[nsp-sec] what to do when a muni doesn't take a potential breach seriously
Eli Dart
dart at es.net
Wed Aug 3 11:50:26 EDT 2011
On 8/2/11 6:42 PM, Chris Morrow wrote:
> ----------- nsp-security Confidential --------
>
>
>
> On 08/02/11 19:09, John Brown wrote:
>> ----------- nsp-security Confidential --------
>>
>> Any thoughts on how one should handle when a Muni's purchasing
>> department doesn't take a potential security / data breach
>> serious???
>>
>> Who would be best to contact ??
>
> press?
> the city CIO/CSO? The vendors/respondents themselves?
One would expect their legal folks to have some notion of risk,
especially since a lot of the risk has to do with contracting....
--eli
--
Eli Dart NOC: (510) 486-7600
ESnet Network Engineering Group (AS293) (800) 333-7638
Lawrence Berkeley National Laboratory
PGP Key fingerprint = C970 F8D3 CFDD 8FFF 5486 343A 2D31 4478 5F82 B2B3
More information about the nsp-security
mailing list