Eight Crucial Strategies for Strengthening Network Security

strengthening network security Strengthening Network Security

Strengthening network security is vital to your organization. Check out the tips below to ensure you are well protected.

Leave no host forgotten, know your hosts (all of them)

Any and every device capable of wired or wireless access with an IP address should be known in your environment. This goes beyond desktops, laptops, servers, printers, IP phones, and mobile devices. The “Internet of Things” presents a larger potential footprint of hosts including environmental monitoring and control devices, security cameras, and even things like vending machines. IoT devices all run operating systems that have the potential to be compromised by hackers and used as a platform for performing reconnaissance of your network for more valuable assets. Ensure inventory lists are valid by performing routing network scans to identify unknown devices.

Understand your users’ behavior

Knowing the culture and habits of users, like when and where they work, is important for establishing baseline behavior patterns. Also, the types of work they do online such as researching, downloading software, and uploading files will vary greatly by industry. For example, users at a law firm are not going to have the same internet usage behavior as users at a software development company. Even within an organization, there will be differences between administrative and technical engineering user behavior. Knowing the behavior of your users will make it easier to identify what is normal versus abnormal network traffic.

Understand what talks to what and why

The network traffic patterns in your organization should represent the usage of critical business applications that users need to do their job. Understanding these traffic flows is critical to building effective security policies for ACLs, stateful firewall policies, and deep packet inspection rules on network security devices. This applies to traffic within your internal private networks, what is allowed in from the outside, and especially the type of traffic allowed to leave your organization.

Control what is running on your hosts

The more applications and services running on a host, the more potential for exposure to software vulnerabilities.  Software updates are important for bug fixes and new features but security related fixes to applications are critical. Limit the types of applications users may install to reputable software vendors that take security updates seriously. Staying current with operating system security updates is even more important. Situations when legacy applications require older EOL operating systems to run on your network should be monitored very closely and if possible should be segmented to dedicated VLANs.

Know your data & control your data

Understand the data that is critical to your business and classify that data into different levels of sensitivity. You must ensure that encryption is used when transmitting highly sensitive data across the network as well as limit access to sensitive data to only those who require it. It is important to implement effective logging on all devices that store and transmit sensitive data and perform routine checks of your backup solutions to ensure the integrity of critical data backups.

Monitor and control your perimeter (egress too!!)

The network perimeter of your organization includes Internet and WAN connections but also wireless access points. All three of these perimeter pathways need to be protected with the highest levels of access restrictions.  Next-generation security appliances should be deployed on all perimeter segments to provide deep packet inspection, content filtering, and malicious URL inspection. Centralized logging of network and security devices using a security information event management (SIEM) solution is vital for analysis and correlation of logging data.

Train your users: they are your weakest link and your best defense

Deliver routine end-user security awareness training to keep users up to date on ways to recognize suspicious email content and websites. Perform routine experimental phishing campaigns to determine how well users are able to identify suspicious emails. Review policies with users on how to manage sensitive data. Make sure users are aware of non-technical methods used by hackers such as social engineering tactics to extract information about your organization.

Implement strong authentication controls

Use multifactor authentication for wireless and VPN remote access whenever possible. Restrict the usage of local user accounts and require complex passwords that must be changed regularly. Implement 802.1x security on wireless LANs as well as wired network connections that are accessible to common areas in your facility.

Utilizing the tips above can go a long way in strengthening network security, reach out to your account manager or contact us to find out more about strategies to strengthen your network.

By Kevin Dresser, Solutions Architect

Infoblox to Exhibit at @CloudExpo | @Infoblox #DataCenter #DNS #DDI #DX

Infoblox delivers Actionable Network Intelligence to enterprise, government, and service provider customers around the world. They are the industry leader in DNS, DHCP, and IP address management, the category known as DDI. We empower thousands of organizations to control and secure their networks from the core-enabling them to increase efficiency and visibility, improve customer service, and meet compliance requirements.

read more

Yet more cloud shared responsibility misunderstanding apparent in new study

The clue is in the ‘shared’ part of shared responsibility: customers and providers have to work together to secure cloud data, yet new research shows two thirds of organisations polled export full responsibility for data protection, privacy and compliance on their cloud service providers.

The study, from Veritas, found that more than eight in 10 (83%) of the 1,200 global business and IT decision makers polled who plan to use infrastructure as a service (IaaS) believe their cloud service provider takes care of protecting their data in the cloud.

69% said they can place all responsibility for their data security in the provider’s hands, while more than half believe it is the cloud provider’s responsibility to securely transfer data between on-premises and cloud (54%) and back up workloads in the cloud (51%).

56% of those polled said they operate with a ‘cloud first’ mentality, compared to 43% who say they consider on-premises first before considering cloud. More than two thirds (67%) say they either already use or plan to use two or more cloud providers, with 42% at least aiming for three or more and 16% looking for five.

When it came to barriers against cloud implementation, lack of in house skills – cited by 38% of respondents – was most frequently cited, ahead of complexity with migration (37%) and limitations of legacy technology (36%). For factors which impacted cloud provider selection, data privacy, security and compliance, workload performance and uptime were key.

Yet the issues around what shared responsibility means have raised their head again. Let’s take Amazon Web Services (AWS) and Microsoft, the two largest vendors, as an example.

“Security and compliance is a shared responsibility between AWS and the customer,” Amazon notes. “This shared model can help relieve customer’s operational burden as AWS operates, manages and controls the components from the host operating system and virtualisation layer down to the physical security of the facilities in which the service operates.

“The customer assumes responsibility and management of the guest operating system (including updates and security patches), other associated application software as well as the configuration of the AWS provided security group firewall.”

A post on Microsoft’s Azure security and compliance blog puts it this way. “Shared responsibility in public cloud is related to the fact that you have a partner when you host resources on a public cloud service provider’s infrastructure. Who is responsible for what (in terms of security) depends on the cloud service model you use.

“With IaaS, the cloud service provider is responsible for the core infrastructure security, which includes storage, networking and compute (at least at the fabric level – the physical level). As you move from IaaS, to PaaS and then to SaaS, you’ll find that you’re responsible for less and the cloud service provider is responsible for more.”

With GDPR on the horizon as well, businesses need to make sure they get this right. “Although cloud providers have a duty to ensure they help keep data secure and readily available, the ultimate responsibility of maintaining a compliance position with regulations such as GDPR lies with the organisation that owns the information,” said Jason Tooley, Veritas Northern Europe vice president.

Why did Akamai shift its focus to cybersecurity?

When you hear the word Akamai, the first thing that comes to your mind is its web traffic management system. Well, if you’re not familiar, Akamai is known for managing web traffic at busy sites, so the latency rates are low.

But today, Akamai is into a completely different line of business – cybersecurity. Why?

Companies like Apple and AWS began to have their own in-house solutions to handle traffic management, so they no longer needed the services of Akamai. In fact, this move made it difficult for Akamai to sustain its operations. So, it decided to give a shot at cybersecurity.

And that was probably the best decision by its management because it entered the market when cybersecurity was just beginning to grow. Also, there was a big need to fill the security gaps in the digital world, considering the many hacking incidents that were happening a few years ago. Specifically, the hacking of Target’s systems brought to the fore the immediate need to have sound cybersecurity solutions.

Due to these factrs, Akamai began to extensively grow in this business. Since it began operations, it has grown 27 percent year-on-year and today, it is making about $121 million in revenue each year. Undoubtedly, this is the strongest growing segment of Akamai’s business and one that is all set to grow even more in the coming years.

Akamai has created the right kind of products that will spruce the cybersecurity of companies today. For example, the Equifax breach exposed the records of more than 143 million Americans. A product called Kona Site Defender from Akamai is designed to prevent exactly such incidents from happening.

Also, this company is constantly working to improve its cybersecurity line of products, so it can stay one step ahead of hackers. So far, it’s been helping companies to protect their confidential data and through it all, has helped Akamai find its space again in an evolving tech world.

The post Why did Akamai shift its focus to cybersecurity? appeared first on Cloud News Daily.

HashiCorp secures $40 million funding to bolster cloud infrastructure automation space

Cloud infrastructure automation is becoming an increasingly hot space. HashiCorp, a vendor based in San Francisco, has secured $40 million (£30.2m) to support its growing customer base and boost investment in its engineering and go-to-market initiatives.

The funding round was led by GGV Capital and Redpoint, with contributions from Mayfield and True Ventures. Scott Raney, partner at Redpoint, said his company believed HashiCorp was a “key component for making cloud adoption work” in the enterprise.

The company offers four primary products, alongside an array of open source offerings: Terraform, which focuses on infrastructure provision; Vault, for securing apps and infrastructure; Consul, for configuring applications across infrastructure; and Nomad for running any application on any infrastructure.

Among its customers are Adobe, Barclays and Comcast, with the company also having partnerships with many of the largest cloud providers, including Alibaba Cloud, Amazon Web Services (AWS), Google, Microsoft, and Oracle. Total download numbers for its open source products stand at 22 million, the company says, with 150 updates released across its enterprise and open source suite.

“Broad usage of our products by operations, security, and development professionals has meant that HashiCorp products play an increasingly critical role for many large enterprises as they adopt cloud,” said Dave McJannet, CEO of HashiCorp in a statement. “Our products provide consistent workflows to provision, secure, connect, and run any infrastructure, so we are uniquely positioned to help enterprises address the realities of multi-cloud.

“Our commercial customer base has grown significantly over the past 18 months and this funding will allow us to invest aggressively across the breadth of our organisation and with a particular emphasis on customer support and success,” added McJannet.

You can find out more about HashiCorp here.

[session] @YahooGemini Test Automation | @CloudExpo #DevOps #AI #ML #DX

Gemini is Yahoo’s native and search advertising platform. To ensure the quality of a complex distributed system that spans multiple products and components and across various desktop websites and mobile app and web experiences – both Yahoo owned and operated and third-party syndication (supply), with complex interaction with more than a billion users and numerous advertisers globally (demand) – it becomes imperative to automate a set of end-to-end tests 24×7 to detect bugs and regression.
In their session at 21st Cloud Expo, Jenny Hung, E2E Engineer Manager at Yahoo Gemini, Haoran Zhao, Software Engineer at Oath Gemini, and Lin Zhang, Software Engineer at Oath (Yahoo), will describe the technical challenges and the principles we followed to build a reliable and scalable test automation infrastructure across desktops, mobile apps, and mobile web platforms on the cloud. We also share some best practices for advanced automated testing of web and mobile applications.

read more

[session] #Monitoring with AI | @DevOpsSummit @SignifAI #AI #ML #DevOps

In his session at @DevOpsSummit at 21st Cloud Expo, Guy Fighel, Co-Founder and CTO at SignifAI, will dissect a few real-world examples where not knowing what you don’t know led to massive outages and service disruptions. He’ll explore how despite the fact that modern DevOps teams have multiple monitoring tools, hundreds of metrics instrumented and are capturing billions of data points… downtime still happens.
How about instead of implementing more monitoring, we bring forward a future where DevOps teams can augment their existing tooling with AI and machine learning to draw richer correlations across events, metrics and logs to surface insights about threats to uptime that aren’t even being monitored. Or put another way, how DevOps teams can get closer to a state of «known knowns!”

read more

[session] Enterprise #IoT and #DigitalTransformation | @ThingsExpo #IIoT #M2M #DX

Enterprises have taken advantage of IoT to achieve important revenue and cost advantages. What is less apparent is how incumbent enterprises operating at scale have, following success with IoT, built analytic, operations management and software development capabilities – ranging from autonomous vehicles to manageable robotics installations. They have embraced these capabilities as if they were Silicon Valley startups.
As a result, many firms employ new business models that place enormous importance on software-based innovations. They require not only skilled occupations, such as data analysts and DevOps professionals, with more technical skills, but also middle-level employees with more software and computing acumen. Both large and small firms operate differently.

read more

[session] Software-Defined Servers | @DevOpsSummit @TidalScale #SDN #SDS

In their session at @DevOpsSummit at 21st Cloud Expo, Michael Berman, VP Engineering at TidalScale, and Ivo Jimenez, Engineer at TidalScale, will describe how automating tests in TidalScale is easy thanks to WaveRunner. They will show how they use WaveRunner, Jenkins, and Docker to have agile delivery of TidalScale. Michael Berman is VP Engineering at TidalScale. TidalScale is developing a scale up compute and resource architecture for customers to perform big data exploration and real time analytics.

read more

[session] The Cross-Cloud Data Fabric | @CloudExpo @Elastifile #DX #CloudNative #Analytics

As hybrid cloud becomes the de-facto standard mode of operation for most enterprises, new challenges arise on how to efficiently and economically share data across environments.
In his session at 21st Cloud Expo, Dr. Allon Cohen, VP of Product at Elastifile, will explore new techniques and best practices that help enterprise IT benefit from the advantages of hybrid cloud environments by enabling data availability for both legacy enterprise and cloud-native mission critical applications. By reviewing common hybrid cloud usage scenarios and their active and inactive data challenges, we will answer the common question on many IT managers’ minds: “Do I really need to re-architect everything when adopting cloud?”

read more