Seguridad Mania.com - España y América Latina
Portal sobre tecnologías para la seguridad física
- Destacamos »
- software Anti Blanqueo
AUSTIN, TX -- (Marketwired) -- 05/23/13 -- NSS Labs today released new research showing that the common security strategy of "defense in depth" -- layering multiple security products within a single security category (such as intrusion prevention from two different vendors) or even across multiple categories (intrusion prevention systems plus next generation firewalls, for example) -- doesn't always provide the level of protection most enterprises expect. NSS' findings raise fundamental questions about the performance and value layered security products deliver for CIOs and CISOs concerned with cost and complexity in addition to the risk of compromise and data breaches.
In the past 18 months, NSS Labs tested the security effectiveness of typical defense technologies such as next generation firewall (NGFW), intrusion prevention systems (IPS), and end point protection suites (EPP -- also known as antivirus/malware detection) and found that there are significant correlations in their failure to block against known exploits. While layered security remains a best practice in principle, NSS research reveals that the real key to effective protection lies in an organization's choice of protection technologies to combine and documents wide variances in the security effectiveness of different product combinations.
View the NSS Lab Analyst Brief - Correlation of Detection Failures
NSS research found the following key conclusions:
Commentary: NSS Labs Research Director Stefan Frei
"Security professionals have long believed that deploying 'defense in depth' in any product combination uniformly improves protection by default -- but our latest research shatters this traditional assumption and we were surprised to find that a mere 3% of the 606 unique security product combinations tested were able to detect all exploits," said Stefan Frei, Research Director at NSS Labs. "To derive real value from layered security -- offsetting the assumed cost and complexity -- it's imperative for organizations to carefully compare their assets and an array of products' performance in our tests, in order to tailor their security layers for optimal protection. Ignoring this correlation leads to an overestimation of the security effect of combining multiple protection technologies by orders of magnitude."
The NSS Group Tests used for this analysis include:
About NSS Labs, Inc.
NSS Labs, Inc. is the world's leading information security research and advisory company. NSS is both an analyst firm specializing in security technologies and a testing laboratory widely recognized as the "go to" company for research and unbiased reporting. We deliver a unique mix of test-based research and expert analysis to provide our clients with the right information they need to make IT decisions. CIOs, CISOs, and information security professionals from many of the largest and most demanding enterprises rely on NSS. The company is located in Austin, Texas. For more information, visit www.nsslabs.com.
© 2013 NSS Labs, Inc. All rights reserved. All brand, product and service names are the trademarks, registered trademarks, or service marks of their respective owners.
Add to Digg Bookmark with del.icio.us Add to Newsvine
Contact:
ReseAnne Sims
Sr. Marketing Manager, Public Relations
NSS Labs
Phone: +1 (832) 741-7373
rsims@nsslabs.com
Publicamos interesante Informe de más de 48 págs y varios videos demostrativos sobre los posibles ataques a los robots de montaje de las fábricas. ... Leer más ►
Publicado el 22-Jun-2017 • 10.48hs
Publicado el 20-Jun-2017 • 20.22hs
Dirigido tanto a los principiantes, como a los expertos en seguridad informática y sistemas de control industrial (ICS), este libro ayudará a los lectores a comprender mejor la protección de normas de control interno de las amenazas electrónicas. ... Leer más ►
Publicado el 3-Ene-2012 • 20.16hs
Publicado el 25-Set-2009 • 01.26hs
Publicado el 17-Dic-2008 • 08.32hs
Publicado el 11-Oct-2016 • 12.48hs
Publicado el 15-Mar-2016 • 11.59hs
Publicado el 2-Feb-2017 • 11.38hs
Publicado el 20-Jun-2014 • 17.17hs
Publicado el 31-May-2011 • 05.13hs
Publicado el 25-Set-2008 • 17.54hs
Publicado el 1-Set-2016 • 16.11hs
Publicado el 31-Ago-2016 • 18.53hs
Publicado el 19-Ene-2017 • 15.47hs
Publicado el 4-Jul-2016 • 18.51hs