Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Imperfect storm needs full-spectrum defense

Network World , 07/10/2006
  • Share/Email
  • Comment
  • Print

Defense in depth is failing. As cybercrime mounts and attackers exploit the spectrum of technical and managerial weaknesses, companies must adopt a full-spectrum defense.

We are facing a not-so-perfect storm of rapidly changing business requirements, cybercrime and compliance. The prevailing winds of outsourcing, partnering and mobility are driving companies to overextend. Technology is locked in a feedback loop with business, and it is no accident that technology trends such as service-oriented architecture and de-perimeterization mirror business trends toward loosely coupled outsourcing and process networks.

Cybercrime dogs individuals and organizations alike. Malware is everywhere, with criminal or commercial intent. Worms and viruses marshal botnets, plant crimeware and assist phishing. But because insiders are always the greater threat, it also is worrisome that business trends are bringing more insiders into our networks.

There is talk of inflation in the financial markets. But in IT we face consequence inflation. Risks are rising with growing compliance backlash to data spills, identity theft and corporate fraud.

Protection is becoming a management problem of considerable proportions. Each new attack vector or compliance demand spawns new products, whether or not they are required. Competing technical safeguards are tripping over each other in a race to catch up with layers of changing infrastructure and applications. The result is greater complexity.

The answer to these challenges is a full-spectrum defense. Simply put, this means defense in depth plus defense in breadth. Significant technical improvements can be made to layered defenses (depth) by increasing assurances for the user, identity and system, as well as network protections. Companies also should build a technical control system that integrates and interoperates across multiple platforms, applications and security technologies. This requires improvements in system-management components such as change control, workflow and automated software distribution, as well as features we normally think of as falling under security management.

Gaining breadth of control is the greater challenge. The technical control system and security processes also must cover outside business partners that have become part of the extended enterprise ecosystem. Trust networks, audit standards and well-constructed contracts all play a role. Organizations also can leverage ISPs and network intelligence services to enhance business continuity, filter content or correlate and thwart threats from the Internet at large.

  • Share/Email
  • Comment
  • Print
Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.

Download the white paper.

Applications: taking back control

Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.

Learn more today.

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed