The state of security: It ain't pretty

commentary Wow, what a few months it's been for the information security industry!

In December, Symantec and Veritas Software showed incredible guts by announcing plans to merge into an 800-pound business risk-reduction gorilla. At the same time, Cisco Systems bolstered its security management by grabbing Protego Networks, then proceded to gobble up Airespace in January, making it the secure-wireless king.

Even BMC Software decided that reinforcing its security portfolio made business sense, so it bought Paris-based Calendra to put together a soup-to-nuts identity management offering.

Is there any rest for the weary? No way, Jose. Earnings season is upon us, to be followed quickly by the RSA Conference, which begins on Valentine's Day in San Francisco.

I can't remember a more highly anticipated security show. Everyone who is anyone in security will be there -- vendors, users, investors, analysts, reporters and so on. Heck, even I've already been invited to about 15 cocktail parties, and various and sundry PR people have co-opted my phones, asking me to meet with security start-ups I've never heard of that offer "the next big thing."

Before the whole security world goes entirely ga-ga, allow me to introduce reality into the party. Yeah, I know I'm a buzz killer, but someone has to play that role, and it might as well be me.

The Enterprise Strategy Group (also known as the place where I work) just completed an information security research project, in which we surveyed 251 information technology professionals.

Respondents came from companies of all sizes, though most were from businesses with more than US$500 million in revenue. The results suggest that a good number of organisations remain security novices and struggle to provide basic protection.

Here's an example. While 64 percent of respondents said they have a high level of investment in perimeter security, only 39 percent claimed to have a high level of investment in internal network security. Other critical assets like hosts, applications and desktops received even fewer votes.

Note to all those "next big thing" guys: Your customers are still implementing firewalls and filtering gateways.

Another data point: Companies are scared to death of e-mail. When asked to identify which type of traffic they believed is most vulnerable to attack, 46 percent of users fingered e-mail, followed by Web traffic at 22 percent.

Haven't we figured this out yet?

Continued ...

Advertisement

Talkback 1 comments

    Wow! Another article that goes ...Anonymous -- 15/02/05

    Wow! Another article that goes no where in particlular other than another self plug.

    Millions of dollars are invested by companies to create spyware (refer Ben Edelman) while Adware (web analytics) companies fight a daily war against each other, on your corporate desktop (if no corporate anti-spyware is running!). They have realized that only one program at a time can be hidden with minimum loss process power.

    Meanwhile, at COAST a body set up to focus on the spyware issues, things are not business as usual today.

    Co-founder Webroot (spysweeper)have resigned along with Computer ****ociates - due to differences with Adware companies looking to make a fast buck from internet surfers, be they business or personal.

    Coincidentally, Webroot just received a very large sum to further their push their product range into the corporate security world.

    I guess when all this is resolved, we will all be siting pretty;)

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Renai LeMay How reliable is IP telephony?
    Have you ever heard a weird kind of hissing, crackling or popping noise when calling someone on an IP telephony line? How rare is the phenomenon these days?
  • Array Forget the NBN, 100Mbps is already here
    Telstra and TransACT will shortly begin offering 100Mbps broadband to many customers. By moving early, the companies have not only raised the bar for Australia's broadband services, but thrown down a challenge to a government that now faces increased pressure to deliver the NBN as promised.
  • Array IT: Govt's cost-cutting bitch
    The government needs to stop looking at IT as a necessary evil or the place to remove costs when the Treasurer comes calling.
  • More blogs »

Tags

Back to top

Featured