At Securosis, we recommend a two-pronged attack, one hard (involving technicalcontrols) and the other softer (process and communication).
我们要说两种形式的攻击,一种比较严重(包括技术控制),另一种温和一些(需要进程和通讯)。
2
Don't underestimate the old-fashioned, non-technicalcontrols that have served financial institutions well: separation of duties, forcing employees to take vacations, dual-control systems, etc.