Computer security
IT vendors are not ploughing enough funds into research and development to target new threats

Vendors in the dock over slow IT security progress

IT security chiefs cannot keep pace with threats because vendors are holding them back

Written by Phil Muncaster

IT security professionals cannot keep pace with the changing nature of threats because vendors are holding them back, according to experts at this week's Gartner IT Security Summit 2008.

Speaking at the opening keynote presentation, Gartner research vice president Neil MacDonald said that IT vendors are not ploughing enough funds into research and development to target new threats.

They are also failing to support new security standards for information sharing, and perpetuating siloed security systems.

"There are too many unconnected point products with too much complexity," he said. "Information security must become adaptive … but the vendors are holding us back."

MacDonald called on IT security managers to be more aggressive with their suppliers, demanding more for less, and to invest in a platform of connected products rather than individual solutions.

"We are trapped in the past. Spam is not a security issue anymore, it is an operational issue. We need to turn many functions over to the operations teams and concentrate on new threats," he said.

Elsewhere at the show, experts called for a higher priority to be given to security awareness-raising programmes within organisations.

Martin Smith, chairman of the Security Awareness Special Interest Group, said that, despite firms spending more than ever before on IT security, they are not putting it into the right areas.

"The traditional approach is that this is a technology-based problem with technology-based solutions, but it isn't. We are focusing on brain surgery while the patient dies of a common cold," he said.

Andrew Strong, global security director at Unilever, demonstrated the firm's latest global campaign to improve security awareness, in which a Second Life-style virtual environment is used to demonstrate security-related scenarios, rather than a conventional video.

"A vast majority of the people working for us are under 35, so we thought they would relate more to this than a staid video," he said. "We need to get into the daily lives of staff to make sure they know what is good behaviour and what is bad behaviour."

Strong said that key strategies at Unilever to ensure the success of projects include an annual refocus on the highest risks to ensure they are constantly targeting the right areas, and gaining endorsement from the chief executive which helps to give the initiative a higher profile.

Local leadership gives the campaign credibility and local priority, and ensures that staff on the ground follow their training, he said.

reader comments

related articles

Houses of ParliamentInternet

Government backs central e-crime unit

Baroness Scotland calls for coordinated national response 01 Oct 2008

 

UK banking fraud soars in 2008

Apacs reports overall losses of £300m in the first six months 01 Oct 2008

CSOs urged to dispel security myths

Gartner warns of damaging misconceptions 29 Sep 2008

Collaboration is a necessity for a secure infrastructure

Computing talks to Oracle chief security officer Mary Ann Davidson about the need for companies to work together 26 May 2005

Advertisers urged to kill off polar bears

Getty Images report warns that generic climate change images will not appeal to consumers 06 Feb 2008

Hype analysis: So what will the next 10 years bring?

IT Week asked industry experts from BT, the Chartered Management Institute, the Technology Strategy Board and analysts Gartner and AMR Research how they saw technology and the role of the IT director changing in the future. The feedback was then fed through our patented Hype-o-meter to assess its reliability 19 May 2008

Security gurus laud process benefits

Security based on people and process - not technology 03 Apr 2008

related whitepapers

today's top stories

Solid as a rock

From power cuts in Nigeria to severe server congestion in Lancashire, Lisa Kelly reports on the potential hazards facing three very different organisations and the steps they have taken to ensure their operations are robust enough to withstand them 02 Dec 2008

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

IT staff desperate to keep their jobs

Most would work longer hours for less pay 02 Dec 2008

VMware View 3 enhances virtual desktops

Virtual clients now take up less storage space and can be 'checked out' to a laptop 02 Dec 2008

Technology and privacy

Watch part one of a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 01 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Parcel being packedFeatures

Case study: eSpares and business continuity

Online electricals business has managed to decrease its downtime 02 Dec 2008

Royal Blackburn HospitalFeatures

NHS trust recovers from server overdose

Virtualisation technology breathed new life into East Lancashire's cost-intensive system 02 Dec 2008

Advertisement

Primary Navigation