What Software-Defined Security Could Mean for the Channel

thumbnail What Software-Defined Security Could Mean for the Channel

The IT industry is entering the era of software-defined infrastructure, starting with software-defined networks (SDNs). SDNs were quickly followed by the emergence of software-defined storage (SDS)—which, together with SDNs, are the foundation for the software-defined data center. Given those advances, it’s only a matter of time before the industry sees the emergence of software-defined security […]

Written By: Michael Vizard
Nov 26, 2013
Channel Insider content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

The IT industry is entering the era of software-defined infrastructure, starting with software-defined networks (SDNs). SDNs were quickly followed by the emergence of software-defined storage (SDS)—which, together with SDNs, are the foundation for the software-defined data center.

Given those advances, it’s only a matter of time before the industry sees the emergence of software-defined security (SDS)—a technology whose time has come, the folks at the Cloud Security Alliance (CSA) say.

“We think software-defined security is now quite feasible and very necessary,” said Junaid Islam, founder of Vidder, a provider of a cloud-based service for securing network perimeters. “This approach would both lower costs and be more secure.”

To turn that vision into a reality, the CSA has launched the Software Defined Perimeter project, which is being spearheaded by Bob Flores, the former CTO of the CIA who is now CEO of Applicology, an IT consulting firm.

SDS would be more secure because many breaches are a direct result of misconfigurations of security products. The technology would set the stage for not only managing those devices at a higher level of abstraction, but also for automating the management of those devices via the cloud.

CSA wants to first work with vendors to create a reference architecture for SDS at the network perimeter level and then extend the reach of that architecture to cover other areas of security in multiple phases. In the meantime, CSA plans to develop a road map outlining the various stages of the Software Defined Perimeter project that will be completed over the coming year.

As is often the case with that level of disruptive IT innovation, the rise of SDS would represent both peril and opportunity for solution providers in the channel. On the plus side, SDS would make it simpler and less time-consuming to deploy security products and services.

The downside of SDS, however, may come in two forms. On one level, it would make it a lot easier for more solution providers to manage and deploy security as a service. Ultimately, that level of increased competition would drive pricing for what are usually seen as high-margin security services. Perhaps even more troubling for existing providers of managed security services is the whole notion that security management will simply become a feature of the larger software-defined data center.

The issue that solution providers will have to navigate is how willing customers will be to continue to manage security as a distinct discipline. It’s tempting to reduce the cost of IT by slip-streaming the management of security within a larger IT management framework. But when organizations do that, solution providers point out, the inherent conflicts of interest that occur when security is managed by the IT management team: The same people deploying IT in the first place become the ones responsible for vouching for its security.

It will still take time for this vision of software-defined IT infrastructure to become a universal reality. As it is, multiple competing technologies are emerging for the software-defined data center, and no agreement is in sight as to what approach to SDN or SDS may actually become the de facto standard. The result is that solution providers have a lot of time to adjust their disparate practices to the eventual emergence of software-defined infrastructure that one day will lead to the convergence of systems, network, storage and security management.

“There’s a lot of experimentation going on in terms of managing infrastructure at a higher level of abstraction,” said Nicola Morini Bianzion, managing director for SAP solutions at Accenture. “But I think it’s going to be more than a year before we see these solutions being actually deployed.”

Michael Vizard has been covering IT issues in the enterprise for 25 years as an editor and columnist for publications such as InfoWorld, eWEEK, Baseline, CRN, ComputerWorld and Digital Review.

thumbnail Michael Vizard

Michael Vizard is a seasoned IT journalist, with nearly 30 years of experience writing and editing about enterprise IT issues. He is a writer for publications including Programmableweb, IT Business Edge, CIOinsight, Channel Insider and UBM Tech. He formerly was editorial director for Ziff-Davis Enterprise, where he launched the company’s custom content division, and has also served as editor in chief for CRN and InfoWorld. He also has held editorial positions at PC Week, Computerworld and Digital Review.

Recommended for you...

Trend Micro and Google Cloud Double Down on AI Security

The expanded alliance emphasizes AI-driven defenses, sovereign cloud capabilities, and new anti-scam protections for businesses worldwide.

Allison Francis
Jul 30, 2025
Arctera Updates Platform to Reduce AI Compliance Risks

Arctera updates Insight to help organizations capture, chronicle & contain AI data, easing compliance and unlocking insights from LLM interactions.

TA Wordpress
Jul 30, 2025
Channel Vet Frank Rauch Joining Morphisec in Advisory Role

Channel vet Frank Rauch joins Morphisec’s advisory board to boost MSSP strategy and partner growth with a prevention-first cybersecurity focus.

Jordan Smith
Jul 29, 2025
Azul Debuts Managed Services Program for Java-Focused Partners

Azul empowers MSPs with sublicensable Java insights, enabling code cleanup, vulnerability detection, and license compliance via Intelligence Cloud.

Jordan Smith
Jul 29, 2025
Channel Insider Logo

Channel Insider combines news and technology recommendations to keep channel partners, value-added resellers, IT solution providers, MSPs, and SaaS providers informed on the changing IT landscape. These resources provide product comparisons, in-depth analysis of vendors, and interviews with subject matter experts to provide vendors with critical information for their operations.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.