[nsp-sec] what to do when a muni doesn't take a potential breach seriously

Eli Dart dart at es.net
Wed Aug 3 11:50:26 EDT 2011



On 8/2/11 6:42 PM, Chris Morrow wrote:
> ----------- nsp-security Confidential --------
>
>
>
> On 08/02/11 19:09, John Brown wrote:
>> ----------- nsp-security Confidential --------
>>
>> Any thoughts on how one should handle when a Muni's purchasing
>> department doesn't take a potential security / data breach
>> serious???
>>
>> Who would be best to contact ??
>
> press?
> the city CIO/CSO? The vendors/respondents themselves?

One would expect their legal folks to have some notion of risk, 
especially since a lot of the risk has to do with contracting....

		--eli


-- 
Eli Dart                                            NOC: (510) 486-7600
ESnet Network Engineering Group (AS293)                  (800) 333-7638
Lawrence Berkeley National Laboratory
PGP Key fingerprint = C970 F8D3 CFDD 8FFF 5486 343A 2D31 4478 5F82 B2B3



More information about the nsp-security mailing list