security

Security: let’s stop being the plumber

Posted on 18/12/2019 by vmware
DISCLAIMER: this article is older than one year and may not be up to date with recent events or newly available information.

CIOs and CISOs are feeling increasingly anxious. Cyber attacks of all kinds are constantly in the press, and the financial consequences continue to worsen. The reality is that businesses are falling victim to cybercrime on a more and more frequent basis. Investing in traditional cyber security products is all well and good. But they are becoming less and less effective. The processes from the past have clearly reached their limits. It’s time to urgently rethink our approach.

Guestblog by Sylvain Cazard, VP SDDC EMEA, VMware

A digital economy will only work if we can trust it

In a study we conducted with Forbes, 21% of managers said that they felt confident about their IT security. Considering the fact that our economy has become completely dependent on digital technology, this is a major cause for concern. While the benefits of the digital revolution are undeniable, the efficacy of our current  security measures is under serious scrutiny.

For a long time, cyber security has been based on the idea of an impenetrable fortress. A clearly defined and well-protected wall behind which we hoped our data was completely secure. This strategy was certainly effective when on-premises data centres processed all corporate data. But IT has moved on a lot since then. New application models and the apps they produce are thriving and are ubiquitous in our current economy. Wireless networks keep us connected everywhere we go, but the security of these networks cannot always be guaranteed. Data is transferred from one cloud to another, and the billions of connected devices create even more potential vulnerabilities.
The attack surface is now almost infinite. And our fortress is beginning to look more like a colander and we’re scrambling to fill the holes with more and more diverse point solutions. It’s like a plumber constantly sealing leaking pipes and fittings.

Cyber security is coming to the end of a long cycle

We are continually churning out ‘new’ security solutions without any evidence of their effectiveness. It’s fairly common for an organization to have well over 20 suppliers providing supposedly interlocking security solutions. This is very curious, since this is one case where more almost certainly doesn’t mean better.  Cyber security is becoming so complicated that just getting all the various moving parts working together is becoming an almost unmanageable problem, especially since most organizations are reporting a serious shortage of qualified security specialists.

IT infrastructures secured only around their perimeter are just no longer secure enough. The more they grow, the more scope there is for cyber attacks. Today people spend 80% of expenditure on reactive measures to such threats, whereas the focus should be on taking action that prevents such threats breaching the network in the first place. Amazingly, market research shows that security start-ups still focusing on reactive threat detection solutions, gets 72% of venture capital funding. When we would have expected them to be looking at more disruptive, preventative technologies. With 400,000 new Zero-Day threats appearing every day, IT infrastructures cannot be effectively protected if security isn’t taken into consideration from the very beginning (security by design). We urgently need to change our mindset.


Category: Network & Security

Tags: , ,

Related Articles

Posted on 01/07/2019 by vmwarebelgium

Forget what you think you know about IT Security. It is probably wrong

We’re spending more than ever before on IT security. Yet at the same time, we see continually more cyber threats. And it’s a matter of when – not if – your organization is penetrated. So, what to do and how does that work? Pat Gelsinger, VMware CEO, described the situation above as ‘fundamentally wrong’. « While more of our […]

Posted on 01/12/2016 by blogsadmin

Trading off between mobility and security? No way!

Guest blog post from Tom Vallons, Partner Development Specialist Business Mobility, VMware Benelux In 2018 the General Data Protection Regulation (GDPR) will come into effect in Europe, making data protection much more of a business consideration than a risk management issue. Actually, for some organizations, ensuring customers’ data privacy will become a unique selling proposition. […]

Posted on 03/01/2019 by vmwarebelgium

Why you should care about logical separation and how you can do it in software?

Security has always been a must have, in fact a necessity for business and indeed civilisation itself. No fortified castle, no community.  No alarm, no jewels, no perimeter security, certain data breach. You get the point.  Guest blog by Joe Baguley, VP & CTO EMEA, VMware Security has been solved for much of the physical […]

Comments

No comments yet

Add a comment

Your email address will not be published.

This site uses cookies to improve the user experience. By using this site you agree to the privacy policy