On The Insider: Shaheen Jafargholi Proud of What He Did

Is computing getting too complicated?

Tags: Operating systems, INTERNET, Jonathan Yarden, Internet-and information security, Microsoft Windows, security, Internet Security Focus Newsletter

  • Save
  • Print
  • Recommend
  • 0

Takeaway: While recently helping a friend set up his new Windows computer, Jonathan Yarden started thinking about the increasing complexity of computer systems and their underlying security. Find out why he believes that simpler is better when it comes to locking down your organization's systems.

As you probably know all too well, most IT pros are nothing more than walking help desks when it comes to their friends, families, and even coworkers. How many times have you ended up installing—or recovering—the system of someone who knows next to nothing about computers, let alone security? I admit it: I, too, am not immune to the pleas for help from my nongeek friends.

I recently found myself in one such situation. I was helping a non-computer-savvy friend set up his new Windows computer, and he and I started discussing Windows and security. While I was copying his files from his ancient Apple Macintosh IIcx to his new Windows PC, I noticed that the file sizes of the applications on his old hard drive were miniscule compared to Windows. In addition, his programs were much easier to use. (He still used Word 5.1 for the Mac.)

Even more comical was the size of his hard drive: 120 MB! Of that, he was only using about 30 MB for his programs and the document files he needed me to recover. Windows uses more than 120 MB just for the base operating system, but then again, that's because it's a much more complex and feature-rich OS, right?

When we began the process of setting up the new Windows machine, I told my friend that it would take about two hours to fully update and secure Windows and Office. After hearing this, he wasn't so sure he wanted to get rid of the Mac. All of this got me thinking about the increasing complexity of computer systems and their underlying security.

Internet and information security is the No. 1 issue for most corporations, and that's because they have no choice. Ignoring security means risking the loss of information and business intelligence, not to mention the potential legal, human resources, and public relations issues.

I'm never surprised when I read that more and more companies are making the move away from Windows. Windows is an expensive operating system to secure and support. And I think that Microsoft is failing to deliver on its promise of better security.

By this point, you would think that Microsoft would have at least included an administrative ability to disable or not install any Internet features, but it hasn't. More times than not, Windows systems are vulnerable right out of the shipping box.

In my opinion, regardless of what the so-called experts claim, we owe the majority of Internet insecurity to Microsoft. As the company added Internet feature after feature to the already bloated and buggy code of Windows, it opened the door to massive distributed exploits. In addition, it made the software too complex for the average user to use safely—or, for that matter, for the average corporation to maintain.

And Microsoft isn't the only vendor making its products increasingly complicated—security products are also becoming more complex and more prevalent. It's my job to worry about Internet security, and yet there are plenty of products out there that I've never heard of.

Members frequently send me feedback about this newsletter to recommend an Internet security product they use in their shops. Quite often, the product is something I haven't heard about. And, of course, I occasionally stumble across a product on the Internet that catches my eye.

Because I'm a cynic, I typically find software that doesn't make promises or quote favorable media reviews much more interesting. These days, any software product that claims to be revolutionary, especially when it comes to Internet security, will likely convince me otherwise.

The simpler and the more specific an Internet security product is, the better I like it. I'm convinced that the more feature-rich Internet software is, the more bugs it's going to have—and some of those bugs could be exploitable.

Unfortunately, many organizations fail to use their security tools well, and the problem only seems to be getting worse. Falling victim to hostile attachments, phishing scams, or fake e-mail unsubscribe links should be a thing of the past by now, but these are very real threats.

I believe that the best Internet security tool out there is the one between your own ears. You can implement all the layers of Internet security that you want, but they're all useless unless the user has some form of understanding of how to safely operate a computer.

As for my friend, I ended up fixing his Mac, and he's back to using it to manage his business. And as for the new Windows system, he decided against it: He was too concerned about the security, and it was too complicated for him to learn to use.

Instead, his Windows PC's sole purpose is for surfing the Web, which he does with no fear. He doesn't care about viruses, worms, spyware, exploits, or phishing scams; there's nothing important on the computer anyway. For his purposes, simplicity is the ultimate sophistication—something that Microsoft no longer provides, which a 9-year-old outdated Macintosh still does.

Want more advice for locking down your network? Stay on top of the latest security issues and industry trends by automatically signing up for our free Internet Security Focus newsletter, delivered each Monday.

Jonathan Yarden is the senior UNIX system administrator, network security manager, and senior software architect for a regional ISP.

  • Save
  • Print
  • Recommend
  • 0

Print/View all Posts Comments on this article

Thank you! gene.fellner@... | 05/27/05
Unreasonable? FirstPeter | 05/27/05
A major appliance gene.fellner@... | 05/27/05
Wrong target Tony Hopkinson | 05/28/05
you just don't understand the situation apotheon | 05/28/05
Every new windows a new OS? leonjoramos@... | 05/30/05
new OS, not new design apotheon | 05/30/05
The basic OS already exists, relatively speaking. mrterrible109@... | 05/08/06
Absolutely Joyceb | 05/31/05
Back to basics a1pc@... | 12/19/05
Break-Ins: your car/house vs. your computer Pretselz | 05/08/06
But not really ProperName | 05/08/06
The N64 applicance martinrej | 06/01/05
Right on the nail sansevieri | 05/27/05
And their standard Tony Hopkinson | 05/28/05
Er, what? apotheon | 05/28/05
Unix : Standard not Friendly leonjoramos@... | 05/30/05
Say what? apotheon | 05/30/05
Its a trend kevaburg@... | 05/28/05
For the "average" user? geekchic | 05/28/05
Just like cars! J J K | 05/28/05
Then treat them as such BeingMe | 05/30/05
I'll be happy to...when: Mr L | 05/31/05
Economic Impacts Play..... ProperName | 05/08/06
Interesting view dafe2 | 05/29/05
I don't agree - Educating users works kevaburg@... | 05/29/05
Of course it does dafe2 | 05/29/05
Point taken! kevaburg@... | 05/29/05
user understanding apotheon | 05/29/05
Don;t want just a washing machine Tony Hopkinson | 05/29/05
Hey, what about an internet connected washing/drying machine - - J J K | 05/29/05
The scary thing is MS is working on that! MWRadio@... | 06/07/05
All True dafe2 | 05/30/05
Re: drink mixer BHunsinger | 06/01/05
Yup dafe2 | 06/03/05
The Rotary Dial Phone was simple too... gometrics | 05/30/05
Unnecessary Complexity Tenderfoot | 05/31/05
Designed for people who WANT to learn how to use them TonytheTiger | 05/31/05
... and then there's the Sales Department jerry~Beans&Bytes | 06/01/05
Thanks god for that!!! sansevieri | 10/12/05
I ain't no online gamer mrterrible109@... | 05/08/06
Apotheon-great analogy nikitac | 05/09/06
How True FirstPeter | 05/27/05
Actually . . . apotheon | 05/28/05
Which Is Good, But... FirstPeter | 05/28/05
Hitachi selling these Dr Dij | 05/31/05
This is basically a revist to WebTv. MWRadio@... | 06/07/05
Thin Clients revisited? jeff@... | 06/08/05
Computing IS getting to complicated hgmarin2003@... | 05/30/05
an answer apotheon | 05/30/05
Microsoft Slavery btthomas51@... | 05/30/05
I thought it was called "Linux"? zaferus | 05/30/05
It has gotten much better jmgarvin | 05/30/05
Better, but still not ready... OldITProfessional | 06/10/05
disagree apotheon | 06/10/05
Solution FirstPeter | 06/10/05
Not really jmgarvin | 10/19/05
True true true raj24 | 05/31/05
I don't think so! digitalb | 05/31/05
That's OK TonytheTiger | 05/31/05
Unfortunately, True n3bu1a | 05/31/05
Complexity comes with age? glrudd | 05/31/05
No time for guard duty while there is work to be done! lensdoc | 05/31/05
Why I switched? stu@... | 05/31/05
Well I hope at least that you locked his machine down. kunstj | 06/01/05
Cars, appliances lets talk BHunsinger | 06/01/05
Yes, but now what? tbc@... | 06/01/05
Now, nothing. apotheon | 06/03/05
I appreciate your article very much! zetacon4@... | 06/02/05
Diagnosis, with no cure offered. deepsand | 06/06/05
Computing becomming too complicated? Dr. Engineer Jim | 06/07/05
thank god it is more complicated techrepublic@... | 06/08/05
Thank God it is more complicated too.... randusmok@... | 10/18/05
Nice Thoughts, But it'snt Windows's Fault yuvipanda@... | 06/09/05
Then simplify the platform yourself... jeff.sparks@... | 05/08/06
YOU BET! d_g_l_s@... | 05/08/06
Trying to serve all users' requirements + converging tech = complexity anniemae46@... | 05/08/06
I agree, good points VytautasB@... | 05/08/06

What do you think?

White Papers, Webcasts, and Downloads

Article Categories

Security
Security Solutions, IT Locksmith
Networking and Communications
E-mail Administration NetNote, Cisco Routers and Switches
CIO and IT Management
Project Management, CIO Issues, Strategies that Scale
Desktops, Laptops & OS
Windows 2000 Professional, Microsoft Word, Microsoft Excel, Microsoft Access, Windows XP,
Data Management
Oracle, SQL Server
Servers
Windows NT, Linux NetNote, Windows Server 2003
Career Development
Geek Trivia
Software/Web Development
Web Development Zone, Visual Basic, .NET

SmartPlanet

advertisement
Click Here