NSA should be broken into SIGINT & IAD just so fewer people will end up with access to stuff. This isn’t working.http://foreignpolicy.com/2016/10/20/prosecutors-detail-what-may-be-nsas-worst-ever-security-breach/ …
yeah Harold Martin. He had legit access at some point or another to all these docs. Bounced around highest levels of DOD cyber for yrs
-
-
So I figured you’d say this, but it takes work to track all these people (why Martin wasn’t caught earlier)...
-
… and every dollar NSA spends tracking Booz sysadmins is a dollar not spent watching people read into TAO.
-
he was not a sysadmin though, he was on staff at OSD to assist in cyber policy development for how all this stuff gets used afaik.
-
Yes, but we already have existence proof that NSA org is too big for them to manage data security. Repeated failures.
-
yeah that's totally true lol. But the scope of access to the docs he stole is not "all of IAD", it's the 20-200 other people read in.
-
he just happened to be in a lot of compartments, apparently, and NSA is still bad at managing even local-scale data security.
End of conversation
New conversation -
-
-
they make note of it in the criminal complaint, the real bad stuff was compartmented, SCI, SAPs, etc. He had to be explicitly read in.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.