tech:

taffy

Database Security, SIEM Top Concerns: McAfee

[Techtaffy Newsdesk]

McAfee announced findings from its annual study on how IT decision-makers view and address the challenges of risk and compliance management. The report Risk and Compliance Outlook: 2012, found that Database Security and Security Information and Event Management (SIEM) were among the top priorities due to increased advanced persistent threats.

Database security has been an ongoing concern for organizations due to highly publicized data breaches and the growing regulatory compliance demands. The largest portion of an enterprise’s most sensitive and valuable information resides in databases. When asked about sensitive database breaches, over one quarter had either had a breach or did not have the visibility to detect a breach. In addition, respondents listed databases as the top challenge in meeting regulatory mandates.

The other top concern was SIEM, finding that most organizations rely on legacy systems that do not meet their current needs. Ever changing threats, data breaches, and IT complexity add to the burden of being able to monitor security events, detect attacks, and assess real and potential risk. Approximately 40% of organizations are planning to implement or update a SIEM solution. While 80% of respondents cited visibility as very important, security teams remained challenged in this area. Discovering threats was listed as the top challenge to managing enterprise risk.

Key Findings:

  • Similar to the 2011 survey, there is a positive trend in security budgets for 2012 with 96% of the organizations indicating same or more expenditure on risk and compliance.
  • Organization state ‘Compliance’ as the driver for almost 30% of IT projects.
  • Software and Appliance are the top choices for Risk and Compliance products. On average, one-third of all organizations prioritized the upgrade/implementation of unique risk and compliance products to address vulnerability assessment, patch management, remediation, governance, risk management, and compliance.
  • Survey data showed rapid uptake towards Hosted SaaS and Virtualization. Nearly 40% organizations claim to be moving towards these deployment models in 2012.
  • Patch Management frequency is a challenge – almost half of the organizations patch on a monthly basis with one-third doing it on a weekly basis. Just like last year’s analysis, not all companies are able to pinpoint threats or vulnerabilities, as a result, 43% indicate that they over-protect and patch everything they can.

 

Just in

Reddit hasn’t turned a profit in nearly 20 years, but it just filed to go public anyway — CNN

Reddit — which is not yet profitable — says it seeks to grow its business through advertising, more e-commerce offerings and by licensing its data to other companies to train their artificial intelligence models, writes Clare Duffy and John Towfighi.

Leidos awarded $143M Defense Intelligence Agency technology platform contract

Leidos has obtained a task order contract from the Defense Intelligence Agency's (DIA) Science & Technology Directorate. This contract tasks Leidos with the creation and implementation of a comprehensive system for managing open-source intelligence

Staff say Dell’s return to office mandate is a stealth layoff, especially for women — The Register

The implications of choosing to work remotely, we're told, are: "1) no funding for team onsite meetings, even if a large portion of the team is flying in for the meeting from other Dell locations; 2) no career advancement; 3) no career movements; and 4) remote status will be considered when planning or organization changes – AKA workforce reductions," writes Thomas Claburn. 

Orkes raises $20M

Cupertino, CA-based Orkes, a company focused on the scaling of distributed systems, has raised $20 million.

Motorola Solutions appoints Nicole Anasenes to board

Motorola Solutions announced the appointment of Nicole Anasenes to its board of directors. Ms. Anasenes has over two decades of experience in leadership roles across software and services, market development, acquisitions, and business transformation.