NEWSLETTERS
 

CIO.com updates, insights and advice on technology, management and your career.

 
 
 
LEADERSHIP
 
CIO Executive Programs
The Leader in Face-to-Face Education for Senior Executives

Offering regional and national programs, CIO (and CSO) events bring together some of the most respected names and thought leaders in information technology and security. Presented by CIOs and other senior level executives, these invitation-only programs offer timely topics and strong networking. Learn More »

 
CIO Executive Council
A Peer-Advisory Service and Professional Association for CIOs

Social Responsibility's Strategic Benefits

December 15, 11:30 AM - 12:30 PM US/Eastern (GMT-5)

Join Ed Granger-Happ, CIO of Save the Children, for a discussion of how creating an organization that is socially responsible improves staffing, retention, leadership development and overall corporate health.

Working With and Communicating to Your Board of Directors

January 13, 2009, 4:00 PM - 5:00 PM US/Eastern (GMT-5)

CIO panelists who will share tips and experiences working with their boards: Twila Day of SYSCO; Jeff O'Hare, West Corp.; Marc West, formerly with H&R Block.

IT's Role in Growing Mid-Market Companies

January 14, 4:00 PM - 5:00 PM ET (GMT-5)

Mid-market Council members will share their companies' stories and challenges in driving or coping with growth. Panelists represent Veterinary Pet Insurance, Medicis Pharmaceutical, and Intrax Cultural Exchange.

More / Register »

Learn more about the CIO Executive Council »



 
 
RESOURCE CENTER
 
 
 
SUBSCRIBE TO CIO
 
Are you involved in setting the direction for your company's IT budget or strategy?

Apply today for a FREE subscription to CIO Magazine!

 
 
 

Obama Campaign Hopes for Better Web Security

Two months after their Web site was hacked, the organizers of Barack Obama's presidential campaign are looking for a network security expert to help lock down their Web site.

 

June 11, 2008 — IDG News Service —

Two months after their Web site was hacked, the organizers of Barack Obama's presidential campaign are looking for a network security expert to help lock down their Web site.

"Obama for America is looking for a network security expert who wants to play a key role in a historic political campaign," reads the ad, posted to the Barackobama.com Web site.

The requirements are pretty much what you'd read in any e-commerce security help-wanted ad: VPN (virtual private network) and Unix or Linux experience, along with a "deep understanding" of LAMP (Linux, Apache, MySQL and Perl) development. And of course, the successful candidate must be willing to "respond off-hours to high urgency security situations."

Successful candidates will join Obama's Boston team and should expect to find a new job come November.

Security experts said this is the first time they can remember seeing a Web security job advertised for a political campaign. In fact, Internet security has not always been a priority on political Web sites, according to Paul Ferguson, a network architect with computer security company Trend Micro. "Normally, I don't think they've paid much attention to it," he said.

Obama's Web site, built by Facebook cofounder Chris Hughes, has been the model of Web 2.0 campaigning, using social-networking techniques to raise funds and build a broad base of active, Internet-savvy supporters.

But security experts have long warned that powerful Web site features also open new avenues for attack.

With the Internet driving the majority of the campaign's contributions, Web security is probably more important to Obama than it has been to any other presidential candidate. A Web outage could cost his campaign millions of dollars, and a widely publicized privacy breach could put the brakes on his most important source of cash.

"The Obama campaign has got a bigger bull's-eye on them now that they've stitched up the nomination," Ferguson said. "It's worth their time to be more security conscious."

In April, a programming error allowed a Hillary Clinton supporter to redirect part of Obama's Web site to Clinton's, but today's Web attack techniques could lead to much more serious consequences.

"Attacks like SQL injection would be far more of a concern," said Oliver Friedrichs, a director with Symantec Security Response who has written about computer security and the 2008 presidential election. "If I was able to get access to the database that houses their donor information, that would be very concerning."

So-called SQL injection attacks take advantage of programming errors and allow attackers to get unauthorized access to parts of a Web site. They can be used to install malicious software or gain access to sensitive information.

Loading...
 
 
IT Jobs
 
 
 
ABCs
 

Just the basics, please. Sometimes we all need a refresher or we need to make sure our team and our colleagues are all on the same page.

Over 25 tutorials on everything from business intelligence to virtualization.

 
 
FEATURED SPONSORS
 
 
 
SPONSORED LINKS
 

Leveraging Social Computing Technologies for ERP Applications

Best Practices: Safe and Secure Hardware Asset Recovery

Operational Excellence Is Key to Maximizing IT Investments

The Right and Wrong Master Data Management Strategies to Start Small and Grow Big

Paving the Way for Trusted Collaboration

State of the Market: Application Performance Management

Proactively Identify and Resolve Performance Issues

Union Bank of California Improves its Online Banking Services

The Link Between APM and Customer Satisfaction

Providing Around-the-Clock Customer Satisfaction

Deliver Social Computing Business Value

Make Hidden Trends, Inter-Relationships and Influences Visible.

"Enterprise-Proven" is the Prerequisite for Enterprise SaaS Portal Solutions

Corral, configure and control all your mischievous machinery with a Lantronix device server

Spend less. Get hosted UC. Get cash back. It's easy under a Cypress

Predict the future with HP Insight Power Manager

Log onto Hitachi True Stories, films inspired by the next great achievement

Earn PROFESSIONAL DOCTORATE Part-Time, Online at Syracuse University's iSchool

Make IT Work As One@novell.com

Predict the future with HP Insight Power Manager

HP LaserJet P4014n printer starting at $799 after $100 IS. www.hp.com

CIO Starter Kit includes useful resources created by top CIOs. Free Download>>

How to Start a PMO & Realize the Benefits Fast

Virtualization Benchmark and TCO Analysis-Read Now

Learn to Leverage Maximum Computing Power

White Paper: Scaling Down HPC for Smaller Organizations

17 Ways to Reduce Cost in IT

Learning from BPM Leaders

Webcast: Mitigate Operational Risk- Real Answers for Tough Times

First-hand look at this never before seen research

Effectively Managing High-Performing, Business-Critical Web Applications

Managing Service Level Agreements to Achieve Business Goals

APM Solutions: A Window into Complex Web Applications

APM Solutions Offer Insight into Complex Web Applications

Five Best Practices for Enterprise Collaboration Success

The ECM Paradox: Extending Local Flexibility to Strengthen Central Control

Customer Insight Yields Sales, Marketing Gains

Live Webcast - Ensuring Business Services Delivery

File Integrity Monitoring: Prove compliance and secure your IT environments

Affordable technology-no compromise. HP server solutions

SOA Educational Library at the TIBCO SOA Resource Center

CIO Viewpoints: Migrating to Exchange 2007

Thrive during global disruption. Cisco video featuring Juan Enriquez

A new level of interoperability. Make IT Work As One@novell.com

Protect data-HP All-in-One and Disk-Based systems

Businesses Transform with VMware Virtualization

Download the free CIO Starter Kit to access useful resources created by top CIOs

The Business of Managing Content: Xythos Document Management & Microsoft SharePoint

Server Virtualization Benchmark Results

White Paper: Never Enough Compute Power?