Expert On How The UK Police Data Loss Could Have Been Easily Prevented

UK police lost over 400,000 police files due to a “human error” whereby defective code was introduced during routine maintenance. The mistake had enormous consequences, with Government ministers now admitting that Police criminal investigations may have been compromised due to the error. The mistake points to the wider problem of the security skills gaps amongst developers, with many not taught to code securely from the outset, nor given the time to evolve their security offerings themselves.  

Subscribe
Notify of
guest
1 Expert Comment
Most Voted
Newest Oldest
Inline Feedbacks
View all comments
Matias Madou
Matias Madou , Co-founder and CTO
InfoSec Expert
January 22, 2021 4:22 pm

<p style=\"font-weight: 400;\">It is our understanding that the cause behind the loss of 400,000 police records in the UK, was down to a human error whereby defective code was introduced during routine maintenance. It is frustrating to see that the loss of this extremely important government data could have potentially been avoided, if only engineers were given the time and tools to put security first, always.  </p> <p style=\"font-weight: 400;\"> </p> <p style=\"font-weight: 400;\">It’s imperative that all developers are trained in how to code securely from the outset. That way, vulnerable code would never have been introduced, and the loss of data might have been prevented.  </p> <p style=\"font-weight: 400;\"> </p> <p style=\"font-weight: 400;\">While it’s ineffective to teach secure coding in a classroom, there are ways that governments and private organisations alike can encourage their developers to care about secure coding. One of the most successful ways is through hyper-relevant gamified learning platforms that allow developers to learn how to code securely, without taking time out from their day job.”  </p> <p style=\"font-weight: 400;\"> </p> <p style=\"font-weight: 400;\">Unfortunately, as happens all too often, a foundational lack of security awareness in development teams proved costly in this instance, and the consequences were dire.</p>

Last edited 1 year ago by Matias Madou
Information Security Buzz
1
0
Would love your thoughts, please comment.x
()
x