Ads by TechWords

See your link here
Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
IT Management
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
 

Reporter's Notebook: Security

January 2, 2006 12:00 PM ET

Computerworld - Regulations: The Big Stick

Compliance will dominate the security agenda for 2006. The growing number of regulations -- and the consequences of not complying with them -- have elevated security into the boardroom. CIOs will use compliance to justify most of their information security spending this year -- even for technologies IT would have implemented anyway.

Goodbye Worms. Hello Trojans, Rootkits and Targeted Attacks.
Enterprises will keep getting better at dealing with e-mail-borne worms and viruses, and unless hackers come up with a fiendishly new way of delivering them, 2006 could well see the end of the mass-mailing worm phenomenon. But Trojan horses, rootkits, spyware programs, phishing and targeted attacks will continue to pose big challenges.

Patch and Pray No Nore
Hackers often take advantage of new software flaws faster than companies can apply patches. This year, the goal will be to prioritize patching based on asset value and specific threats rather than the more generalized patching processes currently in place. But the asset and data classification needed to enable such a patching process will be a major challenge.

Securing the Data
Most security efforts have traditionally focused on securing the perimeter and the network using tools such as firewalls, antivirus software and intrusion-detection systems. This year, expect to see more attention devoted to securing the data residing in storage networks, databases, servers and desktops. Why? Because hackers and insiders have started going after the data and because traditional network perimeters have begun fading away as companies tie their networks with those of partners, suppliers and customers.

Locking Down the Network Endpoints
One of the biggest threats to corporate security comes from insecure network endpoint devices such as desktops, notebooks and other client systems belonging to remote and mobile workers, contractors, partners and consultants. As a result, expect to see a lot -- and I really mean a lot -- of focus on tools that can permit, restrict or deny admission to corporate networks based on the security status of the end users' systems.

The 800-pound gorillas move in Microsoft Corp. and Cisco Systems Inc. will expand their influence in the security market. But pure-play security vendors that offer more innovative, and enterprise-tested, products will continue to appeal to corporate customers.

CISOs get some R.E.S.P.E.C.T.
Information security may have become a boardroom issue, but most security executives remain anonymous Joe Somebodies when it comes to recognition at the C levels of their companies. I've lost count of the chief information security officers who have lamented their remarkable lack of visibility within their organizations -- including one CISO who was never consulted by his CIO or CEO even after his firm suffered massive negative publicity following a major data compromise. But growing awareness of the potential reputational damage, financial losses and legal problems that a data breach can cause could improve the CISO's status in 2006.

See more '06 predictions in Security: Fast and Furious.

What else is on tap this year in IT? See the complete Forecast 2006 special report.





Additional Resources

Xerox
By using solid ink technology only from Xerox, you could save up to 65% by printing color for the cost of black and white. Enter for a chance to WIN a PhaserTM 8860 network color printer!
Microsoft
Save time and mitigate security risk. Deploy it now.
Sybase
In this white paper, IDC analyzes the role of next-generation mobile enterprise platforms as organizations seek a more strategic deployment of mobile solutions.

Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.

White Papers & Webcasts

A Truly Global HCM System
Learn about a system built with advanced object-oriented technology that support multi-national requirements and costs less to implement, maintain and upgrade....  

Usability Is Everything
Learn what sets Workday's HR and Payroll solutions apart from the competition....

Moving Beyond Monolithic - What's Next for Enterprise Application Architectures?
This white paper reviews the current state of enterprise application architecture and presents a prediction on what might come next....  

SaaS at Flextronics, Inc.
Dave Smoley, CIO of Flextronics, discusses the real value of software-as-a-service and why he chose Workday for his HR solution....

The Shortcut Guide to Managing Certificate Lifecycles
(Source: Thawte) If you have ever shopped for a certificate, you know that there is a wide selection of products and vendors from...  

Agile Enterprise Content Management (ECM) for Rapid ROI
Find out how combining ECM and BPM will help adress issues about content rich business processes....

MarketVibe: Communications and Collaboration Needs at Business Organizations
In April 2009, IT and business leaders were invited to participate in a survey on business communications and collaboration solutions. The goal of...  

Modernizing the IT Infrastructure
(Source: Oracle) There is a lot of legacy in many government IT systems today - legacy hardware, legacy software platforms, and legacy skills...

The Value of Network and Application Visibility by Aberdeen
This survey-based paper analyzes best practices for improving application visibility and analysis. This paper can help serve as a guideline for organizations looking...  

Taking the Service Desk to the Next Level
Listen to this conversation with Doug Mueller to learn how standards and processes have evolved to bring us the service desk of today...