All the latest UK technology news, reviews and analysis

RSA 2009: Layer up for security, say experts

by Shaun Nichols

24 Apr 2009

Be the first to comment

  • Tweet this
sweets
Experts warned against 'M&M security', which is hard on the outside but soft in the middle. Pic credit: Lin Pernille

A panel of network security experts on Thursday warned administrators to steer clear of so-called magic bullet offerings.

The group spoke to delegates at the 2009 RSA conference on the virtues of using multiple security solutions and pursuing a 'defence in depth' philosophy for securing their networks.

The system calls for adding multiple levels of security throughout the network, both to prevent intrusion and secure data within the network. Rather than relying on one suite of products on one box to provide total security, the panel advised administrators to pursue multiple best-of-breed products and secure multiple avenues for attack.

For panellist Bob Pratt, head of product management for ArcSight, the term defence in depth applies not only to a company's hardware choice, but also its philosophy towards administration and management of IT.

"It is not just buying six products and layering them one on top of the other," said Pratt.

"It is not having one guy who administers every single security product in the company; you have two security products, why not have two different sets of administrators?"

Several of the panellists likened the approach to that of a bank vault, where multiple security measures and procedures are put in place to safeguard the money in addition to the vault itself.

The panel also warned against relying simply on front-end security and intrusion prevention systems. Netronome director of product management Daniel Proch described the approach as 'M&M security' in reference to the hard-shelled candy.

"It is a hard outer shell they think, but with a really soft middle," Proch explained.

"They are not patching back-end systems, they are relying on the boxes on the outside to stop everything."

In general, the panel agreed that to better prevent attacks and intrusions, businesses needed to better communicate. Panellist and Tenable Network Security chief executive Ron Gula suggested that enterprises follow the lead financial institutions have begun to take and share certain attack details within the industry.

"We need to be a little bit more reactive," said Gula.

"You can put that [information] into your environment and get a good idea about how other people like you are getting attacked."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

35%

0%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Contract Systems Administrator, Windows £320 per day

Contract Systems Administrator, Southampton My...

PHP Web Developer, PHP, to £30k + 30% bonus

PHP Web Developer required to join my market-leading...

Java Developer x2, Spring, Hibernate, £40K

Java Developer x2, Spring, Hibernate, Swindon, £40K...

Business Readiness/ Change manager

As part of a major implementation of a new inventory...

To send to more than one email address, simply separate each address with a comma.