<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:dc="https://purl.org/dc/elements/1.1/"
     xmlns:dcterms="http://purl.org/dc/terms/"
     xmlns:media="http://search.yahoo.com/mrss/"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:cf="https://www.futureplc.com/rss/content-flags"
>
    <channel>
                    <atom:link href="https://www.itpro.com/feeds/tag/risk" rel="self" type="application/rss+xml" />
                            <title><![CDATA[ Latest from ITPro in Risk ]]></title>
                <link>https://www.itpro.com/tag/risk</link>
        <description><![CDATA[ All the latest risk content from the ITPro team ]]></description>
                                    <lastBuildDate>Fri, 04 Aug 2023 09:37:25 +0000</lastBuildDate>
                            <language>en</language>
                                <item>
                                                            <title><![CDATA[ Rushing digital transformation will create cyber security ‘bear traps’ – here’s how to avoid them ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business/digital-transformation/rushing-digital-transformation-will-create-cyber-security-bear-traps</link>
                                                                            <description>
                            <![CDATA[ Although digital transformation brings many benefits, rushing projects may result in unforeseen cyber security risks ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">2c2TdY4yyB6QKSLbCTCH9U</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Ev4zyd4xb3H2rgpuP6qthZ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 04 Aug 2023 09:37:25 +0000</pubDate>                                                                                                                                <updated>Fri, 04 Aug 2023 14:40:40 +0000</updated>
                                                                                                                                            <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Sandra Vogel ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Ev4zyd4xb3H2rgpuP6qthZ-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A bear trap on a circuit board]]></media:description>                                                            <media:text><![CDATA[A bear trap on a circuit board]]></media:text>
                                <media:title type="plain"><![CDATA[A bear trap on a circuit board]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Ev4zyd4xb3H2rgpuP6qthZ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Organizations undergo <a href="https://www.itpro.com/strategy/28047/what-is-digital-transformation"><u>digital transformation</u></a> for a variety of reasons, including maximizing insights derived from data, streamlining operations, and adjusting workflows for <a href="https://www.itpro.com/business-strategy/flexible-working/369741/pushing-hybrid-work-to-new-extremes"><u>hybrid work</u></a>.</p><div  class="fancy-box"><div class="fancy_box-title">READ MORE</div><div class="fancy_box_body"><figure class="van-image-figure "  ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="V2kbhwWzFo6UsAm7M94hJB" name="V2kbhwWzFo6UsAm7M94hJB.jpg" caption="" alt="Python source code" src="https://cdn.mos.cms.futurecdn.net/V2kbhwWzFo6UsAm7M94hJB.jpg" mos="" link="" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pinterest-pin-exclude"></p></div></div><figcaption itemprop="caption description" class=""><span class="credit" itemprop="copyrightHolder">(Image credit: n/a)</span></figcaption></figure><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/strategy/29899/three-reasons-why-digital-transformation-is-essential-for-business-growth">Why is digital transformation important for business growth?</a></p></div></div><p>There’s no doubting the benefits. But there are potential traps along the road that businesses must also avoid, not least in the form of <a href="https://www.itpro.com/security/28133/what-is-cyber-security"><u>cyber security risks</u></a>. </p><p>Typical risks may arise from failing to provide adequate resources to match a project’s ambition, lacking proficiency to handle a <a href="https://www.itpro.com/cloud/34476/what-is-multi-cloud"><u>multi-cloud</u></a> setup, and failing to align with security frameworks. These ‘bear traps’ can be more prevalent if digital transformation is rushed, and organizations speeding up their efforts must be double vigilant because, with haste, comes a lack of focus. </p><h2 id="prioritizing-security-not-project-outcomes">Prioritizing security, not project outcomes</h2><p>Security must be the primary concern for any organization undergoing digital transformation, says Rick Hemsley, UK&I government and public sector cyber security lead at EY. That’s the bottom line. Organizations need to “integrate security considerations into every aspect of the development of new systems, processes, and products,” and those that fail to do so “will only be able to take a reactive, whack-a-mole approach to cyber security, instead of adopting a proactive mindset”.</p><p>There’s more to avoiding traps than putting security at the heart of digital transformation, though. Organizations need to learn to think differently about security too, says Frank Kim, SANS Institute fellow, cloud curriculum lead, and CISO-in-residence at YL Ventures. “A key metric in the past would have been the mean time to failure, or for something bad to happen. </p><p>“But in the modern world, we look at the mean time to recover,” he tells ITPro. “We don’t think about the mean time to failure because we are expected to fail on a regular basis, so recovery is more important.” </p><p>This approach resonates with a new attitude towards risk, where risk can’t be eliminated entirely, but <a href="https://www.itpro.com/security/do-risk-awareness-and-risk-management-strategies-actually-make-a-difference">needs to be understood and managed effectively</a>. </p><h2 id="speeding-up-processes-heightens-risk-level">Speeding up processes heightens risk level</h2><p>Organizations that decide to speed up digital transformation efforts put themselves at greater risk of leaving cyber security gaps waiting to be exploited, says David Sarginson, head of software development at digital transformation consultancy Opencast. “More change means more risk,” Sarginson explains. “The more change you introduce at any time increases complexity, and therefore the chances of unanticipated consequences.”</p><div  class="fancy-box"><div class="fancy_box-title">RELATED RESOURCE</div><div class="fancy_box_body"><figure class="van-image-figure "  ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="Nsdypv2KttheZCbq8CgvXM" name="Achieving transformative business results with machine learning_listing.jpg" caption="" alt="Whitepaper image with title on blue background and bottom right images of the sky and skyscrapers looking from the ground up" src="https://cdn.mos.cms.futurecdn.net/Nsdypv2KttheZCbq8CgvXM.jpg" mos="" link="" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pinterest-pin-exclude"></p></div></div><figcaption itemprop="caption description" class=""><span class="credit" itemprop="copyrightHolder">(Image credit: AWS)</span></figcaption></figure><p class="fancy-box__body-text"><strong>Achieving transformative business results with machine learning</strong></p><p class="fancy-box__body-text"><em>Discover why hundreds of thousands of organisations use AWS ML to resolve challenges and create new opportunities within their organisations.</em></p><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/technology/machine-learning/369914/achieving-transformative-business-results-with-machine-learning">DOWNLOAD FOR FREE</a></p></div></div><p>Further complications arise from organizations having a multi-cloud setup, Kim adds, and staff needs to be familiar with the nuances of different cloud setups, he says. “Your security team must be knowledgeable in a multi-cloud environment in each of these areas including the pitfalls, the configurations, and the mistakes that could be made. Ideally, architect from the start what those best practices are into your infrastructure.” </p><p>When process speeds are accelerated, there’s less time to get to grips with the nuances, and more opportunity for gaps in security to manifest because security likely won’t be baked in at the outset. “[By] designing best practices directly into the infrastructure code and set-up, you’re providing a paved road for internal stakeholders that need to move to the cloud and adopt these processes,” Kim continues. “When you go off the paved road you know when to pay attention a little more.”</p><h2 id="instigating-the-right-culture">Instigating the right culture</h2><p>Effectively dealing with cyber security risks associated with digital transformation, whether it’s been sped up or it’s happening at a slower pace, requires a risk-based approach from the outset, says Hemsley. The <a href="https://www.itpro.com/business/careers-and-training/the-changing-role-of-the-cio"><u>CIO</u></a> and security teams should have the right level of knowledge and resources to “create a security framework which is defined by proactivity”, he says.</p><div  class="fancy-box"><div class="fancy_box-title">READ MORE</div><div class="fancy_box_body"><figure class="van-image-figure "  ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="NpTomCFE9jkNaLFGDcybYX" name="NpTomCFE9jkNaLFGDcybYX.jpg" caption="" alt="Laptop and a typewriter sitting on a blue table" src="https://cdn.mos.cms.futurecdn.net/NpTomCFE9jkNaLFGDcybYX.jpg" mos="" link="" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pinterest-pin-exclude"></p></div></div><figcaption itemprop="caption description" class=""><span class="credit" itemprop="copyrightHolder">(Image credit: n/a)</span></figcaption></figure><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/business-strategy/digital-transformation/369535/how-to-manage-a-blend-of-legacy-and-modern-it">Managing a blend of legacy and modern IT during digital transformation</a></p></div></div><p>Achieving this might need an element of cultural change, and Kim confirms this isn’t always easy. “An organization can’t change culture overnight,” he says. “Depending on the size and the nature of the organization it takes anywhere from three to ten years to change.” </p><p>Once organizations then undergo a process of risk awareness, sufficient resources must be allocated, and all employees should be trained on cyber security best practice, adds Sarginson. In addition, his advice includes using frameworks, where possible, like the NIST Cybersecurity Framework or <a href="https://www.itpro.com/it-governance/31712/what-is-iso-27001"><u>ISO 27001</u></a>. This may help to make implementing protections more efficient by removing the need to work out a security posture from first principles.</p><p>Ultimately, avoiding cyber security bear traps involves taking the proper technical steps and the right cultural ones – or as Kim puts it: “It’s not just about implementing new technology, like lift and shift. It’s about building out your people and building out your processes.” </p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Do risk awareness and risk management strategies actually make a difference? ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/do-risk-awareness-and-risk-management-strategies-actually-make-a-difference</link>
                                                                            <description>
                            <![CDATA[ If cyber attacks are a matter of when, not if, it's tempting to ask whether risk awareness and risk management are effective ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">HUHw8f89tHe7WPYLLjT26W</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/whPJc65oQLRkoJomfojyEd-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 24 May 2023 09:31:49 +0000</pubDate>                                                                                                                                <updated>Wed, 24 May 2023 16:51:02 +0000</updated>
                                                                                                                                            <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Sandra Vogel ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/whPJc65oQLRkoJomfojyEd-1280-80.jpg">
                                                            <media:credit><![CDATA[Getty Images]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Several green locked padlocks surrounding one orange unlocked padlock]]></media:description>                                                            <media:text><![CDATA[Several green locked padlocks surrounding one orange unlocked padlock]]></media:text>
                                <media:title type="plain"><![CDATA[Several green locked padlocks surrounding one orange unlocked padlock]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/whPJc65oQLRkoJomfojyEd-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Risk awareness and risk management are crucial to safeguarding an organization’s assets from cyber attack, according to conventional wisdom. But how effective are these strategies if businesses are now told it’s not a matter of if, but when, <a href="https://www.itpro.com/security/28810/how-to-react-to-a-data-breach"><u>disaster strikes</u></a>? </p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/security/33974/our-5-minute-guide-to-security-awareness-training">Our 5-minute guide to security awareness training</a></p></div></div><p>This “when, not if” theme arises again and again in modern <a href="https://www.itpro.com/security/28133/what-is-cyber-security"><u>cyber security</u></a> discourse – suggesting falling victim to cyber crime is an inevitability. Being targeted, and cyber criminals successfully pulling an attack off, are two different things, though. Risk management and <a href="https://www.itpro.com/security/33974/our-5-minute-guide-to-security-awareness-training"><u>risk awareness</u></a> are both concepts designed to make life as difficult as possible for an attacker. </p><p>By an entire business engaging in the process of identifying and evaluating potential threats, they can offer organizations a certain base level of protection. While many might question whether these efforts – from not just the security teams – are worth the bother if an attack is ‘inevitable, they might keep organizations just on the right side of a serious incident.</p><h2 class="article-body__section" id="section-building-risk-appetite"><span>Building risk appetite</span></h2><p>Risk awareness and risk management are different things, explains EY’s UK&I government and public sector cyber security lead, Rick Hemsley.</p><p>“Whereas risk awareness refers to the proactive measures taken by organizations to educate their employees and stakeholders about potential <a href="https://www.itpro.com/security/cyber-security/360456/how-the-cyber-security-threat-landscape-is-changing"><u>cyber security risks</u></a>,” he says, “[risk] management centers around the identification, assessment, and mitigation of potential risks to a company.”</p><p>Within these two definitions lie many distinct actions and activities: some technical and some cultural. Among the most important is defining the organization’s risk appetite, ensuring this is understood across the organization, and making sure mitigations are in place that respond to risk appetite. </p><p>Risk appetite is a fundamental element of risk awareness and risk management. You can’t protect against everything. A person leaving their home in the morning might get their pocketbook stolen or there might be a water leak while they’re away. They can insure against loss of credit cards and water damage. But only if they’ve assessed the possibility, and put in place a mitigating strategy. They’ll do neither if they don’t think the risks are worth addressing – which is where risk appetite factors in.</p><h2 class="article-body__section" id="section-risk-awareness-is-essential"><span>Risk awareness is essential</span></h2><p>Risk awareness is arguably the most crucial aspect, says David Adams, Grc security consultant at Prism Infosec. “Risk management won’t be effective if risk awareness is not included as a strategy.” </p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/security/cyber-security/360456/how-the-cyber-security-threat-landscape-is-changing">How the cyber security threat landscape is changing</a></p></div></div><p>Staff entrusted with implementing controls will only live up to expectations if they understand why it’s important to the organization and aware of the risks of not acting. But risk awareness isn’t just something for the tech team to consider. It must be embedded in the thought patterns and working practices across the organization. </p><p>“The risk management strategy may well advise that personnel only work on encrypted personal applications, and in the risk awareness strategy this would be regularly communicated to staff but made relevant to them, perhaps in the form of awareness training,” explains Adams.</p><h2 class="article-body__section" id="section-can-we-measure-how-effective-risk-management-is"><span>Can we measure how effective risk management is?</span></h2><p>One of the issues around promoting risk awareness through an organization is it’s not always easy to measure. A risk management strategy of, say, using <a href="https://www.itpro.com/security/cyber-security/368481/what-is-threat-hunting"><u>threat analysis to identify attempted cyber attacks</u></a>, and showing which attacks are thwarted, can generate data used to demonstrate how effective these systems are and justify spending on them. </p><div  class="fancy-box"><div class="fancy_box-title">RELATED RESOURCE</div><div class="fancy_box_body"><figure class="van-image-figure "  ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="p7aA9ci4nXKjR9pXsMHoAN" name="Mapping the digital attack surface_thumb.png" caption="" alt="Red whitepaper cover with title and logo" src="https://cdn.mos.cms.futurecdn.net/p7aA9ci4nXKjR9pXsMHoAN.png" mos="" link="" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pinterest-pin-exclude"></p></div></div><figcaption itemprop="caption description" class=""><span class="credit" itemprop="copyrightHolder">(Image credit: Trend Micro)</span></figcaption></figure><p class="fancy-box__body-text"><strong>Mapping the digital attack surface</strong></p><p class="fancy-box__body-text"><em>Why global organisations are struggling to manage cyber risk</em></p><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/security/cyber-security/370166/mapping-the-digital-attack-surface"><strong>DOWNLOAD FOR FREE</strong></a></p></div></div><p>It’s more difficult to measure the effectiveness of risk awareness in this way. An organization can, howeer, test how well its people understand the various risks it’s identified, and measure how they implement approved behaviors. It can ealso nsure that strong systems are in place, for example by implementing a <a href="https://www.itpro.com/security/network-security/358282/what-is-zero-trust">zero trust framework</a> for technology. </p><p>Frequent and overt testing, as well as measuring people’s attitudes towards risk, can itself alienate staff, as can putting in place technology requirements that feel intrusive to actually getting work done. </p><p>The goal should be to guard the organization, not to corral its people. And, in any case, we can’t compare two real-world scenarios – with and without a strong risk awareness strategy in place – to quantify the effect of the strategy.</p><h2 class="article-body__section" id="section-does-risk-management-make-a-difference"><span>Does risk management make a difference?</span></h2><p>What organizations can do is be aware of the risks humans bring. Last year, the <a href="https://www3.weforum.org/docs/WEF_The_Global_Risks_Report_2022.pdf"><u>World Economic Forum (WEF)</u></a> said 95% of cyber security  issues could be traced to <a href="https://www.itpro.com/data-breaches/34355/an-inside-job-the-human-factor-of-cybersecurity"><u>human error</u></a>. </p><p>Normalising appropriate behaviours can help an organization diminish the risk of human error by increasing awareness of the consequences of certain actions – or absence of certain actions. </p><p>The key is for the organization to ensure people feel part of the strategy, not that the strategy is foisted upon them. “A good risk awareness strategy helps create a security-conscious culture across the company, making it more resilient against attacks,” Hemsley tells <em>ITPro</em>. </p><p>Adams puts it another way: “Security is the responsibility of us all and people are now much more conscious of this fact. But when it comes to the individual, relevance is key. It’s vital to make the strategy meaningful to staff.”</p><iframe width="100%" frameborder="0" allow="encrypted-media" data-lazy-priority="high" data-lazy-src="https://open.spotify.com/embed-podcast/episode/2znUT5UIPFAM1pGya83iwT"></iframe><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/security/five-zero-trust-pitfalls-to-avoid">Why zero trust strategies fail</a></p></div></div><p>In the end risk awareness is a key component of how an organization handles the risks its exposed to. When the organization’s people are aware of these risks, and understand how their individual actions can help – or hinder – the organization in facing up to the very real prospect of attacks, they can play a part in mitigation. </p><p>When cyber attacks are a matter of when, not if, every possible strategy and mitigation that helps an organization deal with its appetite for risk is a strategy worth having, regardless of how much effort it might take to implement.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Take control of diverse and rapidly evolving enterprise risks ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/370021/take-control-of-diverse-and-rapidly-evolving-enterprise</link>
                                                                            <description>
                            <![CDATA[ Effectively manage and report on risk and compliance ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">aTakDHJQzGRoHoYQnEXejJ</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/XomCxZpLC3msctidSinGWD-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 17 Apr 2023 15:56:36 +0000</pubDate>                                                                                                                                <updated>Wed, 03 May 2023 13:06:41 +0000</updated>
                                                                                                                                            <category><![CDATA[Data Protection]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/XomCxZpLC3msctidSinGWD-1280-80.jpg">
                                                            <media:credit><![CDATA[ServiceNow]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper cover with image of female working at a computer with blurred image of tables and chairs in background]]></media:description>                                                            <media:text><![CDATA[Whitepaper cover with image of female working at a computer with blurred image of tables and chairs in background]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper cover with image of female working at a computer with blurred image of tables and chairs in background]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/XomCxZpLC3msctidSinGWD-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The disruptions of recent years have opened our eyes to entire new categories of risks, both seriously affecting business operations and negatively impacting customer experiences. A failure to respond to these threats can have a significant effect on the future of the organisation.</p><p>This paper highlights the need to transform legacy risk management approaches, and shares three key pillars that can enable businesses to proactively respond to, and overcome, the risks they face.</p><p>Download now to learn how to get ahead of the curve with real-time risk visibility, how to ensure risk management is a company-wide responsibility, and how internal audits can improve risk posture.</p><p><em>Provided by  </em><strong>ServiceNow</strong></p><iframe width="100%" height="1000" frameborder="0" data-lazy-priority="low" data-lazy-src="https://dennistrk.cvtr.io/click?lid=101754&sid=&pid=3"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Digital transformation & risk for dummies ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/370023/digital-transformation-risk-for-dummies</link>
                                                                            <description>
                            <![CDATA[ Understand the risks to your digital business and accelerate your digital transformation ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">4yJXAX47Lps8oCK4wXsJnq</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/3SZqn75eoPzdFjpMdpKAT3-1280-80.png" type="image/png" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Feb 2023 14:31:59 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/png" url="https://cdn.mos.cms.futurecdn.net/3SZqn75eoPzdFjpMdpKAT3-1280-80.png">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper copy with title on black colour block below a green bank with the logo, and a cartoon man&amp;#039;s face in a yellow circle next to the content summary in a green circle]]></media:description>                                                            <media:text><![CDATA[Whitepaper copy with title on black colour block below a green bank with the logo, and a cartoon man&amp;#039;s face in a yellow circle next to the content summary in a green circle]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper copy with title on black colour block below a green bank with the logo, and a cartoon man&amp;#039;s face in a yellow circle next to the content summary in a green circle]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/3SZqn75eoPzdFjpMdpKAT3-1280-80.png" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Digital transformation creates a variety of new opportunities, but unfortunately can also result in the increase of risks, and the more an enterprise can understand the risks it faces - especially as a company-wide initiative - the more successful their digitisation will be.</p><p>This special edition guide can help your employees better understand how they can be part of a successful digital risk management strategy, with practical advice on how to apply learnings to real risk management situations.</p><p>Download now to learn:</p><ul><li>The basics of risk identification and management</li><li>How to manage digital risk</li><li>As well as five tips for successful digital transformation</li></ul><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="RSr6uS55HKeiMFTSBQUk26" name="" alt="ServiceNow Logo" src="https://cdn.mos.cms.futurecdn.net/RSr6uS55HKeiMFTSBQUk26.png" mos="https://cdn.mos.cms.futurecdn.net/RSr6uS55HKeiMFTSBQUk26.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49949/servicenow-efus018166?locale=1&p=false&wp=10769"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ PCI consortium implies Nvidia at fault for its melting cables ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/hardware/369628/pci-consortium-implies-nvidia-fault-melting-cables</link>
                                                                            <description>
                            <![CDATA[ Nvidia said the issues were caused by user error but the PCI-SIG pointed to possible design flaws ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">rM87PU3B1gxa1t8zrph9zd</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/nvdFA9TK3EGwJh6STUrZqK-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 02 Dec 2022 11:24:19 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Components]]></category>
                                                    <category><![CDATA[Hardware]]></category>
                                                    <category><![CDATA[Desktops]]></category>
                                                                                                                    <dc:creator><![CDATA[ Rory Bathgate ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/DnNrFxEA7RRECVgFxXR4V7.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/nvdFA9TK3EGwJh6STUrZqK-1280-80.jpg">
                                                            <media:credit><![CDATA[Shutterstock]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Nvidia website under a magnifying glass ]]></media:description>                                                            <media:text><![CDATA[Nvidia website under a magnifying glass ]]></media:text>
                                <media:title type="plain"><![CDATA[Nvidia website under a magnifying glass ]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/nvdFA9TK3EGwJh6STUrZqK-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A major hardware organisation has implied that Nvidia is at fault for the widely reported instances of melting power cables on its new RTX 4090 graphics cards.</p><p>Nvidia's latest line of GPUs was released in October but their power cables have been mired in reports of extreme thermal faults leading to some users’ cables smoking or melting entirely.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/hardware/components/369322/nvidias-rtx-4090-is-a-powerful-password-cracking-tool" data-original-url="/hardware/components/369322/nvidias-rtx-4090-is-a-powerful-password-cracking-tool">Nvidia's new RTX 4090 is a powerful password-cracking tool</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/technology/artificial-intelligence-ai/369604/nvidia-rolls-out-ai-platform-across-nhs-hospitals" data-original-url="/technology/artificial-intelligence-ai/369604/nvidia-rolls-out-ai-platform-across-nhs-hospitals">Nvidia rolls out AI platform across NHS hospitals</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/hardware/368771/intel-launches-arc-pro-gpus-for-creative-apps" data-original-url="/hardware/368771/intel-launches-arc-pro-gpus-for-creative-apps">Intel launches Arc Pro GPUs for creative apps</a></p></div></div><p>Specifically, the GPUs' 16-pin 12VHPWR power cable, which adopts the new ATX 3.0 PSU standard released this year, has been identified as the core issue at play. Nvidia investigated the circa 50 extreme cases reported to it and concluded that “a common issue is that connectors are not fully plugged into the graphics card” - an issue of user error. </p><p>However, the Peripheral Component Interconnect Special Interest Group (PCI-SIG), a tech consortium which created the new power standard, and whose board includes representatives from companies including AMD, <a href="https://www.itpro.com/business/business-strategy/369177/arm-appoints-news-cfo-as-it-gears-up-for-ipo" data-original-url="https://www.itpro.com/business/business-strategy/369177/arm-appoints-news-cfo-as-it-gears-up-for-ipo">Arm</a>, <a href="https://www.itpro.com/software/369561/ibm-files-lawsuit-against-micro-focus-alleging-software-plagiarism" data-original-url="https://www.itpro.com/software/369561/ibm-files-lawsuit-against-micro-focus-alleging-software-plagiarism">IBM</a>, <a href="https://www.itpro.com/hardware/components/369479/intel-unveils-max-series-chip-family-designed-for-high-performance" data-original-url="https://www.itpro.com/hardware/components/369479/intel-unveils-max-series-chip-family-designed-for-high-performance">Intel</a>, and Nvidia itself, has sought to distance itself from Nvidia’s claims. </p><p>It stated firms are responsible for rigorously testing their own hardware, and referenced an affected individual who has filed a class action lawsuit against Nvidia in a California district court.</p><p>"PCI-SIG wishes to impress upon all members that manufacture, market, or sell PCI-SIG technologies (including 12VHPWR connections) of the need to take all appropriate and prudent measures to ensure end-user safety, including testing for the reported problem cases involving consumers as alleged in the above-referenced lawsuit," the group said in a statement to the press.</p><p>“Members are reminded that PCI-SIG specifications provide necessary technical information for interoperability and do not attempt to address proper design, manufacturing methods, materials, safety testing, safety tolerances or workmanship. When implementing a PCI-SIG specification, members are responsible for the design, manufacturing, and testing, including safety testing, of their products.”</p><p>In the <a href="https://storage.courtlistener.com/recap/gov.uscourts.cand.403711/gov.uscourts.cand.403711.1.0.pdf">lawsuit</a> (PDF), the plaintiff alleged that Nvidia “marketed and sold the <a href="https://www.itpro.com/hardware/components/369322/nvidias-rtx-4090-is-a-powerful-password-cracking-tool" data-original-url="https://www.itpro.com/hardware/components/369322/nvidias-rtx-4090-is-a-powerful-password-cracking-tool">RTX 4090</a> with a defective and dangerous power cable plug and socket, which has rendered consumers’ cards inoperable and poses a serious electrical and fire hazard for each and every purchaser”.</p><p>PC hardware reviews channel Gamers Nexus replicated the fault through the improper connection of the connector to the <a href="https://www.itpro.com/hardware/30399/what-is-a-gpu" data-original-url="https://www.itpro.com/hardware/30399/what-is-a-gpu">graphics card</a>, and recorded the card reaching temperatures as high as 250ºC.</p><p>The group analysed cables sent in by affected viewers and determined that wear and tear proved the cables had been inserted at an angle, or with pins loose<strong>.</strong></p><div class="youtube-video" data-nosnippet ><div class="video-aspect-box"><iframe data-lazy-priority="high" data-lazy-src="https://www.youtube-nocookie.com/embed/ig2px7ofKhQ" allowfullscreen></iframe></div></div><p>Despite this, in lieu of an audible ‘click’ when the cable is inserted properly, the reviewers noted that it’s very possible for a user to accidentally install the card insecurely. They also warned that those tinkering with cables after hearing about the issue might be opening themselves up to failure.</p><p>The 12VHPWR is a new power standard and used in Nvidia’s RTX 4080 and 4090 cards in place of the two eight-pin connectors that were used with the firm’s older cards. Rival AMD still utilises this older solution, having opted against including the 12VHPWR on its newest cards.</p><p>PCI-SIG’s statement is seemingly aimed at quashing fears that the thermal problems are endemic to the new standard.</p><p><em>IT Pro</em> has approached Nvidia for comment.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Nine steps to IT audit readiness ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/368132/nine-steps-to-it-audit-readiness</link>
                                                                            <description>
                            <![CDATA[ How technology can help win back your time and reduce IT risk ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">o7HnY8K9jA4yme5KvGmpLz</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/zoqTYfttWyamiHY8XhBKKN-1280-80.png" type="image/png" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jun 2022 13:05:03 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/png" url="https://cdn.mos.cms.futurecdn.net/zoqTYfttWyamiHY8XhBKKN-1280-80.png">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper cover with image of female employee wearing glasses reflected in a screen of data graphs]]></media:description>                                                            <media:text><![CDATA[Whitepaper cover with image of female employee wearing glasses reflected in a screen of data graphs]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper cover with image of female employee wearing glasses reflected in a screen of data graphs]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/zoqTYfttWyamiHY8XhBKKN-1280-80.png" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>In today’s hybrid working world, with the increased number of devices, data and systems, the risk to global IT is significant, making the regulatory environment more complex.</p><p>With IT leaders facing more challenges than ever before, the differing regulations and compliance frameworks means a vast amount of work for an often resource-limited team. But being able to get to a stage of IT compliance, ready for audit, is achievable with the right technology.</p><p>Download this whitepaper to understand the key components when it comes to being IT audit-ready - including process, technology, and people - with clear steps to follow, ensuring your business gets there.</p><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="UtvAeeAcF8dVU7LoiMht4J" name="" alt="Diligent logo" src="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" mos="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49676/diligent-fy22-risk-and-compliance?locale=1&p=false&wp=9647"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ KRI basics for IT governance ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/368130/kri-basics-for-it-governance</link>
                                                                            <description>
                            <![CDATA[ How information technology & information security can implement this crucial part of risk management ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dyR9hTBF75c6rKs1YphLew</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/artk5m3dxh2auzw8iwrhAe-1280-80.png" type="image/png" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jun 2022 12:44:30 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/png" url="https://cdn.mos.cms.futurecdn.net/artk5m3dxh2auzw8iwrhAe-1280-80.png">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper cover with worker holding a tablet and looking at a server]]></media:description>                                                            <media:text><![CDATA[Whitepaper cover with worker holding a tablet and looking at a server]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper cover with worker holding a tablet and looking at a server]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/artk5m3dxh2auzw8iwrhAe-1280-80.png" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Key risk indicators (KRIs) can help predict adverse events that may impact your organisation and are widely considered an essential part of good governance. These indicators link to a range of operational risk-management activities and processes, making them especially beneficial as metrics of changes in a company’s risk profile.</p><p>Here, you’ll learn how to implement, manage and maintain KRIs within your IT department:</p><ul><li>Choosing appropriate KRIs can benefit your organisation</li><li>Examples of effective KRIs</li><li>KRIs/KRI selection worksheet</li><li>Implementing automated reporting</li></ul><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="UtvAeeAcF8dVU7LoiMht4J" name="" alt="Diligent logo" src="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" mos="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49676/diligent-fy22-risk-and-compliance?locale=1&p=false&wp=9407"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Third party risk management essentials ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/368125/third-party-risk-management-essentials</link>
                                                                            <description>
                            <![CDATA[ How to manage third party risk within your organisation ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">v5C2or9yTj76omJJab9DN9</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/2ZectTY68dYi6NTUYFCcWo-1280-80.png" type="image/png" length="0"></enclosure>
                                                                        <pubDate>Tue, 07 Jun 2022 12:26:47 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Business Strategy]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/png" url="https://cdn.mos.cms.futurecdn.net/2ZectTY68dYi6NTUYFCcWo-1280-80.png">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper cover with shaded image of data graph in the background]]></media:description>                                                            <media:text><![CDATA[Whitepaper cover with shaded image of data graph in the background]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper cover with shaded image of data graph in the background]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/2ZectTY68dYi6NTUYFCcWo-1280-80.png" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>While it’s easy to see the benefits of bringing third parties on board – higher revenues and lower costs - outsourcing can introduce a significant threat of risk that can bring long-term reputational and financial damage to your organisation.</p><p>In this e-book, you’ll learn about the challenges of third-party risk management, the differences between vendor risk management (VRM) and third-party risk management (TPRM) and discover a framework to help mitigate this risk:</p><ul><li>Essentials of third-party risk management</li><li>Ways third parties can introduce risk</li><li>Real-life third-party failures</li><li>Robust TRPM framework to ensure good governance</li></ul><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="UtvAeeAcF8dVU7LoiMht4J" name="" alt="Diligent logo" src="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" mos="https://cdn.mos.cms.futurecdn.net/UtvAeeAcF8dVU7LoiMht4J.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49676/diligent-fy22-risk-and-compliance?locale=1&p=false&wp=9405"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Recommendations for managing AI risks ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/technology/artificial-intelligence-ai/367499/recommendations-for-managing-ai-risks</link>
                                                                            <description>
                            <![CDATA[ Integrate your external AI tool findings into your broader security programs ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">ikJ9LY1RmCnWRkFzqH4PhL</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/NJSDBJZzAjpg5aq4yVq3A8-1280-80.png" type="image/png" length="0"></enclosure>
                                                                        <pubDate>Tue, 26 Apr 2022 11:40:13 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Artificial Intelligence]]></category>
                                                    <category><![CDATA[Technology]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/png" url="https://cdn.mos.cms.futurecdn.net/NJSDBJZzAjpg5aq4yVq3A8-1280-80.png">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Yellow whitepaper cover with two flying robots, with desktop computers inside their heads]]></media:description>                                                            <media:text><![CDATA[Yellow whitepaper cover with two flying robots, with desktop computers inside their heads]]></media:text>
                                <media:title type="plain"><![CDATA[Yellow whitepaper cover with two flying robots, with desktop computers inside their heads]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/NJSDBJZzAjpg5aq4yVq3A8-1280-80.png" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The Cyber Resilience Think Tank is an independent group of industry influencers dedicated to understanding the cyber resilience challenges facing organisations and providing possible solutions, with this paper in particular focussing on AI.</p><p>For CISOs using vendors that employ AI, it’s less about what intelligence their tools provide, and more about how the organisation’s internal security team can integrate external AI tool findings into their broader security programs.</p><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="PsftVtHsoiGYz7AFifMahD" name="" alt="Mimecast logo" src="https://cdn.mos.cms.futurecdn.net/PsftVtHsoiGYz7AFifMahD.png" mos="https://cdn.mos.cms.futurecdn.net/PsftVtHsoiGYz7AFifMahD.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49638/form-9771?locale=1&p=false&wp=9053"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ How a platform approach to security monitoring initiatives adds value ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/367042/how-a-platform-approach-to-security-monitoring-initiatives-adds-value</link>
                                                                            <description>
                            <![CDATA[ Integration, orchestration, analytics, automation, and the need for speed ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">dnP93SwkUbq8cZ4NS2v1Bc</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/mG92862tEkcmYjwLpumZzk-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 17 Mar 2022 13:57:25 +0000</pubDate>                                                                                                                                <updated>Fri, 01 Apr 2022 13:57:25 +0000</updated>
                                                                                                                                            <category><![CDATA[Antivirus]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                <author><![CDATA[ itpro@futurenet.com (ITPro) ]]></author>                    <dc:creator><![CDATA[ ITPro ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/mG92862tEkcmYjwLpumZzk-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Whitepaper cover with title on burgundy square graphic]]></media:description>                                                            <media:text><![CDATA[Whitepaper cover with title on burgundy square graphic]]></media:text>
                                <media:title type="plain"><![CDATA[Whitepaper cover with title on burgundy square graphic]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/mG92862tEkcmYjwLpumZzk-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The most productive security teams are going beyond the use of tactical tools for investigation and reporting of security incidents. Instead, they are taking a more strategic, proactive, platform-oriented approach to identifying and assessing security-related risks, proving compliance, and maturing the flexibility and resilience of ongoing operations.</p><p>Read this report to learn about the evolution of security monitoring capabilities and discover what comprehensive security technologies companies are investing in to support their work from anywhere (WFA) / hybrid work model.</p><p><em>Provided by</em></p><figure class="van-image-figure pull-" data-bordeaux-image-check ><div class='image-full-width-wrapper'><div class='image-widthsetter' ><p class="vanilla-image-block" style="padding-top:56.25%;"><img id="rQy9MUeL7vDLefQJcJuEZZ" name="" alt="IBM logo" src="https://cdn.mos.cms.futurecdn.net/rQy9MUeL7vDLefQJcJuEZZ.png" mos="https://cdn.mos.cms.futurecdn.net/rQy9MUeL7vDLefQJcJuEZZ.png" align="" fullscreen="" width="" height="" attribution="" endorsement="" class="pull-"></p></div></div></figure><iframe frameborder="0" height="1000" width="100%" data-lazy-priority="low" data-lazy-src="https://dennis.cvtr.io/forms/49614/ibm-q2-2022?locale=1&p=false&wp=8951"></iframe>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Marsh McLennan reveals its cyber risk analytics center ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk-management/361269/marsh-mclennan-reveals-its-cyber-risk-analytics-center</link>
                                                                            <description>
                            <![CDATA[ The center combines the expertise of Marsh, Guy Carpenter, Mercer, and Oliver Wyman ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">cCGgmFJ2jRztBG52h1ANwr</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Xtx8rK72HcYorinhyiM3Ma-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 15 Oct 2021 18:04:20 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cyber Attacks]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Praharsha Anand ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Xtx8rK72HcYorinhyiM3Ma-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Hand hovering over laptop with padlock graphic superimposed]]></media:description>                                                            <media:text><![CDATA[Hand hovering over laptop with padlock graphic superimposed]]></media:text>
                                <media:title type="plain"><![CDATA[Hand hovering over laptop with padlock graphic superimposed]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Xtx8rK72HcYorinhyiM3Ma-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Marsh McLennan has announced the launch of its cyber risk analytics center to help clients better understand the risks they face.</p><p>In addition to providing a holistic view of cyber threats, the platform helps businesses evaluate the effectiveness of existing and prospective control mechanisms, economic impacts of risks, and more.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/security/cyber-security/359520/cyber-risk-planning-for-directors-six-principles-to-follow" data-original-url="/security/cyber-security/359520/cyber-risk-planning-for-directors-six-principles-to-follow">Cyber risk planning for directors – six principles to follow</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/cyber-crime/30911/scale-of-cyber-risk-to-uk-businesses-is-bigger-than-ever" data-original-url="/cyber-crime/30911/scale-of-cyber-risk-to-uk-businesses-is-bigger-than-ever">Scale of cyber risk to UK businesses is "bigger than ever"</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/technology/artificial-intelligence-ai/361093/how-to-manage-ai-risk" data-original-url="/technology/artificial-intelligence-ai/361093/how-to-manage-ai-risk">How to manage AI risk</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/business-strategy/careers-training/361182/singapore-launches-new-cyber-security-framework" data-original-url="/business-strategy/careers-training/361182/singapore-launches-new-cyber-security-framework">Singapore launches new cyber security framework</a></p></div></div><p>The center integrates the <a href="https://www.itpro.com/security/28133/what-is-cyber-security" data-original-url="https://www.itpro.com/security/28133/what-is-cyber-security">cyber security</a> capabilities of Marsh McLennan’s Marsh, Guy Carpenter, Mercer, and Oliver Wyman businesses.</p><p>Commenting on available features, Marsh McLennan said its <a href="https://www.itpro.com/tag/analytics" data-original-url="https://www.itpro.com/analytics">analytics</a> center delivers a comprehensive suite of tools and critical risk insights, ranging from malicious code to complex webs of digital connections.</p><p>Per reports, the center will be led by the firm's managing director Scott Stransky. </p><p>Marsh McLennan's global network of commercial, government, and academic partners will also assist with research and development through the center. </p><p>“Cyberattacks routinely cause millions of dollars in loss to our clients and billions of dollars in loss to the global economy every year. It is no surprise that business, government, and other leaders continue to rank cyber risk as one of the most pervasive and urgent risks for society,” said John Doyle, president and <a href="https://www.itpro.com/strategy/28224/ceo-job-description-what-does-a-ceo-do" data-original-url="https://www.itpro.com/strategy/28224/ceo-job-description-what-does-a-ceo-do">CEO</a> of Marsh and vice chairman at Marsh McLennan. </p><p>Doyle added, “For many leaders, however, their concern exceeds their ability to measure and manage cyber risk alone. Our investment in the Marsh McLennan Cyber Risk Analytics Center will help clients confront this risk by connecting them with experts and capabilities from across our businesses, data-driven insights, and a global ecosystem of risk and cybersecurity experts.”</p><p>Lastly, the firm aims to enhance the cyber modeling and analytics ecosystem, so clients can make informed decisions about how they identify, prepare for, and recover from cyber risk.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Bigleaf Networks’ AI-powered feature translates network events into actionable risks ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/risk/357387/bigleaf-networks-ai-powered-feature-translates-network-events-into</link>
                                                                            <description>
                            <![CDATA[ AI-widget identifies risks triggered by a site and highlights only the top three with actionable solutions ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">mz2kikUo1AxZEj7jBAiGj4</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Yvm4ZK7TEB5q57eZPXVuPL-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 09 Oct 2020 19:04:25 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Encryption]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Praharsha Anand ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Yvm4ZK7TEB5q57eZPXVuPL-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Bigleaf risk monitoring dashboard]]></media:description>                                                            <media:text><![CDATA[Bigleaf risk monitoring dashboard]]></media:text>
                                <media:title type="plain"><![CDATA[Bigleaf risk monitoring dashboard]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Yvm4ZK7TEB5q57eZPXVuPL-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Bigleaf Networks has announced a new <a href="https://www.itpro.com/strategy/28181/what-is-ai" data-original-url="https://www.itpro.com/strategy/28181/what-is-ai">AI</a>-based feature called Risk Monitoring within its <a href="https://www.bigleaf.net/overview">Cloud-first SD-WAN platform</a>. The feature addresses the most pressing problem IT companies face today: high risk-alert noise.</p><p>"The complexity of networks in today's IT-lean enterprises where they have tens or hundreds of cloud applications running across hundreds or thousands of branch and home internet connections has reached a point where all sense of control and excellence has been lost," said Joel Mulkey, co-founder and <a href="https://www.itpro.com/strategy/28224/ceo-job-description-what-does-a-ceo-do" data-original-url="https://www.itpro.com/strategy/28224/ceo-job-description-what-does-a-ceo-do">CEO</a>, Bigleaf.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/612901/is-apples-corporate-culture-a-security-risk" data-original-url="/612901/is-apples-corporate-culture-a-security-risk">Is Apple's corporate culture a security risk?</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/95080/mobile-users-underestimate-virus-risks" data-original-url="/95080/mobile-users-underestimate-virus-risks">Mobile users underestimate virus risks</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/103007/world-economic-forum-internet-increases-global-risk" data-original-url="/103007/world-economic-forum-internet-increases-global-risk">World Economic Forum: Internet increases global risk</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/99305/it-departments-cant-quantify-security-risks" data-original-url="/99305/it-departments-cant-quantify-security-risks">IT departments can't quantify security risks</a></p></div></div><p>"People can't process and troubleshoot the volume of alerts and events on networks anymore. It's not a matter of not wanting to. It's that there's simply too much information, most of which is noise. You've got to have intelligent software to solve this problem. By building a platform that takes control of processing and interpreting those events, we've now established true network control for our customers."</p><p>Through contextual alerting, Bigleaf’s Risk Monitoring feature allows companies to reduce the unabating noise. The widget translates high-volume network events into prioritised, actionable risks, slashing the risk-alert noise levels by almost 50%. </p><p>Proving its point further, Bigleaf exposed as many as 12 risks in the initial launch of its new feature. The risks include, among others, extended periods of elevated health alarm levels, critical traffic volume exceeding the capacity of backup circuits and site outage.</p><p>The feature can also highlight the top three risks out of all risks triggered by a site. Each risk alert presents an easy-to-understand explanation of a threat and how to solve it to allow quick decision-making. Any scenario that poses a risk to a customer's business or its site's continuity will trigger an alert.</p><p>"This new feature brings incredible relief to daily pain our customers and others in the industry feel. It also brings significant value to our <a href="https://www.itpro.com/security/33890/hackers-target-msps-to-launch-supply-chain-ransomware-attacks" data-original-url="https://www.itpro.com/security/33890/hackers-target-msps-to-launch-supply-chain-ransomware-attacks?amp">MSP</a> partners who now have a tool that lets them see risks across all of the companies they manage and helps them better determine where they should spend their limited time and resources to keep their customers happy," continued Mulkey.</p><p>Existing Bigleaf customers can access the feature by logging into their Bigleaf web dashboard.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Small businesses ‘unprepared’ for no-deal Brexit ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/policy-legislation/34394/small-businesses-unprepared-for-no-deal-brexit</link>
                                                                            <description>
                            <![CDATA[ Tech firms are not are aware of guidance, nor government support, as opposition against no-deal mounts ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">nMsQPsPbsfgQEym11gbLEG</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/Nb7b56CxTmaETdbEaY5VXB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 13 Sep 2019 11:29:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[GDPR]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                    <category><![CDATA[Data Protection]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/Nb7b56CxTmaETdbEaY5VXB-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Image of the EU and UK flags breaking apart]]></media:description>                                                            <media:text><![CDATA[Image of the EU and UK flags breaking apart]]></media:text>
                                <media:title type="plain"><![CDATA[Image of the EU and UK flags breaking apart]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/Nb7b56CxTmaETdbEaY5VXB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Less than half of small technology businesses consider themselves to be ready to face a no-deal Brexit on 31 October, with an economic slowdown and difficulties hiring staff chief among their concerns.</p><p>Larger businesses generally consider themselves to be much better prepared for an abrupt exit from the EU, with 87% reporting they're fairly or very prepared, according to research from techUK.</p><p>This contrasts wildly with the state of Britain's small businesses, of which 43% deem themselves to be ready, as do 50% of medium-sized companies.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/policy-legislation/32576/no-deal-brexit-will-block-critical-data-transfers-from-eu-warns-ico" data-original-url="/policy-legislation/32576/no-deal-brexit-will-block-critical-data-transfers-from-eu-warns-ico">No-deal Brexit will block critical data transfers from EU, warns ICO</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/agile-working/34343/now-is-the-time-to-embrace-remote-working" data-original-url="/agile-working/34343/now-is-the-time-to-embrace-remote-working">Now is the time to embrace remote working</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/general-data-protection-regulation-gdpr/33991/uk-firms-may-soon-find-it-impossible-to-legally" data-original-url="/general-data-protection-regulation-gdpr/33991/uk-firms-may-soon-find-it-impossible-to-legally">Businesses worldwide brace for ECJ ruling on data transfers</a></p></div></div><p>As for general confidence, 71% of techUK members responded to questions suggesting no-deal will have a negative impact on their businesses. This is a slight rise against 69% <a href="https://www.itpro.com/policy-legislation/32784/tech-firms-reject-no-deal-brexit-and-pivot-towards-people-s-vote" target="_blank" data-original-url="https://www.itpro.com/policy-legislation/32784/tech-firms-reject-no-deal-brexit-and-pivot-towards-people-s-vote">when they were previously asked in December 2018</a>.</p><p>"Being unable to predict the implication of no-deal is the most frequently cited reason amongst those taking no active steps to prepare," Vinous Ali, techUK associate director for policy told <em>IT Pro</em>.</p><p>Although 68% of enterprises reported they were aware of guidance issued by government, only 30% of small businesses and 33% of medium-sized businesses felt they were up to date.</p><p>TechUK was unable to specify what actions businesses have been taking to prepare for a no-deal Brexit, however, it said that "anecdotally we know there are various things members have been doing to prepare whether that be stockpiling products and parts or updating contracts; inserting standard contractual clauses to guarantee continued free data flow".</p><p>The main concerns facing businesses in the event of no deal include the overall impact on the economy, as well as the confusion and uncertainty over various elements of regulatory compliance. Businesses are also anxious over the difficulty in finding staff once freedom of movement ends, and additional regulatory barriers established that hinder trade.</p><p><a href="https://www.itpro.com/policy-legislation/32576/no-deal-brexit-will-block-critical-data-transfers-from-eu-warns-ico" target="_blank" data-original-url="https://www.itpro.com/policy-legislation/32576/no-deal-brexit-will-block-critical-data-transfers-from-eu-warns-ico">The free flow of personal data</a>, meanwhile, is another key concern for businesses, especially considering the fact that data arrangements post-Brexit have not yet been ascertained.</p><p>The readiness of certain businesses also varies depending on the nature of their work. For instance, organisations that do not rely on data transfers, nor trade beyond the UK border, may not require extensive preparations. Businesses that rely heavily on supply chains, meanwhile, are likely to face far greater disruption.</p><p>The <a href="https://www.itpro.com/information-commissioner/31751/what-is-the-information-commissioner-s-office-ico" target="_blank" data-original-url="https://www.itpro.com/information-commissioner/31751/what-is-the-information-commissioner-s-office-ico">Information Commissioner's Office (ICO)</a> reissued further guidance yesterday in light of the developing political situation and likeliness of a no-deal Brexit, <a href="https://www.itpro.com/information-commissioner/34386/ico-issues-guidance-in-the-event-of-a-no-deal-brexit" target="_blank" data-original-url="https://www.itpro.com/information-commissioner/34386/ico-issues-guidance-in-the-event-of-a-no-deal-brexit">urging smaller businesses to prepare for every eventuality</a>.</p><p>The data regulator still advises businesses to adopt standard contractual clauses where possible, but the validity of this mechanism is <a href="https://www.itpro.com/general-data-protection-regulation-gdpr/33991/uk-firms-may-soon-find-it-impossible-to-legally" target="_blank" data-original-url="https://www.itpro.com/general-data-protection-regulation-gdpr/33991/uk-firms-may-soon-find-it-impossible-to-legally">currently being considered by the European Court of Justice (ECJ)</a>. If SCCs are ruled universally invalid, businesses could be left without a legal means to receive data from the EU.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ IT powering NHS screenings ‘unfit for purpose’ for a decade ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/public-sector/33648/it-powering-nhs-screenings-unfit-for-purpose-for-a-decade</link>
                                                                            <description>
                            <![CDATA[ Patients are at risk after IT failures are leading to critical programmes missing their targets ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">cUnVtresWqpT8sRkYytGku</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Wed, 15 May 2019 11:14:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:description>                                                            <media:text><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:text>
                                <media:title type="plain"><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Failures in 11 health screening programmes across the UK are fundamentally connected to a "hopeless" IT system that will have been deemed inadequate for the best part of a decade when it is due to be replaced in 2020.</p><p>All health screening programmes, such as tests for breast cancer and cervical cancer, have relied on a single IT system that was deemed "not fit for purpose" for health screening by the Department for Health and Social Care (DHSC) in 2011.</p><p>And dependency on the National Health Application and Infrastructure Services (NHAIS) is the reason why health screening programmes are failing to test enough people with potentially life-threatening conditions, <a href="https://publications.parliament.uk/pa/cm201719/cmselect/cmpubacc/1746/1746.pdf" target="_blank">according to the Public Accounts Committee (PAC)</a>.</p><p>"The benefits of screening cannot be under-estimated: if found at an early stage, treatment can be significantly more effective," said PAC chair Meg Hillier MP.</p><p>"Yet millions of people are not being screened for serious illnesses like bowel, breast and cervical cancer.</p><p>"Our inquiry has exposed a health service that is losing its grip on health screening programmes. Many individuals waiting for delayed results will suffer avoidable anxiety, stress and uncertainty. Those delays also stretch far beyond the Department's target waiting periods."</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/digital-transformation/32322/report-savages-nhs-wales-legacy-it-over-cloud" data-original-url="/digital-transformation/32322/report-savages-nhs-wales-legacy-it-over-cloud">Report savages NHS Wales for fixating on legacy IT and snubbing the benefits of cloud</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/digital-transformation/31559/moj-cut-corners-in-12bn-digital-transformation-of-uk-courts-system" data-original-url="/digital-transformation/31559/moj-cut-corners-in-12bn-digital-transformation-of-uk-courts-system">MoJ 'cut corners’ in £1.2bn digital transformation of UK courts system</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/outsourcing/31153/nhs-england-s-330m-cost-cutting-deal-with-capita-put-patients-at-risk" data-original-url="/outsourcing/31153/nhs-england-s-330m-cost-cutting-deal-with-capita-put-patients-at-risk">NHS England’s £330m cost-cutting deal with Capita 'put patients at risk'</a></p></div></div><p>The PAC examined statistics relating to four of the 11 programmes during 2017/18 as a measure for how screening is performing generally. They found the number of individuals being screened fell well sort of national targets, and that a swathe of eligible people had not even been invited to begin with.</p><p>NHS England told the committee during inquiry stages that reliance on NHAIS, which itself comprises 83 separate databases, was a key weakness, while Public Health England said the "IT was hopeless" when questioned.</p><p>The DHSC also admitted in 2011 that NHAIS was "not fit for purpose" to function in screening programmes because it was difficult to track a person's history if they moved across geographical boundaries.</p><p>NHS England, which has been tasked with overseeing these screening programmes and in some cases the supporting IT system, is not expected to replace NHAIS until at least 2020. This is three years later than initially planned and will cost 14 million.</p><p>The delay is attributable to the fact NHS England was working on the replacement project with outsourcing giant Capita. But after the organisation declared it could no longer work with the firm, NHS Digital has taken on the responsibility for replacing NHAIS.</p><p>The state of the cervical cancer screening programme, in particular, is alarming given its reliance on 360 IT systems in total including the 83 databases comprising NHAIS and a further 270 that deal with invites, reminders, analysis and results. Some of these systems are more than 30 years old.</p><p>The PAC has recommended that NHS England sets out a clear pathway for how it plans to deliver the new IT system, deemed a "risky" project, on time without making the screening service even worse.</p><p>The influential committee of MPs also suggested that Public Health England and NHS England develop a more integrated approach to its IT to ensure these disparate systems talk to each and deliver the best service for patients.</p><p><em>IT Pro</em> approached NHS England, NHS Digital and DHSC for comment.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Six IT systems for Brexit border control at risk of failure ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/it-infrastructure/33122/six-it-systems-for-brexit-border-control-at-risk-of-failure</link>
                                                                            <description>
                            <![CDATA[ MPs brand the findings "alarming" as NAO urges government to focus on doing what it can with less than 30 days left ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">hoamouTSaMUb6rFsUrULJx</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/MvhLXgbqGRLVJ5zwR8XpGD-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 01 Mar 2019 11:26:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/MvhLXgbqGRLVJ5zwR8XpGD-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[map of brexit]]></media:description>                                                            <media:text><![CDATA[map of brexit]]></media:text>
                                <media:title type="plain"><![CDATA[map of brexit]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/MvhLXgbqGRLVJ5zwR8XpGD-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Six of the eight IT systems critical to border control after the UK leaves the European Union (EU) are at risk of failure, despite less than a month until the official withdrawal date.</p><p>There has been some progress on delivery since these systems were first assessed last year, according to the National Audit Office (NAO). But a host of systems the border delivery group (BDG), a cross-government committee managing the projects, deemed key to border control are at "significant risk" of not being embedded in time for Brexit on 29 March.</p><p><a href="https://www.parliament.uk/documents/commons-committees/public-accounts/Correspondence/The-UK-border-preparedness-for-EU-Exit-update-book.pdf" target="_blank">A memorandum</a>, released this week, provides an update on the progress relating to the issues flagged in its initial report published in October 2018.</p><p>Beyond functionality, the delivery risks include the need to ensure traders are ready to use the systems, as well as to ensure the right infrastructure and resources are in place to support their use.</p><p>The NAO's latest assessment of border systems has divided risk into two categories, IT and process, against a single view of risk in the last update in autumn.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/policy-legislation/32369/defras-no-deal-brexit-it-systems-may-not-be-ready-for-29-march" data-original-url="/policy-legislation/32369/defras-no-deal-brexit-it-systems-may-not-be-ready-for-29-march">Defra's no-deal Brexit IT systems may not be ready for 29 March</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/bugs/32143/the-facts-of-the-y2k-bug-and-why-it-was-nothing-like-brexit" data-original-url="/bugs/32143/the-facts-of-the-y2k-bug-and-why-it-was-nothing-like-brexit">The facts of the Y2K bug and why it was nothing like Brexit</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/policy-legislation/32784/tech-firms-reject-no-deal-brexit-and-pivot-towards-people-s-vote" data-original-url="/policy-legislation/32784/tech-firms-reject-no-deal-brexit-and-pivot-towards-people-s-vote">Tech firms reject no-deal Brexit and pivot towards ‘people’s vote’</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/policy-legislation/30115/uk-government-reckless-over-lack-of-brexit-border-it-investment" data-original-url="/policy-legislation/30115/uk-government-reckless-over-lack-of-brexit-border-it-investment">UK government "reckless" over lack of Brexit border IT investment</a></p></div></div><p>The six IT systems at risk include the Import of Products, Animals, Food and Feed System (IPAFFS) and Automatic Licence Verification System (ALVS), both listed as amber-red, as well as the roll-on, roll-off (RORO) customs system, deemed amber.</p><p>Alarmingly, the contingency plan for IPAFFS is also deemed at risk of not being ready in time, with its IT status rated amber, and process rated amber-red.</p><p>This infrastructure is all to some degree co-dependent, moreover, which has heightened risk across the board. One system that may be in a healthier position, for instance, but that also relies on another deemed 'high risk', would render the first at risk of failure as well.</p><p>For example, while the IPAFFS is designed to identify and record the results of biosecurity checks, it must also share these via ALVS with the Customs Handling of Import and Export Freight (CHIEF) system.</p><p>Meg Hillier MP, chair of the House of Commons' Public Accounts Committee (PAC), which published the NAO report, branded the findings as "alarming".</p><p>"The NAO's memorandum shows that with the clock ticking down there remain serious questions about whether the UK will be prepared at the border if there is 'no deal' and what this would mean for individuals and businesses," she said.</p><p>"The Public Accounts Committee will be pressing HMRC for answers on preparations for EU exit next week."</p><p>As things stand the UK is set to leave the EU without a deal in less than 30 days, barring developments in Parliament. These possibilities including a last-minute withdrawal agreement, or an extension of Article 50.</p><p>But NAO has treated 29 March as 'day zero' in its report, with a handful of the most critical systems declared as "at risk of not being delivered to time and to acceptable quality".</p><p>"In seeking to reduce the risk to the operation of the border in the event of 'no deal', BDG and departments have focused on putting in place the minimum necessary requirements for 'day one'" the report recommended.</p><p>"This includes introducing arrangements that departments believe will facilitate trade across the UK border while still seeking to meet legislative requirements."</p><p>For the last couple of years, parliament's PAC has been scrutinising the state of post-Brexit IT systems that are being managed by various departments, including the Department for Environment, Food and Rural Affairs (Defra).</p><p>In November last year, <a href="https://www.itpro.com/policy-legislation/32369/defras-no-deal-brexit-it-systems-may-not-be-ready-for-29-march" target="_blank" data-original-url="https://www.itpro.com/policy-legislation/32369/defras-no-deal-brexit-it-systems-may-not-be-ready-for-29-march">the PAC blasted the department for failing to test six critical IT systems</a> that are meant to be in place by the end of March.</p><p>These included the system now known as IPAFFS, which is being built to replace the existing Trace Control and Export System (TRACES).</p><p>Meanwhile, HMRC's CHIEF has long-expected to be replaced with an alternative system dubbed CDS, the Customs Declaration System. But progress on this had to now been minimal, with <a href="https://www.itpro.com/business/policy-and-legislation" target="_blank" data-original-url="https://www.itpro.com/policy-legislation/32071/mps-criticise-hmrc-efforts-over-brexit-customs-it-systems">Hillier writing to HMRC in October 2018</a> expressing disappointment that its timing had been slipping.</p><p>CDS was expected to be the main system to come into force in the event of a no-deal Brexit, with CHIEF running in parallel until all traders had migrated to the new regime. But HMRC decided last month to use CHIEF as its primary system "because of delays with CDS and concerns from key users including software developers".</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Apple's former ‘head of insider trading’ charged with insider trading ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/33003/apples-former-head-of-insider-trading-charged-with-insider-trading</link>
                                                                            <description>
                            <![CDATA[ The SEC accuses Gene Levoff of illicitly gaining $600,000 using advance knowledge of Apple stock performance ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">fHALf6T8fQ7SZs2dQbz3Gv</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/QX2EHLMkiptMLwrL5XEHzi-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 14 Feb 2019 10:45:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Policy and Legislation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/QX2EHLMkiptMLwrL5XEHzi-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[stocks]]></media:description>                                                            <media:text><![CDATA[stocks]]></media:text>
                                <media:title type="plain"><![CDATA[stocks]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/QX2EHLMkiptMLwrL5XEHzi-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A senior Apple lawyer entrusted to oversee the company's safeguards against employee insider trading has been charged with using confidential information to illicitly earn more than half a million dollars.</p><p>Gene Levoff allegedly used information about prospective movements in Apple's share price to earn more than $600,000 between 2011 and 2016, according to the US Securities and Exchange Commission (SEC).</p><p>Levoff, who was fired from his post as Apple's senior director of corporate law last September, was tasked with ensuring the firm's employees themselves didn't violate US insider trading laws.</p><p>But in <a href="https://www.sec.gov/litigation/complaints/2019/comp-pr2019-10.pdf" target="_blank">court filings</a> submitted yesterday, the SEC accused Levoff of making a series of illegal trades during his time with the company that led to profits of $227,000 and avoiding losses of 377,000. These trades amount to violations of the 1934 Securities Exchange Act.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/mobile/32745/apples-drop-in-sales-continues-to-affect-suppliers" data-original-url="/mobile/32745/apples-drop-in-sales-continues-to-affect-suppliers">Apple's drop in sales continues to affect suppliers</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/battery-life/32922/apple-is-facing-a-battery-of-problems" data-original-url="/battery-life/32922/apple-is-facing-a-battery-of-problems">Apple is facing a battery of problems</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/security/27735/it-admin-fleeced-expedia-for-330k-in-insider-trading-scam" data-original-url="/security/27735/it-admin-fleeced-expedia-for-330k-in-insider-trading-scam">IT admin fleeced Expedia for $330k in insider trading scam</a></p></div></div><p>"Levoff was an insider who owed a duty of trust and confidence to Apple and its shareholders not to trade on the basis of material nonpublic information that he learned through his position at Apple," the filings said.</p><p>"Further, as a member of the core group of senior Apple insiders entrusted with material nonpublic information, and as an attorney with a sophisticated understanding of securities and corporate law, Levoff knew, or was reckless in not knowing, that he had a duty of trust and confidence to the company and its shareholders."</p><p>As part of his role, Levoff set the criteria for employees, himself included, who were restricted from trading around quarterly earnings announcements. He was also party to non-public information about Apple's financial results as part of the company's Disclosure Committee.</p><p>He was, therefore, able to make profits and avoid losses on such a scale by buying and selling Apple stock in light of information that Apple's share price movement before this was made public.</p><p>For example, on at least three specific instances between 2015 and 2016, the SEC alleges, Levoff profited and avoid losses of approximately $382,000.</p><p>On one occasion, in July 2015, he was tipped off that Apple would miss analysts' estimates for iPhone sales, and sold approximately $10 million in Apple stock, ahead of what transpired to be a 4% share price fall. As a result, he avoided losses of $345,000.</p><p>Beyond maintaining Apple's procedures, including a 'blackout' around the time financial results were released, the SEC outlined how Levoff personally sent memos to employees warning against engaging insider trading despite insider trading at that time himself.</p><p>For example, Levoff sent an email to Apple employees explaining that a blackout period would last from 1 March 2011, and remain in effect "until 60 hours after earnings are released in April 2011".</p><p>The email written in all-caps stated: "REMEMBER, TRADING IS NOT PERMITTED, WHETHER OR NOT IN AN OPEN TRADING WINDOW, IF YOU POSSESS OR HAVE ACCESS TO MATERIAL INFORMATION THAT HAS NOT BEEN DISCLOSED PUBLICLY."</p><p>The SEC identified two such occasions in 2011 on which he sent such emails immediately prior to insider trading.</p><p>"Levoff's alleged exploitation of his access to Apple's financial information was particularly egregious given his responsibility for implementing the company's insider trading compliance policy," said the SEC's associate director of enforcement Antonia Chion.</p><p>"The SEC is committed to pursuing insiders who breach their duties to investors."</p><p>The complaint charges Levoff with fraud and is seeking the return of his trading profits plus interest, penalties, and a permanent injunction. The US Attorney's Office has also announced criminal charges.</p><p>Levoff's lawyer Kevin Marino <a href="https://www.cnbc.com/2019/02/13/reuters-america-update-3-u-s-charges-former-top-apple-lawyer-with-insider-trading.html" target="_blank">told <em>CNBC</em></a> he was reviewing the allegations and looked forward to defending his client. Gene Levoff has denied wrongdoing.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Errors with third-party NHS IT system led to “significant” patient risk ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/it-infrastructure/32155/errors-with-third-party-nhs-it-system-led-to-significant-patient-risk</link>
                                                                            <description>
                            <![CDATA[ More than 20,000 records were left “out-of-date” while a second issue led to patients potentially given the wrong medication ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">6napRS9x4b8XVZSN2odJGx</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 19 Oct 2018 10:28:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:description>                                                            <media:text><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:text>
                                <media:title type="plain"><![CDATA[Clinician&amp;#039;s computer meltdown]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/tyEuQhhK9U2tNQcsS28BYm-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Glitches with an IT system used across the NHS posed a "significant" clinical risk to patients, with thousands of health records left out-of-date.</p><p>The NHS discovered two errors this summer with TPP's SystmOne platform, used by more than 2,600 GP practices in England, including one failure that may have led to patients being given the wrong treatment or medication.</p><p>According to publicly-available board papers published on the NHS Digital website, seen by <em><a href="https://www.hsj.co.uk/technology-and-innovation/it-defect-results-in-thousands-of-prescription-errors/7023613.article" target="_blank">Health Service Journal</a> (HSJ) </em>and since seen by <em>IT Pro</em>, an error discovered on 14 August meant prescriptions cancelled using SystmOne were not cancelled on other systems. This includes SPINE, a platform predominantly by social care organisations and pharmacies.</p><p>A separate glitch, discovered just three days later, meant updates to patient records on TPP's platform were not carried over to their summary care record, an electronic patient record for patients in England held centrally by the NHS and accessed by clinicians.</p><p>"The clinical impact has been assessed as major due to the potential for the incorrect or inappropriate medication being provided to patients," the papers said of the first failure.</p><p>"The business impact is that practices are required to carry out clinical tasks from TPP in order to cancel the prescriptions. Practices may also have to contact pharmacies if the cancellation has been unsuccessful. Clinicians may also need to carry out a consultation with the affected patients."</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/public-sector/31558/nhs-to-receive-500m-cash-injection-for-digital-transformation" data-original-url="/public-sector/31558/nhs-to-receive-500m-cash-injection-for-digital-transformation">NHS to receive £500m cash injection for digital transformation</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/development/31571/matt-hancock-nhs-must-use-more-apps" data-original-url="/development/31571/matt-hancock-nhs-must-use-more-apps">Matt Hancock: NHS must use more apps</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/technology/31422/nhs-digital-to-create-a-de-identification-system-to-protect-data-shared-across" data-original-url="/technology/31422/nhs-digital-to-create-a-de-identification-system-to-protect-data-shared-across">NHS Digital to create a 'de-identification' system to protect data shared across healthcare</a></p></div></div><p>Of the second error, the papers added the clinical risk was "significant" because incomplete or out-of-date patient information may have led a clinician to provide "inappropriate care".</p><p>The papers were being used to brief an NHS Digital board meeting on Wednesday. According to the briefing, both errors persisted for at least four weeks and were present in the system as of 12 September, the papers added. Its persistence "significantly" breached the four-hour service level agreement (SLA).</p><p>An NHS Digital spokesperson said the organisation would not be commenting on the failures, but confirmed it was aware of the issues and has been working with TPP towards resolving them. The spokesperson did not confirm whether the issues had been resolved.</p><p>These failures are the second and third major glitches with TPP's SystmOne platform that have come to light in the last few months, after ministers revealed in July that a separate IT failure led up to <a href="https://www.itpro.com/privacy/31435/nhs-glitch-led-to-150000-patients-data-accidentally-shared-against-their-will" target="_blank" data-original-url="https://www.itpro.com/privacy/31435/nhs-glitch-led-to-150000-patients-data-accidentally-shared-against-their-will">150,000 patients' data being shared against their will</a>.</p><p>Prior to the rollout of a <a href="https://www.itpro.com/data-insights/31196/nhs-launches-data-sharing-opt-out-tool-for-patients-across-england" target="_blank" data-original-url="https://www.itpro.com/data-insights/31196/nhs-launches-data-sharing-opt-out-tool-for-patients-across-england">new national data sharing opt-out tool</a>, which has been launched in beta, an issue with the previous system handled by TPP led to a vast number of data-sharing objections not being submitted to NHS Digital's central service.</p><p>The coding error meant 150,000 preferences set between March 2015 and June 2018 in GP practices running SystmOne software were not sent to NHS Digital.</p><p>NHS Digital's CEO Sarah Wilkinson told the board on Wednesday she was "very disappointed" as this was likely to damage public trust in how data-sharing opt-outs are handled in future. She reassured attendees the new system is not reliant on third-party providers such as TPP used by GPs, and will instead rely on an in-house platform.</p><p>The first glitch concerning repeat prescriptions not showing as cancelled, highlighted by the paper, raises concerns in light of plans announced this week to introduce a new digital system to administer free prescriptions to patients.</p><p>A new system to verify patient identity in real-time, and automate certain functions, is being developed in an <a href="https://www.itpro.com/digital-transformation/32127/nhs-to-pilot-digital-checks-to-clamp-down-on-prescription-fraud" target="_blank" data-original-url="https://www.itpro.com/digital-transformation/32127/nhs-to-pilot-digital-checks-to-clamp-down-on-prescription-fraud">effort to clamp down on prescription fraud in England</a>, which the government says is worth 256.1 million per year.</p><p>But the move was criticised by health experts who are concerned that various IT failures, exemplified by the one detected in August, may inadvertently lead to patients being charged for medication that they are entitled to for free.</p><p>"What if the computer says no?" said the chair of the board for the Royal Pharmaceutical Society in England Sandra Gidley, speaking with <em>BBC Breakfast</em>.</p><p>"This is a real dilemma. Because sometimes somebody has free prescriptions legitimately - they've got a medical exemption - they're something like a diabetic, they might forget to renew it, computer says no, you're not going to deny a diabetic their insulin, for example.</p><p>"This is potentially fraught with problems and we can't get the NHS systems talking to each other at the moment, so how the secretary of state thinks he's going to manage it for the Department for Work and Pensions (DWP) and other agencies when they can't even get Universal Credit (UC) right is slightly mystifying."</p><p><em>IT Pro</em> approached TPP for comment but the company did not respond at the time of writing. A spokesperson told <em>HSJ</em> both errors have been fixed, and that the firm was working with GP practices to ensure any incorrect prescriptions or records were corrected.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ NHS England’s £330m cost-cutting deal with Capita 'put patients at risk' ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/outsourcing/31153/nhs-england-s-330m-cost-cutting-deal-with-capita-put-patients-at-risk</link>
                                                                            <description>
                            <![CDATA[ Botched deal to deliver back-office services and transform 20-year-old IT system slammed by National Audit Office ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">8nGn7X6dR4sP5E2RFdQpYd</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/VGLGy8xHqUWB2uNTZoNJyQ-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 18 May 2018 09:31:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Digital Transformation]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/VGLGy8xHqUWB2uNTZoNJyQ-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[hospital]]></media:description>                                                            <media:text><![CDATA[hospital]]></media:text>
                                <media:title type="plain"><![CDATA[hospital]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/VGLGy8xHqUWB2uNTZoNJyQ-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A 330 million deal between NHS England and Capita to outsource administration and transform services, in part due to a legacy IT system NHS England considered unsustainable, had the potential to seriously harm patients.</p><p>The National Audit Office (NAO) <a href="https://www.nao.org.uk/report/nhs-englands-management-of-the-primary-care-support-services-contract-with-capita" target="_blank">slammed the seven-year deal struck</a> in 2015 with Capita, a professional services firm, to undertake the duties of a newly formed unit named Primary Care Support England (PCSE) - all while cutting costs by 35%.</p><p>The NAO said neither NHS England nor Capita "fully understood the complexity and variation" of the service, which involved performing a range of back-office functions to support around 39,000 primary care practitioners including administering payments to GP practices, opticians and pharmacies; delivering pensions, ordering supplies and moving patients' medical records.</p><p>The NAO concluded: "The service to primary care practitioners, including Capita's delivery of PCSE, has fallen a long way below an acceptable standard. This had an impact on the delivery of primary care services and had the potential to seriously harm patients."</p><p>The report highlighted one instance of 87 women incorrectly told they were no longer part of the cervical cancer screening programme. Capita says the wrong letter was sent by mistake following an incorrect mail merge, and that the women affected were promptly issued correction letters.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/staffing/robots/27750/capita-outsources-jobs-to-robots-despite-own-report-saying-nothing-to-fear" data-original-url="/staffing/robots/27750/capita-outsources-jobs-to-robots-despite-own-report-saying-nothing-to-fear">Capita outsources jobs to robots, despite own report saying nothing to fear</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment" data-original-url="/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment">One year after WannaCry, zero NHS trusts pass cyber security assessment</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/strategy/25511/outsourcing-the-advantages-and-disadvantages" data-original-url="/strategy/25511/outsourcing-the-advantages-and-disadvantages">Outsourcing: The advantages and disadvantages</a></p></div></div><p>NHS England undertook these back-office functions in April 2013, having previously been performed locally by primary care trusts, which were abolished in an NHS restructuring. These services, comprising 1,650 staff across 47 offices, were fragmented, and lacked coherent leadership or standards, according to the 51-page report, leading to variation in delivery.</p><p>Moreover, NHS England felt the 20-year-old IT system running across 82 databases was in urgent need of replacement, with the organisation concluding it "did not have the necessary skills in transforming services through better use of IT"; deciding to outsource the service to a private company.</p><p>As part of the deal, NHS England hoped to instigate digital transformation and deliver high-quality support services, all while reducing costs by 35% in the first year - aims the NAO branded "ambitious". The objectives involved moving services from 38 sites across England to three, opening a national customer support centre, and introducing an online portal to provide access to manage PCSE services, among others.</p><p>The terms of the deal also aimed to invest in new, modern information technology and updated processes.</p><p>"Neither NHS England nor Capita fully understood the complexity and variation of the services being outsourced," said Amyas Morse, the head of the NAO. "As a result, both parties misjudged the scale and nature of the risk in outsourcing these services.</p><p>"While NHS England has achieved financial savings and some services have now improved, value for money is about more than just cost reduction. It is deeply unsatisfactory that, two and a half years into the contract, NHS England and Capita have not yet reached the level of partnership working required to make a contract like this work effectively."</p><p>In February 2018 there were seven severe service failures recorded against performance indicators, while NHS England applied 5.3 million in contract penalties between January 2016 and April 2017.</p><p>NHS England has made savings, in line with expectations, of 60 million in the first two years of the contract, as the financial risk of increased costs sits with Capita who have made a 125 million loss over this period, according to the NAO.</p><p>A Capita spokesperson said the report concluded the complex nature of the support services outsourced by NHS England was not fully understood at the time the contract was signed.</p><p>"The report notes that several organisations and legacy issues all contributed to underperformance," she said.</p><p>"It has been acknowledged that performance has improved and Capita will continue to work with all parties to address the remaining service issues. We have accepted accountability for not meeting our high standards of service previously.</p><p>"Our new Chief Executive has made it clear that Capita previously has taken on some contracts that contained too many unknowns. Our new strategy will ensure we focus on doing fewer things better and securing business that we know can be delivered well."</p><p>This isn't the first time Capita has failed to deliver on a major government IT contract. In 2014 the Ministry of Defence (MoD) came under fire for <a href="https://www.itpro.com/public-sector/21392/botched-it-project-costs-mod-millions" target="_blank" data-original-url="https://www.itpro.com/public-sector/21392/botched-it-project-costs-mod-millions">wasting millions of pounds on the delayed deployment of an online recruitment tool</a> for the military. The system, which was run by Capita, only went live in 2017 - five years after the deal was first signed, and was reportedly riddled with bugs.</p><p>The company, described as Britain's biggest outsourcing company, has <a href="https://www.ft.com/content/c12ddc0c-47c9-11e8-8ee8-cae73aab7ccb" target="_blank">failed to win a single government contract</a> since it issued a shock profit warning in January that subsequently wiped 1 billion of its share values in one day. Only last month the ailing professional services firm also <a href="https://news.sky.com/story/capita-in-701m-cash-call-as-it-reports-5131m-pre-tax-loss-11343634" target="_blank">declared a pre-tax loss of 513 million for 2017</a>.</p><p><em>IT Pro</em> approached NHS England for comment.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Up to 270 women 'may have died' due to breast cancer screening IT error ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/public-sector/31057/up-to-270-women-may-have-died-due-to-breast-cancer-screening-it-error</link>
                                                                            <description>
                            <![CDATA[ Jeremy Hunt reveals coding mistake led to 450,000 missed screenings ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">57wKgTuwTnGEaxtzTw8TfF</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/3aPoxCMvQhqSiwauzyKh65-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 03 May 2018 11:41:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Public Sector]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Joe Curtis ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/3aPoxCMvQhqSiwauzyKh65-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                                                                                                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/3aPoxCMvQhqSiwauzyKh65-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>Up to 270 women may have died after an NHS computer algorithm error resulted in missed breast cancer screenings, health secretary Jeremy Hunt admitted yesterday.</p><p>The "serious failure" in the code governing the NHS's national breast screening programme occurred in 2009, but only came to light when Public Health England (PHE) analysed the service earlier this year.</p><p>That meant that 450,000 women who should have been invited to breast cancer screenings from 2009 to the start of 2018 were not.</p><p>Hunt estimated that between 135 and 270 women may have "had their lives shortened" because of the error.</p><p>Hunt told the House of Commons: "At this stage, it is unclear whether any delay in diagnosis will have resulted in any avoidable harm or death, and that is one of the reasons I am ordering an independent review to establish the clinical impact.</p><p>"Tragically, there are likely to be some people in this group who would have been alive today if the failure had not happened."</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/wannacry/31020/nhs-aims-to-solve-cyber-security-issues-with-windows-10-migration-by-2020-deadline" data-original-url="/wannacry/31020/nhs-aims-to-solve-cyber-security-issues-with-windows-10-migration-by-2020-deadline">NHS aims to solve cyber security issues with Windows 10 migration by 2020 deadline</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/general-data-protection-regulation-gdpr/30917/nhs-trusts-spend-1-million-to-prepare-for-gdpr" data-original-url="/general-data-protection-regulation-gdpr/30917/nhs-trusts-spend-1-million-to-prepare-for-gdpr">NHS trusts spend £1 million to prepare for GDPR</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/cognitive-technology/30287/nhs-england-urged-to-adopt-ai-to-boost-digital-efforts" data-original-url="/cognitive-technology/30287/nhs-england-urged-to-adopt-ai-to-boost-digital-efforts">NHS England urged to adopt AI to boost digital efforts</a></p></div></div><p>Of the half a million women who should have been invited to a scan, an estimated 309,000 are still alive. The Department of Health is sending letters to 65,000 of them this week, and intends to contact all those registered with a GP by the end of the month.</p><p>The IT failure - which concerned how age parameters were programmed into the system - was resolved on 1 April, PHE said, and won't affect patients in future.</p><p>PHE found the problem when an upgrade to the breast screening invitation IT system gave local services more granular data on the ages of women being invited to screenings.</p><p>The data showed that some women on a trial called AgeX, created to explore whether women aged up to 73 could benefit from screenings, were not receiving invitations to their final screening which was due when they were 70 years old.</p><p>The analysis found other issues such as a lack of consistency in how different NHS surgeries send out invitations to women.</p><p>Hunt ordered an independent review into the programme, its IT system and processes, saying: "Many in this House will also have legitimate questions that need answering: why did the algorithm failure occur in the first place, and how can we guarantee it does not happen again?</p><p>"Why did quality assurance processes not pick up the problem over a decade or more? Were there any warnings, written or otherwise, which should have been heeded earlier? Was the issue escalated to ministers at the appropriate time? What are the broader patient safety lessons for screening IT systems?"</p><p>Lynda Thomas, chief executive of Macmillan Cancer Support, and Professor Martin Gore, consultant medical oncologist and professor of cancer medicine at the Royal Mardsen, will chair the review, which is expected to report in six months.</p><p>Shadow secretary for health, John Ashworth, questioned what assurances Hunt could provide that bowel cancer and cervical cancer screenings for women aged between 60 and 74 "are running properly".</p><p>Hunt replied that the government must "need to find ways to improve oversight, and modern IT systems can greatly improve safety and reliability".</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ NHS aims to solve cyber security issues with Windows 10 migration by 2020 deadline ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/wannacry/31020/nhs-aims-to-solve-cyber-security-issues-with-windows-10-migration-by-2020-deadline</link>
                                                                            <description>
                            <![CDATA[ Government deal with Microsoft will upgrade XP machines one year after WannaCry ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">8cznYYH633QGDwuWuJqYHf</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/tXqJNLL29ZERv7RyA3pJuB-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Mon, 30 Apr 2018 09:43:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Ransomware]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Keumars Afifi-Sabet ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/EAvwpZggMZ2K5h8s2pTAEm.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/tXqJNLL29ZERv7RyA3pJuB-1280-80.jpg">
                                                            <media:credit><![CDATA[Shutterstock]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[A stethoscope on top of a MacBook keyboard]]></media:description>                                                            <media:text><![CDATA[A stethoscope on top of a MacBook keyboard]]></media:text>
                                <media:title type="plain"><![CDATA[A stethoscope on top of a MacBook keyboard]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/tXqJNLL29ZERv7RyA3pJuB-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>The Department of Health has agreed a deal with Microsoft to roll Windows 10 out across the NHS by 2020 in a bid to bolster hospitals' cybersecurity defences, which have been savaged by experts in recent months.</p><p>The long-awaited upgrade from Windows XP, which Microsoft stopped supporting four years ago, comes almost a year after the WannaCry ransomware attack spread havoc across IT systems in the NHS.</p><p>As part of the deal, NHS devices will be upgraded to Windows 10, with Microsoft pushing the latest security updates to NHS machines as soon as they become available. </p><p>Trusts will be allowed to upgrade their devices to Windows 10 free of cost if they join a special service being set up to manage the rollout - but they must do so by January 14 2020.</p><p>This coincides with the date Microsoft will stop supporting Windows 7 with security updates. </p><p>"Central funding for Windows operating systems licenses will not be available to organisations who are not part of the service," an NHS Digital spokesperson said.</p><p>They added: "NHS organisations have already successfully migrated more than 100,000 NHS devices to the Windows 10 operating system, and guidance and support to help trusts with their migration will be provided as part of the service."</p><p>While Windows 10 boasts apps like SmartScreen and antivirus tools like Windows Defender to detect viruses, phishing and malware, as well as isolate infected machines and kill malicious processes before they are allowed to spread, the NHS has long been running XP, despite it reaching end-of-life in April 2014.</p><p>Trusts that upgrade will also get access to Windows Defender Advanced Threat Protection (WDATP), a security service that will allow NHS organisations to detect, investigate, and respond to advanced threats on their networks.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/wannacry/30470/all-200-nhs-trusts-fail-latest-cybersecurity-standards" data-original-url="/wannacry/30470/all-200-nhs-trusts-fail-latest-cybersecurity-standards">All 200 NHS trusts fail latest cybersecurity standards</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment" data-original-url="/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment">One year after WannaCry, zero NHS trusts pass cyber security assessment</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/security/28648/nhs-ransomware-attack" data-original-url="/security/28648/nhs-ransomware-attack">NHS ransomware: UK government says it's North Korea's fault WannaCry happened</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/public-sector/27740/nine-in-10-nhs-trusts-still-use-windows-xp" data-original-url="/public-sector/27740/nine-in-10-nhs-trusts-still-use-windows-xp">Nine in 10 NHS trusts still use Windows XP</a></p></div></div><p>"We know cyber attacks are a growing threat, so it is vital our health and care organisations have secure systems which patients trust," said Jeremy Hunt, the government's health and social care secretary.</p><p>"We have been building the capability of NHS systems over a number of years, but there is always more to do to future-proof our NHS as far as reasonably possible against this threat. This new technology will ensure the NHS can use the latest and most resilient software available - something the public rightly expect."</p><p>The announcement comes a fortnight after Parliament's Public Accounts Committee (PAC) published a damning report revealing that <a href="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment" target="_blank" data-original-url="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment">not a single NHS t</a><a href="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment" target="_blank" data-original-url="https://www.itpro.com/wannacry/30956/one-year-after-wannacry-zero-nhs-trusts-pass-cyber-security-assessment">rust passed its cyber security assessment</a>, revealing that some trusts had failed "soley because they had not patched their systems - the main reason the NHS had been vulnerable to WannaCry". </p><p>WannaCry affected 300,000 computers across 150 countries in May last year. The National Audit Office (NAO) found that <a href="https://www.nao.org.uk/report/investigation-wannacry-cyber-attack-and-the-nhs" target="_blank">at least 34% of NHS trusts in the UK were disrupted by the attack</a>, leading to the cancellation of 6,900 appointments.</p><p>Although the NHS was not a target, it became swept up in the attack in light of its cyber security vulnerabilities, with critics pointing out that Windows XP is a major attack vector for hackers, given the lack of patches for security holes. However, an analysis of affected computers at the time, conducted by Kaspersky Lab, found that Windows 7 was responsible for 97% of infections, with Windows XP contributing a negligible number. Windows 10 was unaffected by WannaCry.</p><p>Shortly afterwards <a href="https://www.itpro.com/malware/29055/nhs-gets-21m-to-boost-cyber-defences-after-wannacry-ransomware" target="_blank" data-original-url="https://www.itpro.com/malware/29055/nhs-gets-21m-to-boost-cyber-defences-after-wannacry-ransomware">the Department of Health allocated 21 million to bolster the NHS' defences</a>, as the government accepted the recommendations set out by the National Data Guardian and Care Quality Commission reviews into security standards carried out before WannaCry - but the trusts still failed the recent PAC assessment.</p><p>Deputy chief executive of NHS Digital, Rob Shaw, said: "The new Windows operating system has a range of advancements in security and identity protection that will help us to support trusts to keep their data safe from attacks and which will cover both desktop and mobile devices.</p><p>"The additional funding will mean we can add an extra layer of protection, whilst boosting our existing services, with real-time monitoring of NHS networks and the ability to see potential threats right down to individual NHS organisations."</p><p>When XP fell out of support four years ago, the government signed a 5 million custom support deal for computers still running the aged OS in the NHS, police and other public bodies, an agreement <a href="https://www.itpro.com/operating-systems/24672/gov-ends-55m-xp-custom-support-contract" target="_blank" data-original-url="https://www.itpro.com/operating-systems/24672/gov-ends-55m-xp-custom-support-contract">that ended in May 2015</a> despite many machines still stuck on XP.</p><p>When <em>IT Pro</em> spoke to the Metropolitan Police's CIO, Angus McCallum, earlier this year, <a href="https://www.itpro.com/operating-systems/30310/met-police-set-to-finish-windows-xp-upgrade-in-may" target="_blank" data-original-url="https://www.itpro.com/operating-systems/30310/met-police-set-to-finish-windows-xp-upgrade-in-may">he claimed the last machines running XP would be upgraded by May</a>.</p><p>The Department of Health refused to disclose the cost of the Microsoft deal, saying this was commercially sensitivity information, but clarified it is not part of a wider 150 million investment over the next three years, announced this weekend, which includes money to set up a new NHS Digital Security Operations Centre. </p><p><em>IT Pro</em> has contacted NHS Digital about the number of devices the Windows 10 upgrade will apply to, and the timescale for the project.</p><p>"The importance of helping to protect the NHS from the growing threat of cyber-attacks cannot be overstated," said Cindy Rose, chief executive of Microsoft UK. "The introduction of a centralised Windows 10 agreement will ensure a consistent approach to security that also enables the NHS to rapidly modernise its IT infrastructure."</p><p><em>Picture: Shutterstock</em></p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ SAP HANA must navigate fears around licensing and skills ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-process-management-bpm/30619/sap-hana-must-navigate-fears-around-licensing-and-skills</link>
                                                                            <description>
                            <![CDATA[ Research: HANA is a business driver, but SAP has more to do to help users ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">tPJD1y7jzeGFVbSkyfEt6P</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/6qs5DLarTifrN6jwxVZqnM-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 23 Feb 2018 15:37:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Cloud Hosting]]></category>
                                                    <category><![CDATA[Cloud]]></category>
                                                                                                                    <dc:creator><![CDATA[ Joe Curtis ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/6qs5DLarTifrN6jwxVZqnM-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[SAP racing yacht]]></media:description>                                                            <media:text><![CDATA[SAP racing yacht]]></media:text>
                                <media:title type="plain"><![CDATA[SAP racing yacht]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/6qs5DLarTifrN6jwxVZqnM-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>SAP customers face a confusing array of options and a lack of clarity around licensing when they approach adopting HANA, the company's in-memory data processing platform.</p><p>This is according to research conducted by SAP HANA implementation specialist Centiq, which surveyed 250 UK HANA users across industries including financial services, manufacturing and retail.</p><p>While HANA adoption is accelerating among SAP's customer base, users face real challenges too from a variety of deployment choices to concerns over how SAP will license their usage, discovered Centiq's <em>State of SAP HANA Report</em>, which was released yesterday.</p><p>"When SAP HANA launched in 2011, many initially struggled to create compelling business cases or measurable ROI," said Centiq COO Matt Lovell. "Seven years later, this has changed."</p><p>Now, 61% of organisations are adopting HANA to process data faster to inform decision-making, while 60% want to integrate data from different sources, and 59% want to use it to gain greater customer insights.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/strategy/28938/do-saps-licensing-changes-signal-a-break-with-complexity" data-original-url="/strategy/28938/do-saps-licensing-changes-signal-a-break-with-complexity">Do SAP's licensing changes signal a break with complexity?</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/software-as-a-service-saas/30461/sap-confirms-end-date-for-mobile-platform-support" data-original-url="/software-as-a-service-saas/30461/sap-confirms-end-date-for-mobile-platform-support">SAP confirms end date for mobile platform support</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/desktop-software/27616/just-5-of-uk-sap-customers-have-deployed-s4-hana" data-original-url="/desktop-software/27616/just-5-of-uk-sap-customers-have-deployed-s4-hana">Just 5% of UK SAP customers have deployed S/4 HANA</a></p></div></div><p>However, while three-quarters of HANA deployments are delivered on time and on budget, concerns remain for businesses that are still considering whether or not to adopt it.</p><p>Direct access to HANA applications was a key concern for 86% of respondents, despite SAP's attempts to address ambiguity around its licensing last year.</p><p>Customers are concerned they will be stung in audits for access to SAP systems that are not covered by their per-user licensing agreements, and <a href="https://www.itpro.com/saas/28668/sap-updates-pricing-structure-for-indirect-access-to-services" target="_blank" data-original-url="https://www.itpro.com/saas/28668/sap-updates-pricing-structure-for-indirect-access-to-services">SAP introduced exceptions for read-only data and some transactions</a> last summer to try and address the problem.</p><p>But Paul Cooper, chairman of the UK & Ireland SAP User Group, told <em>IT Pro</em>: "We are still waiting to see the broader picture talking about other business processes that weren't in that initial announcement from SAP.</p><p>"<a href="https://www.itpro.com/strategy/28938/do-saps-licensing-changes-signal-a-break-with-complexity" target="_blank" data-original-url="https://www.itpro.com/strategy/28938/do-saps-licensing-changes-signal-a-break-with-complexity">There's the whole IoT piece [that needs resolving]</a> and implications around Leonardo [SAP's product group for new tech like AI and blockchain]. It would be great when new solutions are announced that SAP would talk about licensing then too."</p><p><strong>Changing skills</strong></p><p>Skills is another obstacle customers must overcome, with 94% citing it as a barrier. Confusion over what skills are needed is also a problem, with respondents working in data roles citing a lack of cloud infrastructure skills, while 70% of COO respondents identifying a lack of business process change talent.</p><p>Meanwhile, 68% of CIOs said more knowledge of SAP's HANA-based ERP suite, S/4 HANA, was required.</p><p>Centiq surmised that the new skills necessary are more business-based than IT-based, with only 58% of respondents saying they need HANA database skills, and 59% requiring cloud skills. In fact, just 24% of HANA projects were led by IT this time out, compared to 52% in the last report.</p><p>SAP User Group chairman Cooper said the state of the economy and worries around future prosperity have played their part in this shift.</p><p>"Business cases are having to be more robust than they have been before in terms of pay back and user benefit," he said, "so it doesn't surprise me that business users are having more of a say in that because there's a finite pot will be spent and organisations don't want to be making the wrong decisions."</p><p><strong>Cloud</strong></p><p>SAP has already <a href="http://www.channelpro.co.uk/news/10727/sap-confirms-end-date-for-mobile-platform-support" target="_blank">announced a 2021 end-of-life for its on-premise Mobile Platform</a>, and organisations can only enjoy support for the vendor's ERP suite ECC 6.0 until 2025.</p><p>With SAP trying to push as many customers towards the cloud as possible, however, users are still confused about their options.</p><p>Most are deploying HANA in a public cloud like AWS, or on both public cloud and on-premise. Just 6% are running production workloads in SAP's cloud.</p><p>"Public cloud dominates over SAP cloud because organisations are looking for more than just SAP HANA," the report stated. "For organisations to get the maximum ROI from their SAP HANA deployment, they must be able to link it to other services, for example Enterprise Content Management (ECM), fulfillment and customer experience, which are already hosted on public cloud."</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ Ex-Google engineer slams company as 'arrogant' and lacking innovation ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/business-strategy/30381/ex-google-engineer-slams-company-as-arrogant-and-lacking-innovation</link>
                                                                            <description>
                            <![CDATA[ Steve Yegge says his inspiration has been 'beaten out' of him ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">55wX8THRaYYMAvALtAP6nR</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/vX7g5bKW2REdA6FgajS6eT-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Thu, 25 Jan 2018 11:26:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Careers and Training]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Adam Shepherd ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/3n2BoLAtRj8Z5eRfxtwyK8.jpg ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/vX7g5bKW2REdA6FgajS6eT-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                                                                                                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/vX7g5bKW2REdA6FgajS6eT-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>A former senior researcher at Google has slammed the company, saying it's no longer innovative and merely chases trends.</p><p>Senior staff software engineer Steve Yegge left Google after a career spanning over 10 years, stating in <a href="https://medium.com/@steve.yegge/why-i-left-google-to-join-grab-86dfffc0be84" target="_blank">a lengthy blog post</a> that he left because "[Google] can no longer innovate. They've pretty much lost that ability".</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/machine-learning/30307/google-lets-developers-add-machine-learning-to-their-apps" data-original-url="/machine-learning/30307/google-lets-developers-add-machine-learning-to-their-apps">Google lets developers add machine learning to their apps</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/policy-legislation/30209/google-maps-policy-update-bans-former-employees-from-leaving-business" data-original-url="/policy-legislation/30209/google-maps-policy-update-bans-former-employees-from-leaving-business">Google Maps policy update bans former employees from leaving business reviews</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/strategy/29910/volkswagen-and-google-delve-into-quantum-computing" data-original-url="/strategy/29910/volkswagen-and-google-delve-into-quantum-computing">Volkswagen and Google delve into quantum computing</a></p></div></div><p>Yegge blamed this loss of innovation on four factors. He said that as the company has grown, it has become focused on protecting its existing assets, which has made it conservative and risk-averse.</p><p>Politics, he said, was another limiting factor. As one of the largest and most influential tech companies on the face of the planet, Google is heavily involved in political discussions at the highest levels of government <a href="https://www.itpro.com/business-operations/30361/google-outspent-any-other-company-in-lobbying-for-the-first-time" target="_blank" data-original-url="https://www.itpro.com/business-operations/30361/google-outspent-any-other-company-in-lobbying-for-the-first-time">it spent $18 million on political lobbying in 2017</a>. While Yegge noted this is "sort of inevitable" with a company of Google's size and "not necessarily bad", he also pointed out that it has slowed the company down and introduced new problems.</p><p>Yegge also slammed Google's attitude as "arrogant", stating that a sense of corporate invincibility within the company has led to its strategy becoming a mess. He implied that the business has lost touch with customer and that its strategic decision-making has become poor.</p><p>"Their attempts at innovation have been confusing and mostly unsuccessful for close to a decade," he said. "Googlers know this is happening and are as frustrated by it as you are, but their leadership is failing them."</p><p>However, the biggest and most egregious error that Google has made, in Yegge's eyes, is becoming "100% competitor-focused rather than customer focused". Google's internal incentive structure, he claims, doesn't support a customer-focused attitude, so staff are too busy to make it a priority.</p><p>Instead, Yegge says that the company rewards the successful launch of new features and products, and that in order to achieve this, Google simply copies what its rivals are doing.</p><p>"You can look at Google's entire portfolio of launches over the past decade, and trace nearly all of them to copying a competitor: Google+ (Facebook), Google Cloud (AWS), Google Home (Amazon Echo), Allo (WhatsApp), Android Instant Apps (Facebook, WeChat), Google Assistant (Apple/Siri), and on and on and on," he said.</p><p>"They are stuck in me-too mode and have been for years. They simply don't have innovation in their DNA any more. And it's because their eyes are fixed on their competitors, not their customers."</p><p>While Yegge praised certain products and initiatives, such as Cloud Spanner, BigQuery, TensorFlow and Waymo as "generational innovations", he blasted the rest of its output, saying that the company's successes "do not excuse nor justify the parade of failed me-too consumer products that Google has been launching of late".</p><p>The changes in the company's attitude over Yegge's time at Google, he says, has driven him to take a job at Grab, an Uber competitor based in Southeast Asia.</p><p>"In short, Google just isn't a very inspiring place to work anymore. I love being fired up by my work, but Google had gradually beaten it out of me."</p><p><em>IT Pro</em> contacted Google for a response to Yegge's claims, but hadn't received a response at the time of publication.</p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ 2018: The year of data insurance ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/data-breaches/30238/2018-the-year-of-data-insurance</link>
                                                                            <description>
                            <![CDATA[ Damaging data breaches are behind a growing demand for specific data insurance policies ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">eMKqQRCBZYn3NYxAxnqDbS</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/UXv5HEKxPYL3giTzaWFHjC-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Fri, 05 Jan 2018 11:20:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Data Breaches]]></category>
                                                    <category><![CDATA[Security]]></category>
                                                                                                                    <dc:creator><![CDATA[ Esther Kezia Thorpe ]]></dc:creator>                                                                                    <dc:source><![CDATA[ https://cdn.mos.cms.futurecdn.net/LPPgWan5PqHyFNtSS9gnbR.png ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                <cf:isSponsored>false</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/UXv5HEKxPYL3giTzaWFHjC-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                                                                                                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/UXv5HEKxPYL3giTzaWFHjC-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>For many companies, data is a critical business asset. But how can the value of that data be measured? And what happens when that data is lost or stolen?</p><p>The constant occurrence of high profile data breaches shows how crippling a threat to a company's data can be, and the irreparable damage it causes to organisations' reputations. In addition to this, the Ponemon Institute estimated the average total cost of a data breach in 2017 at $3.62 million.</p><p>But are companies doing everything they can to protect and insure their data? One industry rapidly growing in response to data breaches is the cyber security insurance market. This industry has seen 30% year-on-year growth, with the industry set to reach $5.6 billion in annual gross written premium by 2020, according to AON.</p><p>Cyber and privacy insurance covers a business's liability for a data breach in which the customer's personal information is exposed or stolen by a hacker.</p><h2 id="insuring-the-uninsurable">Insuring the uninsurable</h2><p>However, even with the market's growth and the continued threat of data breaches, only <a href="https://www.scmagazineuk.com/cyber-security-breaches-cost-british-businesses-almost-30-billion-in-2016/article/641410" target="_blank">19% of UK companies</a> are covered for losses associated with cyber security breaches and data theft. PwC say that the amount of cover insurers offer does not come close to the potential losses seen by companies from a truly damaging cyber attack.</p><p>There is also a nervousness among insurers themselves to shoulder the risks: half of insurers in the UK do not actively pursue cyber insurance as an area of growth, believing the risk to be "borderline insurable", and those who do offer it tend to limit the amount of cover offered under each policy, <a href="https://uk.reuters.com/article/uk-britain-cyber/fewer-british-firms-have-cyber-insurance-policies-pwc-idUKKCN12514Q" target="_blank">according to PwC</a>.</p><p>But with the increase in breaches and companies' subsequent losses, it seems likely that coverage will broaden over the next year or so, as no one is immune to the threat of a data breach.</p><h2 id="valuing-data">Valuing data</h2><p>Doug Laney, an analyst at Gartner, recently wrote a book (titled <em>Infonomics: How to Monetize, Manage, and Measure Information for Competitive Advantage</em>) that provides distinct models on how companies across all industries can review the value of their data, both in non-financial models and financial models.</p><div  class="fancy-box"><div class="fancy_box-title"></div><div class="fancy_box_body"><p class="fancy-box__body-text"><a data-analytics-id="inline-link" href="https://www.itpro.com/cloud-security/30231/cloud-security-is-top-priority-for-83-of-organisations" data-original-url="/cloud-security/30231/cloud-security-is-top-priority-for-83-of-organisations">Cloud security is top priority for 83% of organisations</a> <a data-analytics-id="inline-link" href="https://www.itpro.com/security/30189/experian-data-on-120-million-users-found-in-leaky-aws-bucket" data-original-url="/security/30189/experian-data-on-120-million-users-found-in-leaky-aws-bucket">Experian data on 120 million users found in leaky AWS bucket</a></p></div></div><p>Non-financial models focus on the intrinsic value, the business value and the performance value of the data. These data values can measure a company's uniqueness, accuracy, relevancy, internal efficiencies and overall impact of its usage.</p><p>Financial models focus on the cost value, the economic value and the market value of the data. These data values can measure the cost of acquiring data, administering the data internally and the value of selling or licensing a company's data.</p><p>Data as a commodity means its value will only increase, and ultimately drive new questions and conversations about how this raw material can continue to project companies to greater heights and help them gain new advantages. But as its value increases and drives a company's wealth-creation strategies, it becomes a bigger target for cyber criminals too, leading companies to seek to protect it. While insurers haven't stepped in yet, the surge of breaches in 2016 and 2017 arguably makes 2018 the year more will begin to offer insurance policies for this increasingly valuable asset.</p><p><em>Picture: Shutterstock</em></p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
                                <item>
                                                            <title><![CDATA[ The cost of the unknown ]]></title>
                                                                                                                                                                                                <link>https://www.itpro.com/security/27693/the-cost-of-the-unknown</link>
                                                                            <description>
                            <![CDATA[ Are risk intelligence tools the best money your IT department has ever spent? ]]>
                                                                                                            </description>
                                                                                                                                <guid isPermaLink="false">uKajnBsj1QmzWTMcG4pKsf</guid>
                                                                                                <enclosure url="https://cdn.mos.cms.futurecdn.net/JqVzEaAV4hsm9xfA6arrD9-1280-80.jpg" type="image/jpeg" length="0"></enclosure>
                                                                        <pubDate>Tue, 24 Jan 2017 11:04:00 +0000</pubDate>                                                                                                                                                                                                                                <category><![CDATA[Leadership]]></category>
                                                    <category><![CDATA[Business]]></category>
                                                                                                                    <dc:creator><![CDATA[ Maggie Holland ]]></dc:creator>                                                                                    <dc:source><![CDATA[ null ]]></dc:source>
                                                                <dc:description><![CDATA[ null ]]></dc:description>
                                                                                                                                    <sponsoredContent>true</sponsoredContent>
                                <cf:isSponsored>true</cf:isSponsored>
                <cf:hasAffiliateLinks>false</cf:hasAffiliateLinks>
                <cf:isPaid>false</cf:isPaid>
                                                                                                                                <media:content type="image/jpeg" url="https://cdn.mos.cms.futurecdn.net/JqVzEaAV4hsm9xfA6arrD9-1280-80.jpg">
                                                            <media:credit><![CDATA[null]]></media:credit>
                                                                                                                                                                                                                                    <media:description><![CDATA[Risk management]]></media:description>                                                            <media:text><![CDATA[Risk management]]></media:text>
                                <media:title type="plain"><![CDATA[Risk management]]></media:title>
                                                    </media:content>
                                                    <media:thumbnail url="https://cdn.mos.cms.futurecdn.net/JqVzEaAV4hsm9xfA6arrD9-1280-80.jpg" />
                                                                                                                                                                    <content:encoded >
                            <![CDATA[
                            <article>
                                <p>No-one likes uncertainty. It makes it hard to plan and to forge a way forward where you know what will happen, why and when. </p><p>In the corporate world especially the SMB space uncertainty can sap appetite for taking risk and growing the business, stunting innovation and limiting market opportunities. Technology offers a way forward, a way of empowering even the smallest of business to think big and act big in ways that belie their actual stature. </p><p>"The importance of technology and the IT professionals who support it is a well-known fact of business success," said Joseph Kim, senior vice president and chief technology officer, SolarWinds. </p><p>"We want to draw attention to the mounting responsibility being placed on IT professionals to manage an ever-expanding array of technologies - both those owned by businesses and those beyond, such as end user-owned devices and cloud applications provided by third-party vendors. Our surveys reveal that more than ever, end users are connecting more devices, including those personally-owned, to corporate networks; relying on cloud-based applications; and working outside the four walls of traditional offices. These are all trends that take direct control out of the hands of IT departments, yet as the surveys also demonstrate, the demands on IT professionals to support and ensure the performance of related technologies are just as high."</p><p>However, getting investment of any kind, particularly when it comes to technology, can be an uphill struggle for the average business. Often, the person in charge of IT is the same person in charge of everything and anything else. And, while they may see the merits of the technology in question, they have too many other conflicting priorities so it never quite makes the grade.</p><p>But it's for these very same reasons of limited resources and conflicting priorities that SMBs really do need to sit up and listen when it comes to how technology can protect their most vital asset: information.</p><p><strong>The security elite?</strong></p><p>Security should not be the preserve of bigger businesses, which seemingly have limitless IT budgets, dedicated tech departments and ever-growing human resources. The right to protect your company's and your customers' data should be a given. </p><p>"The most surprising finding of the survey is just how many UK organisations are less vulnerable today than they were a year ago, and, on a related note, how many have implemented security technologies and better security training," said Mav Turner, director, business strategy, SolarWinds.</p><p>"While this is a sign the industry is trending in the right direction, it's important for IT professionals to never get too confident in their organisations' security posture, which could potentially result in overestimating one's defences. After all, the findings also illustrate how high the stakes arewhile less than one-third of UK organisations experienced a security breach in 2015, of those, 77% store potentially sensitive customer data."</p><p>However, while levels of preparedness have increased, so too has the number of threats. Furthermore, we don't live in a perfect world and those trying to make money out of customer data or just cause problems because they can do not target you because you are small. You are just another target a faceless, but named, line on a spreadsheet somewhere out in cyber space.</p><p>So don't get mad, don't get offended and don't even think about trying to get even. Instead come to terms with the fact that no matter what the size of your business, the bad guys are a big threat. And it's not a case of if you're attacked; it's a case of when.</p><p>Now we have got those hard truths out of the way, it's time to forge a path of sense for your business moving forward. Security is not your business and you have no idea the size, scale or timing of the various attack vectors out there on the horizon. So what should you do?</p><p><strong>Risk intelligence</strong></p><p>This is where risk intelligence comes in. Put simply, risk intelligence gives you an accurate picture of the lay of the land. It can give you an idea of your vulnerabilities in terms of both data at rest and data at risk. It creates a dossier on your business exposure and what you stand to lose if certain areas of your infrastructure get hit. It paints a worst case, but very realistic scenario. And that scenario enables you to see the damage in pounds and pence. And having cold, hard minus figures are often enough to get even the most hardened of finance chiefs to part with their money.</p><p>Sophisticated risk intelligence tools essentially put a price on your data weak points, so you can make informed decisions about where to prioritise your security resources. But that's not the only element of risk intelligence. It will also proactively scan your infrastructure in recognition your data estate is ever-changing as are the threats look for trends and provide easy to consume and digest reports so you can share the new-found insight with other key business stakeholders and decision makers.</p><p>Furthermore, risk intelligence can assist with compliance confidence and identify areas where you may have already been breached, either through user error or through malintent so that you can choose whether or not you would have acted differently had you known and, of so desired, change your future plans for those areas.</p><p>"IT is pervasive across work, life and geography. IT runs the world and, without it, our technological existence would come to a screeching halt," said Joel Dolisy, former SolarWinds CIO. </p><p>"BYOD and now the IoT have added and continue to add hundreds of thousands of new devices to corporate systems, and as illustrated in this year's report, IT is also evolving from traditional on-premises-only infrastructure to the hybrid strategy driven by the existence of the cloud. In short, IT is everywhere. Effectively managing and monitoring the new environment - from on-premises to the cloud with multiplying endpoints - to be able to act when needed is more critical now than ever." </p><p><strong>Want to know more about data protection? Click <a href="http://dennistrk.cvtr.io/click?pid=8&lid=719&sid=">here</a> to download a whitepaper.</strong></p><p><em><strong>"This is an independent article written by IT Pro, sponsored by SolarWinds MSP to celebrate thought leadership in IT. Learn more about SolarWinds' MSP <a href="https://www.solarwindsmsp.com/products/risk-intelligence?utm_medium=other&utm_source=dennis&campaign=RIIT_MP-Dennis_SC-CostUnknown_11-2016&utm_campaign=RIIT_MP-Dennis_SC-CostUnknown_11-2016">Risk intelligence</a> and enjoy a <a href="https://www.solarwindsmsp.com/products/risk-intelligence/trial?utm_medium=other&utm_source=dennis&campaign=RIIT_MP-Dennis_SC-CostUnknown_11-2016&utm_campaign=RIIT_MP-Dennis_SC-CostUnknown_11-2016">free 14 day trial by clicking here</a> ."</strong></em></p>
                                                            </article>
                            ]]>
                        </content:encoded>
                                                </item>
            </channel>
</rss>