Integration and services needed for cybersecurity efficacy and operations efficiency Just as the leaves started to turn here in New England, I headed out to Silicon Valley last week to present at an IT event. While I was in California, there were two announcements that illustrate the state of the cybersecurity industry.First, Cisco Systems announced a milestone with its announcement of Cisco ASA with FirePOWER services. This is a first step toward integrating the best of the Sourcefire next-generation IDS/IPS with the best of Cisco’s NGFW. It also moves beyond NGFW basics like application and user controls by adding “threat-focused” functionality for preventing, detecting, and responding to advanced malware.This announcement should please shareholders as it demonstrates that Cisco is managing the merger and executing on an integration plan. Beyond Wall Street, however, Cisco’s announcement is much more important as it really responds to market requirements. In a recent survey, ESG asked enterprise security professionals to define the most compelling features of a next-generation firewall (note: I am an ESG employee). 47% said, “consolidation of multiple security services into a single system”37% said, “advanced network security analytics capabilities”35% said, “advanced malware detection capabilities with static and dynamic malware inspection”So with its announcement, Cisco is addressing all of these areas; namely integration, analytics, and advance malware detection – the exact features that users want. Others like CheckPoint, Fortinet, McAfee, and Palo Alto are following the same game plan.In another announcement last week, FireEye announced “FireEye as a Service,” and FireEye Advanced Threat Intelligence. Why the services play from a product company? While all organizations need better advanced anti-malware detection and response technologies, many don’t have the right skills to use them effectively. In fact, ESG research indicates that 25% of organizations have a current “problematic shortage” of IT security skills – especially in high-IQ areas like security analytics. FireEye is combining its technology and sophisticated skill set to bridge this gap. FireEye can also add threat intelligence so its customers can utilize “in-the-wild” information to strengthen their defenses against targeted attacks. The Cisco and FireEye announcements are a microcosm of what’s happening in cybersecurity. Large organizations are abandoning individual point tools in favor of integrated cybersecurity technology architectures – exactly why Cisco bought Sourcefire and is now bringing the best of both companies together. Aside from technology alone, CISOs also need to supplement internal infosec resources with the right skills. FireEye is now addressing this.These trends are not a secret – other vendors including HP, IBM, RSA, and Symantec have their own plans for integrated security technology architecture and managed/professional services. This may be the market direction but it’s important to note that the move toward integrated security architecture and managed services represents a major cybersecurity transition for enterprise organizations. Vendors who can guide customers through this evolution with the right project plans, reference architectures, and industry-specific implementation guidelines will put themselves in the best position. Related content analysis 5 things security pros want from XDR platforms New research shows that while extended detection and response (XDR) remains a nebulous topic, security pros know what they want from an XDR platform. By Jon Oltsik Jul 07, 2022 3 mins Intrusion Detection Software Incident Response opinion Bye-bye best-of-breed? ESG research finds that organizations are increasingly integrating security technologies and purchasing multi-product security platforms, changing the industry in the process. By Jon Oltsik Jun 14, 2022 4 mins Security Software opinion SOC modernization: 8 key considerations Organizations need SOC transformation for security efficacy and operational efficiency. Technology vendors should come to this year’s RSA Conference with clear messages and plans, not industry hyperbole. By Jon Oltsik Apr 27, 2022 6 mins RSA Conference Security Operations Center opinion 5 ways to improve security hygiene and posture management Security professionals suggest continuous controls validation, process automation, and integrating security and IT technologies. By Jon Oltsik Apr 05, 2022 4 mins Security Practices Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe