Security 2.0: An Update

Security 2.0 has evolved in response to a dramatically shifting threat landscape.



By Tom Schmidt

The battleground for security has shifted. No longer is it just about the computer or even the corporate network. Instead, the new challenge is about protecting users' most important assets: their information and their interactions. Providing that protection is at the heart of what has been dubbed "Security 2.0."

Evolving challenges
Security 2.0 has evolved in response to a dramatically shifting threat landscape. Previous editions of the Internet Security Threat Report have documented that attack activity has evolved from being motivated by status for technical prowess to being motivated by financial gain. Many of today's threats are designed to gather information that has financial value to the attacker. This can include personal information that can be used for the purpose of identity theft (the act of stealing the information) or fraud (using the information to commit fraud).

As the most recent Threat Report observed:

"The current threat landscape is populated by lower profile, more targeted attacks, attacks that propagate at a slower rate in order to avoid detection, and thereby increase the likelihood of successful compromise. Instead of exploiting vulnerabilities in servers, as traditional attacks often did, these threats tend to exploit vulnerabilities in client-side applications that require a degree of user interaction, such as word processing and spreadsheet programs. A number of these have been zero-day vulnerabilities. These types of threats also attempt to escape detection in order to remain on host systems for longer periods so that they can steal information or provide remote access."

People are the new perimeter
Of course, the threat landscape isn't all that is evolving. So too is the network perimeter. Traditionally, an enterprise's computer network has been a well-defined entity, with clear perimeters and fixed endpoints throughout. But that was yesterday. Today's IT network landscape has changed almost beyond recognition:

  • Instead of one corporate platform and operating system, companies now routinely mix PCs and Macs with Windows, Unix, Linux and more.
  • At the same time, network usage has expanded to include multiple endpoints beyond the traditional desktop and servers. From laptops to PDAs to smartphones to guest computers, network boundaries have morphed to embrace a new business paradigm.
  • Today, the physical network perimeter is no longer defined by network devices. Instead, the people using the system -- employees, customers, guest users and partners -- comprise the new boundaries.
  • Technology innovations, driven by pervasive computing, are fueling new business capabilities and business models. Customers, connecting directly to corporate networks, now accomplish transactions that were once completed by corporate employees.

That's the reality of the online world today. Moreover, customers expect faster access to their information, and enterprises must keep up with growing customer expectations and look for ways to leverage new technologies.

Making it all work
So what makes this new world work? The answer shouldn't come as a surprise. What makes it all work is confidence. Confidence is the essential component if enterprises expect to realize the full potential that these new technologies bring. And confidence comes only when all those in the connected world believe that their information is protected, their interactions are secure, and the risk of harm is minimal.

Protecting this information and securing these interactions takes more than bolted-on security. It takes integrated products and services that provide a holistic view into an organization's security posture. It also takes solutions that identify risks early -- so that steps can be taken to mitigate them and prevent an attack. And it entails enabling customers to manage their security events -- no matter what products they may already have installed.

Conclusion
External threats like phishing, pharming, and identity theft, are evolving at an accelerating pace. Criminals and malicious users are no longer focused on PCs or networks; instead, they now reach into the depths of the world's data banks. These disturbing trends are introducing new risks to our most valuable asset -- information -- as well as our interactions that today span dozens of platforms and hundreds of devices. Clearly, a new approach to protecting information and interactions is required.

Security 2.0, which integrates software, services and partnerships, represents a vision for building confidence in today's connected world. Its goal: the comprehensive protection of business interactions, critical information and IT infrastructure.

Tom Schmidt writes frequently about information security topics. He has more than 15 years' experience as a writer and editor in high-tech publishing.

Related Articles
- Identity Theft
There are several kinds of identity theft even more severe then credit card theft. Educate yourself and use the appropriate identity protection services that can actually restore your identity if anything were to happen. Read this article to learn more about this topic.
- How To Buy Security Barricades
- Checking Computer Security
- Employee Verification for SMBs
- Computer Security
- Private Security Officer
- Training For Security In Computer World
- Information Security
- Provision Security Solutions
- Business Security Services
Regional Articles
- Security 2.0: An Update Alabama
- Security 2.0: An Update Alaska
- Security 2.0: An Update Arizona
- Security 2.0: An Update Arkansas
- Security 2.0: An Update California
- Security 2.0: An Update Colorado
- Security 2.0: An Update Connecticut
- Security 2.0: An Update DC
- Security 2.0: An Update Delaware
- Security 2.0: An Update Florida
- Security 2.0: An Update Georgia
- Security 2.0: An Update Hawaii
- Security 2.0: An Update Idaho
- Security 2.0: An Update Illinois
- Security 2.0: An Update Indiana
- Security 2.0: An Update Iowa
- Security 2.0: An Update Kansas
- Security 2.0: An Update Kentucky
- Security 2.0: An Update Louisiana
- Security 2.0: An Update Maine
- Security 2.0: An Update Maryland
- Security 2.0: An Update Massachusetts
- Security 2.0: An Update Michigan
- Security 2.0: An Update Minnesota
- Security 2.0: An Update Mississippi
- Security 2.0: An Update Missouri
- Security 2.0: An Update Montana
- Security 2.0: An Update Nebraska
- Security 2.0: An Update Nevada
- Security 2.0: An Update New Hampshire
- Security 2.0: An Update New Jersey
- Security 2.0: An Update New Mexico
- Security 2.0: An Update New York
- Security 2.0: An Update North Carolina
- Security 2.0: An Update North Dakota
- Security 2.0: An Update Ohio
- Security 2.0: An Update Oklahoma
- Security 2.0: An Update Oregon
- Security 2.0: An Update Pennsylvania
- Security 2.0: An Update Rhode Island
- Security 2.0: An Update South Carolina
- Security 2.0: An Update South Dakota
- Security 2.0: An Update Tennessee
- Security 2.0: An Update Texas
- Security 2.0: An Update Utah
- Security 2.0: An Update Vermont
- Security 2.0: An Update Virginia
- Security 2.0: An Update Washington
- Security 2.0: An Update West Virginia
- Security 2.0: An Update Wisconsin
- Security 2.0: An Update Wyoming
Related Articles
- Provision Security Solutions
Provision Security Solutions will assess your home and office and determine what needs to be done. Afterwards, Provision Security Solutions can provide different options when it comes to residential and commercial security systems, which may involve the use of peripherals as well as high-speed computers that are installed by certified security professionals.
- Training For Security In Computer World
- Employee Verification for SMBs
- How To Buy Security Barricades
- Identity Theft
- Private Security Officer
- Information Security
- Business Security Services
- Computer Security
- Checking Computer Security
Rate Article
     
Articles Insider

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Family Home Services Real Estate Resources
Business Services Fashion Industrial Goods & Services Retail & Consumer Services
Career Financial Services Insurance Software
Cars Food & Beverage Internet Technology
Computer Hardware Franchise Legal Telecommunications
Construction Health Miscellaneous Trade Shows
Education Holidays Nightlife Travel
Entertainment Home Appliances Online Database Weddings
Environmental Home Electronics Pets