late to really salvage his product. He may never know the full extent of the breach or how it could aid his competitors or jeopardized his customer base. The only thing he can do is work with his internal decision makers to create, disseminate, and enforce policy and procedures to ensure that all future vendors are vetted.<\/p>\n