<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Database Analyst Steals Credit Card Data</title>
	<atom:link href="http://www.pythian.com/news/3361/database-analyst-steals-credit-card-data/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.pythian.com/news/3361/database-analyst-steals-credit-card-data/</link>
	<description>News and views from Pythian DBAs</description>
	<lastBuildDate>Fri, 10 Feb 2012 13:01:25 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
	<item>
		<title>By: Gary Smith</title>
		<link>http://www.pythian.com/news/3361/database-analyst-steals-credit-card-data/#comment-366037</link>
		<dc:creator>Gary Smith</dc:creator>
		<pubDate>Sun, 12 Jul 2009 16:30:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.pythian.com/news/?p=3361#comment-366037</guid>
		<description>It&#039;s probably also worth paying consideration to physical security - it amazes me how little consideration is paid to the idea of someone driving into the side of the building and nicking a pile of servers. It does happen, and woe betide you if you don&#039;t have encryption on your disks. If you&#039;re in the field of having incredibly sensitive data, you need to look at every conceivable angle to protect the data.</description>
		<content:encoded><![CDATA[<p>It&#8217;s probably also worth paying consideration to physical security &#8211; it amazes me how little consideration is paid to the idea of someone driving into the side of the building and nicking a pile of servers. It does happen, and woe betide you if you don&#8217;t have encryption on your disks. If you&#8217;re in the field of having incredibly sensitive data, you need to look at every conceivable angle to protect the data.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Doug Burns</title>
		<link>http://www.pythian.com/news/3361/database-analyst-steals-credit-card-data/#comment-365889</link>
		<dc:creator>Doug Burns</dc:creator>
		<pubDate>Sat, 11 Jul 2009 08:18:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.pythian.com/news/?p=3361#comment-365889</guid>
		<description>&lt;i&gt;Another problem with implementing security for standard compliance, is that companies target passing the audit rather than trying to genuinely secure their data.&lt;/i&gt;

Tell me about it. It makes my blood boil sometimes to watch lip service being paid to security so that everyone can feel warm and fluffy when 20 minutes speaking to DBAs or other tech people would allow these &#039;auditors&#039; to see that everything is insecure.

Even with Database Vault, most sites still have multiple DBAs who have the access to just unlink it.</description>
		<content:encoded><![CDATA[<p><i>Another problem with implementing security for standard compliance, is that companies target passing the audit rather than trying to genuinely secure their data.</i></p>
<p>Tell me about it. It makes my blood boil sometimes to watch lip service being paid to security so that everyone can feel warm and fluffy when 20 minutes speaking to DBAs or other tech people would allow these &#8216;auditors&#8217; to see that everything is insecure.</p>
<p>Even with Database Vault, most sites still have multiple DBAs who have the access to just unlink it.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

