enterprisesecuritymag

| | August 2019ENTERPRISE SECURITY8IN MY OPINIONanaged Security Services (MSS) are changing how companies approach their cyber security strategies, the adoption of Managed Security Service Provider (MSSPs) to execute various cyber security functions for end-user organizations is also experiencing growth. The opportunities created by new methods and ways of delivering IT, such as cloud-based platforms and applications, DevOps and serverless computing, means that cyber security challenges are also increasing, and we need to come up with more creative approaches in overcoming these challenges. According to Gartner, at the core an MSS monitors digital security events and provides cyber security tools to enterprises, allowing these enterprises to reprioritise their limited resources. An MSS could be expected to manage IT security services remotely or on premise and provide enterprises with essential security tools that ranges from network monitoring, to threat intelligence, to Managed Security Operations centre (SOC). As organisations tackle the challenges of building their security defence capabilities, several questions would be encountered that requires the appropriate response. If you are yet to start your journey perhaps, I can provide some insights to help you on your way.What do you want from an MSSP? For lots of organisations attempting to match the might or sophistication of cyber-attacks can be simply overwhelming or just too expensive, and an alternative approach may be to partner with an MSSP. Organisations with clear objectives are best placed in this relationship. Organisations must speak to their internal stakeholders, review their internal policies and consider their risk profile. Doing this provides valuable insight and a wish list that you can refine into requirements. Some common objectives for MSSP include: · I want to improve the organisations overall cyber security posture · I want to reduce the overall organisations overall cost of cyber security ownership MBy Eddie Ekwo, Head of Technical Information Security, Group Information Security, Arrive PLC· Managed Security Services - what do they mean to you?
< Page 7 | Page 9 >