Click here to receive your FREE subscription to Campus Technology
Home > IBM Unveils Converged Security Strategy
News
IBM Unveils Converged Security Strategy
11/6/2007
By David Nagel
IBM is tackling security in a big way. Late last week the company unveiled a new strategy encompassing five broad aspects of security and launching new products, services, and research designed to address everything from data threats to physical vulnerabilities. The "first wave" in IBM's new security initiative targets "enterprise to edge" information security.
"For many enterprises, security is broken," said Tom Noonan, general manager IBM Internet Security Systems, in a statement released Thursday. "The nature of evolving threats is such that installing point solutions to 'keep the bad guys out' is no longer a viable way to secure a business. We advocate new approaches to reduce complexities, adapt to new business imperatives and enable business value versus just threat protection. The path to a more secure world begins with a risk management strategy that limits the impact of threats, improves business resilience and creates an enterprise free of fear."
According to IBM, the new security strategy is the result of several recent acquisitions by the company in the security space. The strategy targets five broad areas of security, including information security; threat and vulnerability; application security; identity and access management; and physical security. In order to tackle these, the company has launched several new products and services, some in partnership with security firms. These include:
- Proventia Content Analyzer Technology, a data inspection and analysis tool for the Proventia Network Intrusion Prevention System;
- IBM Data Security Services for Activity Compliance Monitoring and Reporting, a service deigned to assess and monitor malicious and non-compliant database activity and vulnerabilities and report on abuses;
- IBM Data Security Services for Endpoint Data Protection for encrypting and managing data on endpoint devices;
- IBM Data Security Services for Enterprise Content Protection, a new service meant to prevent intentional an unintentional data leakage;
- User Compliance Management Software, which provides ongoing audits and alerts when policy violations are detected;
- IBM QuickStart Services for Tivoli Compliance Insight Manager, which is designed to help with the implementation of IBM's Tivoli event management software;
- IBM Web Application Security and Compliance Management, a compliance management tool targeted toward Web applications;
- IBM Tivoli zSecure, a suite for the IBM System z mainframe; and
- A new end to end PCI compliance program designed that includes technologies and services to assess compliance, create strategies to meet compliance standards, and, ultimately, to get the client certified for compliance.
IBM has also launched a new security initiative called Security Risk Management (SRM), a collaboration between universities and IBM's research and software divisions. It's designed to provide tools for risk management for CIOs and CISOs to "manage and allocate risk across all security domains to optimize business results," IBM said. "SRM performs critical assessments, compares business-level risks across the enterprise, quantifies the risk managed and the cost of each IT control, as well as automating control testing, to allow the firms to make significant cost savings."
SRM includes dynamic risk quantification; peer group risk comparison; business control optimization; security portfolio optimization (to help assess weaknesses); and event risk calculation.
Read More:
About the author: Dave Nagel is the executive editor for 1105 Media's educational technology online publications and electronic newsletters. He can be reached at dnagel@1105media.com.
Have any additional questions? Want to share your story? Want to pass along a news tip? Contact Dave Nagel, executive editor, at dnagel@1105media.com.
Cite this Site
David Nagel, "IBM Unveils Converged Security Strategy," Campus Technology, 11/6/2007, http://www.campustechnology.com/article.aspx?aid=52684
copy text (above) for proper citation
Recommended Reading
- Sentrigo Offers Help for Database Patching Woes
Sentrigo Inc. released its new Hedgehog vPatch database security software product Tuesday. The product addresses patching inconsistencies that seem to affect busy Oracle database administrators (DBAs), who don't always have time to test and patch. However, users of Microsoft SQL Server database in the enterprise can take a lesson here too.
- Starfish Launches Higher Ed Retention Solution
Software provider Starfish Retention Solutions has announced the upcoming launch of its first product, Starfish Office Hours. The company said this will be the first in a series of products intended to help higher education institutions improve retention and graduation rates by aiding in the delivery of programs designed to help at-risk student populations.
- Unisys Offers Free Unified Communications Trial
Unisys announced Monday that it is offering companies a free 30-day unified communications trial using Microsoft solutions. The offer is currently available through Microsoft's sales personnel.
- New Mexico Launches Statewide eLearning Initiative
As part of its Innovative Digital Education and Learning initiative (IDEAL-NM), New Mexico is launching a statewide program to standardize on a single electronic learning platform--Blackboard--spanning K-12, higher education, adult education, and government. The initiative will also support a new statewide virtual high school.
- North Carolina Adopts Blackboard for Higher Ed
The University of North Carolina and the North Carolina Community College System have signed on with Blackboard to deploy that company's electronic learning platform across 68 individual campuses.
- Semantic Search: Could the Web Think?
Semantics is a sub-field of linguistics that focuses on meaning making in language. Therefore, the Semantic Web we're still reaching for will be based on a set of definitions, languages, and standards that can base a search on the detection of meaning and not just on a simple character string. The Semantic Web will at least be smarter than the current Web.