Virtual Nick Wooler

What is the Fedlet? What is the truth?

Wednesday Mar 26, 2008

What is the Fedlet?

[0] Comments
Like this post? del.icio.us | furl | slashdot | technorati | digg

Britney Spears medical records breached which results in UCLA Medical Center firing 13 employees

Wednesday Mar 19, 2008

Jim Carr from Security Magazine published an interesting article this week that exposes the long road that we still have to travel in the industry managing patient information within hospitals/organizations/enterprises.  You can read the whole story here.  The article doesn't go into tremendous detail about how the employees got access to the information.  However, it does illustrate the challenge Health Care providers have in balancing access to patient information to people "who need to know" while maintaining patient information privacy.  This is further exacerbated by the changing roles and responsibilities in organizations and applications.  Ben Worthen, from the Wall Street Journal created a blog post here that also reminds us of the fact that a number of security breaches occur from trusted employees.

"But lest you think the threat is more imagined than real, consider that among companies that experienced a data breach in 2006, 23% said the culprit was an insider, according to a survey by the Computing Technology Industry Alliance. "

Additionally, towards the end of the article an argument is made to sanction Doctor's who may have checked Britney's information without having a direct need to see the data. 

[0] Comments
Like this post? del.icio.us | furl | slashdot | technorati | digg

From the Trenches at Sun Identity

Tuesday Mar 18, 2008

Jamie Nelson, the director of engineering for Federation Access Manager, provides some very valuable insights into building identity security into your applications from the ground-up.  Jamie also shares his insights into the problems that customers face in federating with partners and suppliers.  

Check out the full article here 

[0] Comments
Like this post? del.icio.us | furl | slashdot | technorati | digg

Kim Cameron, the Economist and Identity

Wednesday Mar 05, 2008

Kim Cameron provided a link recently to a great article by the Economist.  The Economist in February reviewed how government;s were creating portals and using identity based software to aggregate services for citizens.  You can get the article here.   This is a trend that is happening not only in Europe (here is a great case study on Norway.no which used Federated Access Management to deliver SSO across all the government service providers while giving citizens choice) but also in the United States  as governments try to provide more efficient services to an increasing online electorate.  This has some great benefits, here are a couple to name a few: better information for health care providers, reduced cost and more eco-friendly government by reducing paper distributed information for citizens, reduce cost by getting better identity information on citizens (e.g. wrong address information results in government communication and postage costs to deliver mail to wrong location).  However, despite many other benefits the fact that the government is holding more and more information about citizens causes some citizens to grow concerned.  This article provides some insights into those issues but also on how much more work still needs to be done to leverage and protect identity for customers and governments.

 Nice work by the Economist.  Read the article here


 

[0] Comments
Like this post? del.icio.us | furl | slashdot | technorati | digg