Companies in S'pore lack proper security management

By Staff, ZDNet Asia
Wednesday, November 02, 2005 05:30 PM

SINGAPORE--Companies here are vulnerable to network security threats due to a lack of proper vulnerability assessment and patch management, according to a new survey.

Conducted by asset and security management vendor Altiris, the study surveyed 140 IT managers and C-level executives and found that 46 percent do not conduct vulnerability audits.

Of the 54 percent who said their companies perform vulnerability audits, only 24 percent conduct them on a monthly or weekly basis, the study revealed.

System vulnerability audits, which include checks on factors such as antivirus and patch status, unauthorized and required software and hardware, and vulnerability signatures, give "a complete a view into each of the system's endpoints on the network," said Tom Galantomos, Altiris' Asia-Pacific director of strategic alliances.

"(Such audits) address issues exploited by virus attacks, e-mail trojans, or even simple local exploits such as weak passwords, storage devices and improper configurations," Galantomos said, in a media release.

The survey also found that 55 percent of companies surveyed do not have in place automated vulnerability audit, and patch management. This could lengthen the time companies take to protect themselves against vulnerabilities, Galantomos noted. Automation "significantly reduces the window in which networks are exposed to security threats," he added.

Respondents in the survey indicated that the top IT challenge for their companies was security management. Patch management, and backup and recovery, were ranked second and third respectively.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Five tips for tackling a one-time project

Tech Management

Don't let a one-time project derail your career. An IT consultant shares tips on how to successfully manage a "once-in-a-career" event.


Read more »



Open source blog reloaded!

Blog thumbnail

This is with great pleasure that this "little corner of the Web" is resuming activities through another member of the (now famous ;-)) Beijing Linux User Group (BLUG) doing the..... by Fred Muller

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. google inc.
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web