Software Uncontrol
When the employees of an organization can download and install software
uncontrollably, it is clear that there is no proper management of software
assets and security risks are present. For example, incur audits.
An assumption that is possible occur is as follows: There is a risk to
the organization if the license terms for external provisioning software are
not observed correctly. This exposure may arise from direct application
agencies (eg, police or customs), industry associations (eg, Business Software
Alliance (BSA) or the Federation Against Software Theft (FAST)) or It can be
initiated by dissatisfied employees' whistleblowers (potentially for a reward
of around 10K); by the supplier's knowledge (for example, the dealer who can
not get a contract knowing the competitor's prices does not can include
licenses), according to the software manufacturer analyzes the purchase of
customers, or "accident" (for example, a police raid through an
entire construction company that require to demonstrate their licenses) .The
characteristics of the assets of externally acquired software underlie these
large exposures.In summary, the characteristics of commercial software assets
underlie the following ex Main positions: - Software is resident / installed
without licenses being purchased - Loss of proof of licenses that have been
acquired, including licenses of underlying updates - Terms and Conditions that
may open to confussions, complex gaps - incorrect dependence on resellers.
■ Damaged reputation: the reputation of an organization can be damaged by
the publicity about results if legal problems are made public. Likewise, the
reputation of an IT department can be damaged within the organization and
within the IT community if it experiences major unexpected problems related to
the control of software assets, for example, licenses, roll-outs, or support.
■ Unexpected financial impact and workload:
Problems related to software assets, for example, licensing, can have a
significant unexpected financial impact in areas such as cash flow, which may
impact on another planned activity . Similarly, special efforts to address
licensing issues in response to external events may require unforeseen large
amounts of time from management and operations personnel, regardless of whether
there is any final direct financial impact.
■ Security breaches, including unauthorized disclosure of confidential
information: Security may be breached, and confidential information may be
disclosed due to failure to implement adequate measures for the distribution of
security patches.
Comentarios
Publicar un comentario