Just about every customer on the planet right now is realizing that its security posture is probably not as strong as it should be. In fact, the biggest issue they have is not the lack of security devices, but rather the fact that all the devices are typically mis-configured.
Just about every customer on the planet right now is realizing
that its security posture is probably not as strong as it should be. In fact,
the biggest issue they have is not the lack of security devices, but rather the
fact that all the devices are typically mis-configured.
As security devices age, they are subject to multiple
updates to their configurations, which are usually delivered by various IT
managers with different levels of skill over a period of years. The end result
is that holes develop as each successful rule change to device adds more and
more complexity.
One example of a company that provides a set of tools in
this space that solution providers can build a security assessment practice
around is AlgoSec, a maker of
a tool for analyzing firewalls. More importantly, the company also recently
rolled out a workflow tool that creates a structured process for tracking
change requests, evaluating whether the change is needed, determining which
firewalls actually need to be updated and what specific rules need to modified.
Scheduled for general availability in the first quarter, the
AlogSec Fireflow management tool provides a basic framework that a solution
provider can use to create a structured security assessment practice.
Security people today are some of the most expensive people
to hire, so any tool that maximizes their time is going to pay for itself
pretty quickly. At the same time, customers are looking for ways to reduce
their security spending as a percentage of their overall budget. Too much of
that money
is tied up in staffing and the renewal licenses for products that many of
them are not completely sure provide a useful function.
Perhaps more importantly, the entire delivery model around
security is evolving as managed security services, software-as-a-service
offerings and now cloud
computing models come to bear. That means that end customer is probably
more confused than ever, which in turn creates opportunity for solution
providers.
That opportunity, however, may not come in the form of
selling security products, but rather in developing a deep understanding of how
to deliver value-added security services around and array of products that in
of themselves rarely provide a useful solution.
Feb 4th 5:34 PMFinding Myself My Own New Adventure - So this is my last column with Channel Insider. After selling my MSP, Ive take... http://t.co/XGWd1Ryl
Feb 2nd 5:39 PMLevel Platforms to Offer Mobile Device Management - Answering the call of so many MSPs, Level Platforms is expanding... http://t.co/hsqwAFxN
Feb 2nd 3:45 PM10 Key Ingredients That Have Made Apple So Successful - Apple is one profitable company. The firm announced recently... http://t.co/ipuOvDig
Feb 2nd 1:55 PMChannelEyes: Will It Transform the Channel? - If the 2000 decade was about automation for the IT services channel, t... http://t.co/SrvhN2xG
Feb 1st 11:45 AMIBM Expands Mobility Management, Security - IBM has unveiled a solution to mitigate the risk that comes with a bring... http://t.co/VcyVQ4HA
Feb 1st 5:43 AMXerox Expands Cloud Services, Data Recovery for SMBs - The cloud backup and data recovery services are designed to p... http://t.co/DloBWniQ
Jan 31st 1:45 PM10 Reasons RIM`s New CEO Won`t Fix the Company - Research In Motion, at long last, has a new CEO in Thorsten Heins. ... http://t.co/JGo2Z9ar
Start the New Year with business intelligence—it’s a smart move
Join us on February 1 for an encore rebroadcast at either 5 am or 12 noon EST and discover how business intelligence (BI) supports companies in uncertain business and economic climates. Get expert advice on how to create a strategy that fits your organization's needs and budget and see how quickly it can pay for itself. Click Here