Welcome!

Cloud Security Authors: Shelly Palmer, Elizabeth White, Liz McMillan, Ravi Rajamiyer, Stackify Blog

Related Topics: Cloud Security, Agile Computing

Cloud Security: Press Release

Is Your Internet Security Architecture Ready for Today's Internet?

Secure Web Gateway Company Cites Key Areas of Concern for Securing Today's Organizations

Web 2.0 applications, hosted services and social networks are examples of how today's Internet is redefining the way people interact with one another and how businesses and organizations use and manage critical applications. The rapid expansion of choices and the high number of users has exposed inefficiencies in tools that the industry has traditionally used to secure and control Internet connections. Many organizations have replaced outdated security methods with forward-thinking solutions that can secure the Web gateway.

The rise in Web 2.0 activity has created a well-defined need for better visibility and protection at the Internet gateway. According to Gartner Group, less than 30 percent of organizations have secured their Internet gateway, while the remaining companies rely on traditional techniques such as firewalls, URL filtering or traditional 'block/allow' technologies. Cymphonix® believes these outdated security tools cannot provide the detailed identity aware reporting and flexible policy controls to be effective in an 'always on' world.

"Even casual users of the Internet can clearly see the benefits and advantages of Web 2.0 applications. Using Facebook and other social media sites or media portals like Hulu allows us to access content when and where we want it. In using these tools, we've become accustomed to accepting and downloading plug-ins and other browser enhancing software, which is a prime target for malware. As we adapt and expand the usage of Web 2.0 technologies, malware will be a constant challenge and its effects will be more damaging than ever before," said Brent Nixon, president and CEO of Cymphonix. "Simply blocking pages no longer makes sense in a Web 2.0 world. Companies must regain control of the content at the gateway while allowing appropriate access to those who need it."

To address what's really happening in the technical trenches, Cymphonix assembled a list of five key items that IT management needs to understand about Web 2.0 security:

A majority of Web 2.0 applications are vulnerable to malware attacks: Malware is more damaging than ever before. Not only can it take down entire business segments, the time and resources required to remedy a malware infection could cost a company millions of dollars. As more companies leverage Web 2.0, the potential for disaster increases exponentially. While most organizations agree that network security is a critical piece of infrastructure, they remain tied to conventional methods because change requires an investment.

Most users cannot determine the good sites from the bad sites: As we've become accustomed to Web 2.0 technologies we begin to automatically trust, accept and download items when a Web page requests the user to install a plug-in. This presents a prime opportunity for malware offenders. In recent years there have been malware issues with popular websites like Facebook, MySpace and Yahoo!. Mashups pose another risk, as URLs are made to look as though they are coming from trusted sources, when in fact it is malware.

Traditional block/allow security technologies have created a legitimate business need for avoidance technologies: As an online generation, we are accustomed to accessing the Internet anywhere -- work, school, hotel room, etc. Many organizations have used their traditional security solutions to block questionable content or websites running on HTTP and port 80. Users still want access to content, which has caused an explosion in the number of filter avoidance technologies available to access content using ports, protocols and applications that traditional security solutions cannot detect.

There are legitimate advantages to allowing Web 2.0 applications: Wikis, user groups, blogs, sales networking and marketing platforms all provide tools that increase productivity while saving time and money. For many companies, blocking these tools is not an option. Additionally, many of today's employees expect access to these applications and services, which have become an important part of our everyday lives.

Existing Tools Don't Have the Level of Control that is Needed: The new measure of content management is the ability to shape and control. It is not enough to say 'this website is allowed and this one is not.' Rather, there has to be the ability to create "greater among equals" and that can only happen when all Web content can be shaped and prioritized. In addition, we know that an application or website shaping rule that applies to the entire organization will not work. There needs to be multiple levels of priority and access across all areas of network management including Internet content management as well.

More Stories By Security News Desk

SYS-CON's Security News desk trawls the world of security for news of software, hardware, products, and services that seems likely to be of interest to infosec professionals and summarizes them for easy assimilation by busy IT managers and staff.

@ThingsExpo Stories
SYS-CON Events announced today that N3N will exhibit at SYS-CON's @ThingsExpo, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. N3N’s solutions increase the effectiveness of operations and control centers, increase the value of IoT investments, and facilitate real-time operational decision making. N3N enables operations teams with a four dimensional digital “big board” that consolidates real-time live video feeds alongside IoT sensor data a...
Mobile device usage has increased exponentially during the past several years, as consumers rely on handhelds for everything from news and weather to banking and purchases. What can we expect in the next few years? The way in which we interact with our devices will fundamentally change, as businesses leverage Artificial Intelligence. We already see this taking shape as businesses leverage AI for cost savings and customer responsiveness. This trend will continue, as AI is used for more sophistica...
Real IoT production deployments running at scale are collecting sensor data from hundreds / thousands / millions of devices. The goal is to take business-critical actions on the real-time data and find insights from stored datasets. In his session at @ThingsExpo, John Walicki, Watson IoT Developer Advocate at IBM Cloud, will provide a fast-paced developer journey that follows the IoT sensor data from generation, to edge gateway, to edge analytics, to encryption, to the IBM Bluemix cloud, to Wa...
What is the best strategy for selecting the right offshore company for your business? In his session at 21st Cloud Expo, Alan Winters, U.S. Head of Business Development at MobiDev, will discuss the things to look for - positive and negative - in evaluating your options. He will also discuss how to maximize productivity with your offshore developers. Before you start your search, clearly understand your business needs and how that impacts software choices.
SYS-CON Events announced today that Massive Networks, that helps your business operate seamlessly with fast, reliable, and secure internet and network solutions, has been named "Exhibitor" of SYS-CON's 21st International Cloud Expo ®, which will take place on Oct 31 - Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. As a premier telecommunications provider, Massive Networks is headquartered out of Louisville, Colorado. With years of experience under their belt, their team of...
SYS-CON Events announced today that Fusic will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Fusic Co. provides mocks as virtual IoT devices. You can customize mocks, and get any amount of data at any time in your test. For more information, visit https://fusic.co.jp/english/.
SYS-CON Events announced today that Enroute Lab will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Enroute Lab is an industrial design, research and development company of unmanned robotic vehicle system. For more information, please visit http://elab.co.jp/.
SYS-CON Events announced today that MIRAI Inc. will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. MIRAI Inc. are IT consultants from the public sector whose mission is to solve social issues by technology and innovation and to create a meaningful future for people.
SYS-CON Events announced today that Mobile Create USA will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Mobile Create USA Inc. is an MVNO-based business model that uses portable communication devices and cellular-based infrastructure in the development, sales, operation and mobile communications systems incorporating GPS capabi...
There is huge complexity in implementing a successful digital business that requires efficient on-premise and cloud back-end infrastructure, IT and Internet of Things (IoT) data, analytics, Machine Learning, Artificial Intelligence (AI) and Digital Applications. In the data center alone, there are physical and virtual infrastructures, multiple operating systems, multiple applications and new and emerging business and technological paradigms such as cloud computing and XaaS. And then there are pe...
SYS-CON Events announced today that Interface Corporation will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Interface Corporation is a company developing, manufacturing and marketing high quality and wide variety of industrial computers and interface modules such as PCIs and PCI express. For more information, visit http://www.i...
SYS-CON Events announced today that Keisoku Research Consultant Co. will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Keisoku Research Consultant, Co. offers research and consulting in a wide range of civil engineering-related fields from information construction to preservation of cultural properties. For more information, vi...
SYS-CON Events announced today that SIGMA Corporation will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. uLaser flow inspection device from the Japanese top share to Global Standard! Then, make the best use of data to flip to next page. For more information, visit http://www.sigma-k.co.jp/en/.
SYS-CON Events announced today that B2Cloud will exhibit at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. B2Cloud specializes in IoT devices for preventive and predictive maintenance in any kind of equipment retrieving data like Energy consumption, working time, temperature, humidity, pressure, etc.
Agile has finally jumped the technology shark, expanding outside the software world. Enterprises are now increasingly adopting Agile practices across their organizations in order to successfully navigate the disruptive waters that threaten to drown them. In our quest for establishing change as a core competency in our organizations, this business-centric notion of Agile is an essential component of Agile Digital Transformation. In the years since the publication of the Agile Manifesto, the conn...
While some developers care passionately about how data centers and clouds are architected, for most, it is only the end result that matters. To the majority of companies, technology exists to solve a business problem, and only delivers value when it is solving that problem. 2017 brings the mainstream adoption of containers for production workloads. In his session at 21st Cloud Expo, Ben McCormack, VP of Operations at Evernote, will discuss how data centers of the future will be managed, how th...
SYS-CON Events announced today that NetApp has been named “Bronze Sponsor” of SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. NetApp is the data authority for hybrid cloud. NetApp provides a full range of hybrid cloud data services that simplify management of applications and data across cloud and on-premises environments to accelerate digital transformation. Together with their partners, NetApp em...
SYS-CON Events announced today that Nihon Micron will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Nihon Micron Co., Ltd. strives for technological innovation to establish high-density, high-precision processing technology for providing printed circuit board and metal mount RFID tags used for communication devices. For more inf...
SYS-CON Events announced today that Suzuki Inc. will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Suzuki Inc. is a semiconductor-related business, including sales of consuming parts, parts repair, and maintenance for semiconductor manufacturing machines, etc. It is also a health care business providing experimental research for...
SYS-CON Events announced today that Ryobi Systems will exhibit at the Japan External Trade Organization (JETRO) Pavilion at SYS-CON's 21st International Cloud Expo®, which will take place on Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA. Ryobi Systems Co., Ltd., as an information service company, specialized in business support for local governments and medical industry. We are challenging to achive the precision farming with AI. For more information, visit http:...