Advertisement
Promo

Security threats Toolkit

Belt-tightening may affect security, warn experts

Tom Espiner ZDNet.co.uk

Published: 28 Oct 2008 12:40 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Companies that pursue new IT strategies to cost cuts in the economic downturn could put their corporate security at risk, experts have warned.

Speaking at a press event at the RSA Conference Europe 2008 in London on Monday, the conference's chief security strategist, Tim Mather, warned businesses about the use of untested technologies.

"Some companies will be pushed to implement insecure technologies to lower costs," Mather said.

Microsoft's UK security adviser, Ed Gibson, also appearing at the event, said that "security will suffer if people take their eye off the ball".

Mather noted that relatively new technologies do not have "security maturity". He mentioned technologies such as VoIP between enterprises, virtualisation and cloud computing, which, he said, increase the risk of systems compromise. "VoIP has been widely implemented, but within the enterprise, not between enterprises," Mather noted.

Mather highlighted the new parameters that need to be considered with virtualisation. "There's a question of how you can assume the security of virtual systems", he said.

Read this

Q&A
Gartner: Authentication systems are 'fatally flawed'

Security analyst Jay Heiser gives his take on the rash of UK public-sector data losses and explains why authentication systems aren't up to scratch...

Read more +

Another speaker, Ben Jun, vice president of technology at Cryptography Research, said that, while the technologies may be fairly well established, the security around them had not been fully tested.

"It's a maturity effort," said Jun. "We're not there yet, in spite of virtualisation not being new."

Jun said that virtualisation companies were addressing the issue, and cited VMware launching its VMsafe API earlier this year as an example. VMsafe allows accredited third parties to develop applications which interact with VMware software.

"While VMware has launched VMsafe, the security maturity of virtualisation is not as high as we would like it to be," said Jun.

However, VMware denied the security of virtualisation was immature.

"Virtualisation is a fundamentally more secure way of doing IT," said Martin Niemer, VMware's European group product marketing manager. "From an architectural standpoint our stripped-down, bare-metal hypervisor is incredibly secure, and likewise all the virtual machines running on the hypervisor are completely encapsulated, which further enhances security."

Niemar claimed VMsafe-enabled technologies will be able to detect malicious code at the same privileged level as the hypervisor, blocking threats before they can compromise IT systems.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:










Video icon

Video

Sentry Posts Blog

Met will not reopen phone hack investi...

The Metropolitan Police will not reopen its investigation into alleged phone hacking by the News of the World. In a press statement delivered outside Scotland Yard on Thursday, Assistant... More

Post a comment

FUD over ChromeOS's security already?

It hasn't taken long for the security vendors to wake to the potential of Google's new ChromeOS. The potential that is, to create FUD – fear uncertainty and doubt. In a release today,... More

Post a comment

Feds take DDoS in their stride

The US Department of Homeland Security has said that a series of distributed denial-of-service attacks began on US government networks on 4 July. However, Amy Kudwa, deputy press... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters