Securing all fronts

 

Summary

Securing what is sacred to a business takes more than just a new program -- it can be a full-time job, which at times is better left to the experts.

Events

Social Media World Forum
22 - 23 Sep 2010

Suntec, Singapore

Asia CXO Leadership Summit - Singapore
7 Sep 2010

Marriott Hotel, Singapore

Governmentware 2010
28 - 30 Sep 2010

Suntec, Singapore

The 5th Annual CIO Forum Asia
28 Sep 2010

Singapore

Social Media Marketing and Measurement

6 - 7 Sep 2010
Parkroyal, Singapore

9 - 10 Sep 2010
Regal Hongkong Hotel, Hong Kong

IDC's Asia/Pacific Cloud Computing Conference 2010
31 Aug 2010

Marriott Hotel, Singapore




Contents
Benefits
Handing over control
Weighing it up
SLA security
Case studies
Nintendo plays the security game
Queensland company saves with security

The start of the 21st century has redefined the word "security". Countries go to war for it, constituents vote as a result of it, and companies are learning that to stay safe, and protect valuable assets in these highly technological times: with anxiety increasing in all walks of life, security has become a hot topic, and how it is managed can mean more than just bucks for a business -- reputation, trust and, in-house stability can all rest upon it.

But managing security can be a big headache, and it can be easy to get wrong, especially when basic perimeter security is not enough. Attacks from inside the business are growing and the complexity of the business environment is changing with globalisation. The ability to work remotely, and new technology being designed to link aspects of operation, raise new issues for what was once deemed a simple procedure.

An unprotected firewall can open up thousands of doors for hackers wanting access to your business operations, and spam is constantly being slammed for the thousands of employee hours it can cost each year. Add to this the growing issue of lost business due to down-time, and the ethical issue of keeping your clients safe, and it becomes easy to see why security is no light topic.

Frost & Sullivan analyst James Turner says one of the main reasons the nature of security has had to change is that hackers are becoming much more money-hungry, and extortion and identity theft are becoming a lot more common.

"As capitalism consumes the world, the hackers are coming around to the market's way of thinking and they are looking for their own piece of the action," Turner says.

"As a result, we are going to see an increase of law enforcement on the Internet. Companies are not only going to have to be secure for their own sake, but secure so they can adhere to the new ways of doing business."

So in an effort to erase anxiety, the high cost of security training for IT staff, and company liability, more and more companies are looking to managed security service providers (MSSPs) to manage all or part of their security processes for them. Analyst firm The Yankee Group estimates that by 2010, 90 percent of security operations would be outsourced -- in the US at least.

Services can range from patch management for a particular product, to management of your network's entire security architecture. The companies that we spoke to for this article offered services in the following areas: network intrusion detection and prevention, host intrusion prevention, vulnerability assessments, patch management, firewall and VPN management, and e-mail monitoring for protection from viruses and spam.

Lorenzo Modesto, general manager of MSSP Bulletproof Networks, says a complete outsourced security solution will start with the infrastructure. "You will generally hand this out depending on the skills set and infrastructure you will, or won’t, already have in-house," he says. "Managed network security is about prevention -- locking things down so that the managed security provider is not having to chase holes in your system all the time. This is why you start with what is physically there, then determine what requires outsourcing."

The service itself, he says, is all about managing this infrastructure: putting out alerts at times when weaknesses can be found, monitoring how well the infrastructure is working, tuning false positives, and preparing an incident response when a security breach is made.

Talkback

Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment
HP Data Protector delivers high-performance data protection at up to 70% lower TCO.
Tech Vendor: HP
Did you know?
Did you know?

ZDNet Asia Live

RT @RehaAlev: Twitter to record all links users click http://bit.ly/94hGHx

Using Parallel class for simple multithreading http://bit.ly/bZ3hpf

25 minutes ago by kittirak on topsy

need more

1 hour 1 minute ago by jepsy on Is it too late to introduce 3G in India?

Using Parallel class for simple multithreading: In this programming tutorial about Parallel Exte... http://bit.ly/c0g5Wi - #AsiaToday #News

RT @Colasoft: RT @zdnetasia: 12 most recommended network monitoring tools http://bit.ly/9KWQ96

RT @WilliamLark: Facebook adds new remote log-out security feature: Facebook users who log in from multiple devices will soon have ... http://bit.ly/ai5asr

Facebook adds new remote log-out security feature: Facebook users who log in from multiple devices will soon have ... http://bit.ly/ai5asr

3 hours 30 minutes ago by williamlark on topsy

Samsung: Galaxy Tab has leg up on Apple iPad http://bit.ly/9OPPUy

Samsung: Galaxy Tab has leg up on Apple iPad http://bit.ly/aD9zXt | #Droid #Android

Toshiba recalls 41,000 laptops for overheating: U.S. Consumer Product Safety Commission says 129... http://bit.ly/axqc2a - #AsiaToday #News

RT @zdnetasia: 12 most recommended network monitoring tools http://bit.ly/9KWQ96

Google, AOL renew search deal: Under the arrangement, Google provides search for AOL and the com... http://bit.ly/bif9sl - #AsiaToday #News

Acer comes back down to earth, Dell rises: Fastest-growing PC company of the last few years stum... http://bit.ly/byByP7 - #AsiaToday #News

Securing consumer gadgets in the workplace: By Nick Heath, Silicon.com on September 3, 2010 (2 minutes ago) news a... http://bit.ly/ad12aw

Securing consumer gadgets in the workplace: By Nick Heath, Silicon.com on September 3, 2010 (2 minutes ago) news a... http://bit.ly/97Jth5

5 hours 9 minutes ago by wizmole on topsy

Google, AOL remplacent l'affaire de recherche - ZDNet Asie: Google, AOL remplacent le dealZDNet Asie de re... http://bit.ly/dy9zaw #musique

5 hours 21 minutes ago by lafiliere on topsy

I recommend checking 5pm for a good project management tool. (www.5pmweb.com). It makes the team collaboration easy and is friendly enou...

6 hours 19 minutes ago by Erica on Agile drivers for new project management tools

I am a student researching piracy for my computer course. My mother owns an epublishing company. Ebook piracy is also a huge problem in h...

6 hours 32 minutes ago by tasha6669 on SaaS no silver bullet for piracy

For more information regarding the lawsuit and the patents involved, check out Sunlight Research's upcoming webinar "Will Oracle’s Java...

12 hours 57 minutes ago by Sunlight on Legal woes no impact on Android ecosystem yet

Google search does not seem to be made for 5 years old kids,anyway your child will learn to say and understand the meaning of this senten...

23 hours 11 minutes ago by irajjs on Facing reality from a Google search about Echo of Amboseli

Another project software is http://www.proofhub.com/. I have used it and it is really good. It contains many new features which you can u...

1 day 7 minutes ago by Barry on Check out Project alternatives: Basecamp and QuickBase

But iTunes music does not apply to Asia. We STILL CAN'T BUY music from iTunes!!!

1 day 111648 seconds ago by maxxtotal on Study: Music, not apps, rules iTunes

Sadly, asia will probably not get it ...

2 days 3 minutes ago by mingnow on Apple TV to launch with Netflix

I read a great deal of blogs, and I have not come across an article that articulates these points so well.

2 days 31 minutes ago by barbaragabogrecan on Is NBN really needed in Australia?

The project is very much pro India & may be necessary. But I think it is too futuristic for India which lacks even basic information secu...

3 days 34 minutes ago by amit039 on Should India now look forward to unique ID cards?

Hamein Malum Hai Jannat ki Haqiqat Lekin Ghalib, Dil Behelane ko Khayal Achcha Hai As kids and as people who do not want to learn about ...

3 days 33 minutes ago by deepak.sogani on Facing reality from a Google search about Echo of Amboseli

Check out this article on using the Droid X in the Enterprise: http://forum.maas360.com/go/mobileitexpertise/the-x-factor-my-first-week-...

3 days 31 minutes ago by dlima on Five Android apps for enterprise users

I total agree that being married does not automatically make a person a better boss. Neither would I say being single makes you better re...

3 days 50 minutes ago by mingnow on Being married doesn't make one a better boss

A very painful way of getting introduced to death. I remember watching 'haati mera saati' around the same age and weeping for day...

4 days 30 minutes ago by Benno on Facing reality from a Google search about Echo of Amboseli

I have had to good fortune to use all operating Systems (OS) listed in your article, including Solaris. For the most part, I derive the m...

4 days 21 minutes ago by wanderson on 10 differences between Linux and BSD