What is interesting is that today not only is security vital, but it is financially critical for an infrastructure to commit that in their system and budget. But what is interesting to note is that in many aspect this is not a problem for majority of the companies; but it is a problem for many individuals i.e. homemakers, students, small business owners, etc. Today the level of security measure is still lower than one might expect especially when malicious programming is changing daily. The current problem for me is that the deceive action one takes on their computer often is dilution of what can happen if common sense are not used. In many of my clients on computer many are provided less than informative data that often is lacking substance, but has more articulated rumors.
As we continue to convey security policies for companies, I do feel that we need to also look at personal policies in homes and small business due to the lack or no present security available. In many cases I have worked on I have notice security protocols on systems shut down, internet security suite not updated or not paid, and finally utilization of free tools that has embedded malicious programming present. To me when I talk to clients as much as any major company my aspect of security also included security policies for home, personal, and small business. I have heard people stating to me purchase an Apple Mac because it has or less virus and spyware; what needs to be stated is that malicious programming does including phishing, keyloggers, spiders, botnets and etc. for many of my clients who has these computers and who have certain problems many are astonished the level of complex and simplified possibilities that exist. I do feel people are more able to understand the problem if a policy built on common sense and realistic security is present to help the common man in their travels in the net.
In the end I do feel a certain level of IT security policy should be provided or shown to personal computer users because to traverse the internet is not just watching out for phishing to spyware, but to learn the pitfalls of action can become a problem or worst.