Profile picture
Ryan Hurst @rmhrisk
, 7 tweets, 2 min read Read on Twitter
Insider Risk is an area that is commonly underestimated despite how common it is. Here is some survey data on the topic: ca.com/content/dam/ca…
There are lot's of ways to mitigate risk but one thing is for sure, you can not manage what you can not measure. For this reason, designing your systems in such a way they are transparent is one of the more impactful things you can do to address these risks.
One interesting side effect of building the transparency into a system is that its existence disincentivizes actors from abusing their position. Afterall if you do something wrong and you are sure to get caught your less likely to do so in the first place.
When you take the transparency to the next step ensuring that it minimizes trust and is independently auditable and reliable by all parties in your ecosystem you raise the bar even further.
Building on top of that when you make the system self-enforcing, only functioning when the auditing has taken place, you not only disincentivize the act in the first place you literally make it harder to do.
This approach considers the realities of the world we live in and considers the economic and personal interests to an attacker and raises their "cost" of an attack by both reducing the chance of the attack and making the chances of getting caught higher.
These are some of the reasons I like the concepts of Generalized Transparency that back Certificate Transparency, Key Transparency and the other applications of the github.com/google/trillian platform.
Missing some Tweet in this thread?
You can try to force a refresh.

Like this thread? Get email updates or save it to PDF!

Subscribe to Ryan Hurst
Profile picture

Get real-time email alerts when new unrolls are available from this author!

This content may be removed anytime!

Twitter may remove this content at anytime, convert it as a PDF, save and print for later use!

Try unrolling a thread yourself!

how to unroll video

1) Follow Thread Reader App on Twitter so you can easily mention us!

2) Go to a Twitter thread (series of Tweets by the same owner) and mention us with a keyword "unroll" @threadreaderapp unroll

You can practice here first or read more on our help page!

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just three indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member and get exclusive features!

Premium member ($30.00/year)

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!