A Word (or two) on the IBM Acquisition of BigFix
July 1st, 2010
Today, IBM announced plans to acquire BigFix and we have been asked several times today what this all means to Lumension. So I thought I would weigh in with my thoughts – both from an industry perspective and from Lumension’s perspective, more specifically. As it turns out, there has been increasing M&A activity in the [...]
2010 Predictions Redux- 2nd Half Predictions and Looming Threats
June 22nd, 2010
As we ended 2009 and entered 2010, many predicted that 2010 was poised to go down in history as “the year of insider threats”. It was not a risky prediction to make considering our economic peril and our industries continued unwavering albeit misplaced focus on the gateway rather then endpoint security. The Worldwide State of [...]
Lessons from the Road…Tokyo, London, Sydney: Part I
June 16th, 2010
A few things I learned while on the road in the past couple of weeks: 1. The platform-centric approach is firmly planted both here and overseas; 2. The efficiency of agents on the endpoint is increasingly under the microscope; 3. Application whitelisting is truly hitting a global tipping point; 4. Compliance costs continue to be [...]
The Case for Endpoint Operations and Endpoint Security Convergence
May 24th, 2010
Ask any IT administrator where their greatest security risk lies and they will tell you it’s at the endpoint. The endpoint has expanded well beyond a desktop to include mobile devices, which allow greater user flexibility and productivity but also increase security risks to your network. Data that once resided on secure centralized servers (and [...]
Why More Legislation Could Hurt FISMA Compliance
March 31st, 2010
The US Government last week proposed updating the Federal Information Security Management Act (FISMA) to include a clause about the continuation and monitoring of security threats based on government agency risk profiles. The new amendments to the act would change FISMA compliance in the following ways: Establish a national cyberspace division within the executive office [...]
Insights from America’s Growth Capital and RSA Conferences
March 9th, 2010
Last week, I attended two security-related events in San Francisco. I spoke on the topic of the converging endpoint on a panel at America’s Growth Capital’s 6th Annual Information Security and West Coast Emerging Growth Conference. And I walked the floor at the RSA Conference, where Lumension exhibited. Here are my thoughts on the key [...]
New Era of Collaboration Between IT Operations & Security
December 1st, 2009
Much has been said over the past few years about the convergence of IT security and IT operations. Most companies look at this convergence from an optimization standpoint; hoping to increase security, achieve greater compliance, and reduce IT risk. Many larger companies, however, still operate under a siloed approach, working primarily with point solutions for [...]
Don’t Procrastinate on Red Flags Rule Compliance Despite Latest Delay
November 18th, 2009
So, the Federal Trade Commission (FTC) has, for the fourth time (!) delayed enforcement of the so-called “Red Flags” rules, according to a statement posted on the agency’s website. Compliance enforcement is now scheduled for June 1, 2010 –- in case you’re keeping score at home, the previous dates were 01-Nov-08 (original), 01-May-09 (first delay), [...]
How to Achieve and Sustain Compliance, and Manage Risk: Best-in-Class Approach
September 16th, 2009
In May 2009, Aberdeen Group published a research report entitled IT GRC: Managing Risk, Improving Visibility, and Reducing Operating Costs. The study describes the policy, planning, process, and organizational elements that contribute to successful initiatives in the area of IT governance, risk management, and compliance (IT GRC). I recently sat down with Derek Brink, vice president [...]
Breaking Down the ABCs of IT GRC
September 1st, 2009
Organizations continue to be plagued by increasing regulations coming from states and federal governments, industry regulations and internal compliance policies. They are further challenged by the complexities and costs associated with demonstrating compliance while managing the right levels of risks. I recently sat down with Rob Israel, the CIO of John C. Lincoln Health Network, one of Lumension’s customers to [...]






FREE Scanner
Free eBook &
Over 48% of IT Directors say that mobile devices represent the greatest network security threat.



