TechRepublic : A ZDNet Tech Community

IT Security

Host: Chad Perrin
Contact

Bozeman, Montana has some disturbing city employment application requirements. The effects of those requirements might be more important than you think.


Perhaps part of the problem with governmental violations of privacy in the United States is the public’s insatiable thirst for private information about its politicians. Whenever someone runs for President, you can expect a lot of information to get dug up about his or her sordid past, and the press feeds not only this thirst for private information but also the public perception that it has a “right” to know about these things. It has gotten to the point where nobody (sane) runs for public office without simply accepting the notion that the details of his or her private life are going to be subject to public scrutiny.

I am the last person to argue against governmental transparency. In general, policy should not have to be secret for it to work. Just ask Claude Shannon, the Father of Information Theory: Shannon’s Maxim states “The enemy knows the system.” He was saying that, in security, one should never rely on the secrecy of policy or process to ensure security.

Shannon’s Maxim was just a more recent, generalized, and pithy formulation of the same ideas embodied in Kerckhoffs’ Principle: The design of a system should not require secrecy and compromise of the system should not inconvenience the correspondents. This principle is one of six principles of practical cipher design articulated by Auguste Kerkhoffs in La Cryptographie Militaire, arguably one of the most important documents on the subject of cryptography ever written.

As I pointed out in Public officials and private lives, though, there may be a connection between the desire of the American public for the sordid details of the lives of public officials on one hand, and the growing prevalence of privacy violating policy and legislation in US government on the other. Ironically, much of this systematic violation of the privacy of millions of US citizens and other residents is being done in the name of national security. This flies directly in the face of the simple, unavoidable fact that privacy is security.

In City wants job applicants to turn over Facebook user names and passwords, Toni Bowers reported a recent revelation about Bozeman, MT city hiring practices, which read like something out of an Orwell novel. She quoted cbsnews.com:

The Rocky Mountain city instructs all job applicants to divulge their usernames and passwords for “any Internet-based chat rooms, social clubs or forums, to include, but not limited to: Facebook, Google, Yahoo, YouTube.com, MySpace, etc.” Bozeman city officials say that this is just a component of a thorough background check.

As pointed out in a quote from attorney Kevin Bankston, this essentially makes employment by the city of Bozeman conditional upon waiving First Amendment rights and relinquishing any control over your own online security. The easy answer seems to be to never seek employment with the city of Bozeman, of course — but this may be relevant to the question of living in Bozeman too, or even of visiting. Consider the points I brought up in my examination of the way the American public treats the privacy of public officials. Here, we are not just talking about elected officials getting the “no privacy” treatment. We have gone well beyond that, and are now talking about every single employee of the city having his or her online privacy and security violated as a routine part of the hiring process.

Consider the kinds of people who would accept this kind of intrusion into their lives just to get an entry-level city bureaucrat’s job. How many of these people are likely to have any regard for your privacy at all? Consider what this says about people tasked with teaching your children if they attend Bozeman’s public elementary schools. What values will they instill in the impressionable minds for whose education they are responsible?

Regardless of whether a candidate for President, or a current President, should have to regard his or her entire life as an open book, I quite simply believe that the way Bozeman, MT handles its hiring process is beyond all reason. If the United States is, as some claim, on its way to becoming a police state, it seems Bozeman is in the race to get there first. Considering that most of Montana seems to be solidly grounded in principles quite antithetical to this kind of intrusive insanity, the mind must boggle at the audacity of Bozeman officials’ disregard for simple standards of human decency.

I, for one, will never give up the passwords for even the most trivial online Website logins as a condition of employment. Any prospective employers will have to sift through network traffic for the passwords to sites that do not use encrypted connections for authentication, just like any other malicious security cracker — and make no mistake, I do regard this behavior as malicious.

Chad PerrinChad Perrin is an IT consultant, developer, and freelance professional writer. He holds both Microsoft and CompTIA certifications and is a graduate of two IT industry trade schools. Read his full bio and profile.

Print/View all Posts Comments on this blog

Stay out of Bozeman apotheon | 06/30/09
My 2 cents GSG | 07/01/09
nah, increase you caffien consumption and see if you can start Deadly Ernest | 07/01/09
Bozeman? glend@... | 08/13/09
Er, what? apotheon | 08/13/09
Wait, I thought that was your job... seanferd | 08/14/09
Moi? apotheon | 08/14/09
Right... seanferd | 08/15/09
Malicious santeewelding@... | 06/30/09
RE: Stay out of Bozeman mjd420nova | 06/30/09
Urine Sample dvanduse@... | 07/07/09
You do know that Bozeman backpedalled, right? seanferd | 06/30/09
I think you have the cart before the horse in part Deadly Ernest | 06/30/09
There are many Bozemans in the United States today. In fact.. . . . maxwell edison | 06/30/09
AMEN to that clarkey@... | 07/01/09
Just wait TonytheTiger | 07/01/09
A GPS for milage tax? No, that couldn't happen. . . . . . Joe_R | 07/01/09
Sadly, they'll bring it in without killing off the old tax - also Deadly Ernest | 07/01/09
I remember when TonytheTiger | 07/01/09
Heaven forbid TonytheTiger | 07/01/09
Won't be done to tax us.... NotSoChiGuy | 07/01/09
No doubt complete with TonytheTiger | 07/01/09
holy cow apotheon | 07/01/09
If the laws are wrong.... NotSoChiGuy | 07/02/09
only problem with that is SUVs are the only cars made today Deadly Ernest | 07/06/09
They'll address that... NotSoChiGuy | 07/06/09
yeah, right - it's the way many people Deadly Ernest | 07/06/09
Of course! TonytheTiger | 07/06/09
ARE WE REALLY SURPRISED ?? jasonemmg | 07/06/09
Gov can already look at your facebook Neon Samurai | 07/06/09
Dead issue. DHCDBD | 06/30/09
Then you santeewelding@... | 06/30/09
Been dead. DHCDBD | 07/01/09
DHCDBD santeewelding@... | 07/01/09
Intended (NT) DHCDBD | 07/01/09
Alas santeewelding@... | 07/01/09
The asking for passwords, maybe... TonytheTiger | 07/01/09
NOT a joke VBJackson | 07/06/09
don't use facebook csmith.kaze | 07/01/09
What about TR? NickNielsen | 07/01/09
It goes even further Neon Samurai | 07/01/09
I may have covered those... NickNielsen | 07/01/09
Damn santeewelding@... | 07/01/09
This and that are probably OK NickNielsen | 07/01/09
Promise me santeewelding@... | 07/01/09
Superglue NickNielsen | 07/02/09
ha.. hehe.. ah that's good stuff Neon Samurai | 07/02/09

What do you think?

White Papers, Webcasts, and Downloads

Recent Entries

TR on Twitter

Archives

TechRepublic Blogs



Quick Reference: PC Troubleshooting Pack
Help desk and IT support professionals need the fastest and most complete answers to keep every PC in action. Get the PC troubleshooting solutions you're looking for with this set of four multipage charts.
Buy Now
Quick Reference: Linux Commands
Reduce stress and speed up resolutions with the easiest command references right at your fingertips. You'll receive a PDF file covering Linux, packed with the most common commands you'll need and use daily.
Buy Now

SmartPlanet

Click Here