[124077] in North American Network Operators' Group
Re: NSP-SEC
daemon@ATHENA.MIT.EDU (Andrew D Kirch)
Mon Mar 22 22:46:36 2010
Date: Mon, 22 Mar 2010 22:46:04 -0400
From: Andrew D Kirch <trelane@trelane.net>
To: Guillaume FORTAINE <gfortaine@live.com>
In-Reply-To: <BLU0-SMTP8779E253AE373C07D69CC0C8270@phx.gbl>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Guillaume FORTAINE wrote:
>
> This is a very pertinent question. My reply would be :
>
> How much money would you evaluate a security incident on your Cisco
> device ?
>
> Because, the fundamental questions are :
>
> a) How much value does your network bring to your business ?
>
> b) How much money are you ready to spend to ensure its security ?
>
> Conclusion : if you can't reply to these fundamental questions, hire a
> CISO and build a CSIRT.
>
> Best Regards,
>
> Guillaume FORTAINE
Folks, this is why you shouldn't let your kids do crystal meth, just in
case you were wondering.
Andrew