Stories by Bruce Schneier

  • Security ROI: Fact or Fiction?

    Return on investment, or ROI, is a big deal in business. Any business venture needs to demonstrate a positive return on investment, and a good one at that, in order to be viable.

  • THE WAY IT IS: Make vendors pay for security flaws

    Information insecurity is costing us billions. We pay for it in theft information and financial theft. We pay for it in productivity loss, both when networks stop working and in the dozens of minor security inconveniences we all have to endure. We pay for it when we have to buy security products and services to reduce those other two losses. We pay for security, year after year.