Cloud

11/13/2017
04:00 PM
Jai Vijayan
Jai Vijayan
Slideshows
Connect Directly
Twitter
LinkedIn
RSS
E-Mail

Emerging IT Security Technologies: 13 Categories, 26 Vendors

A rundown of some of the hottest security product areas, and vendors helping to shape them.
2 of 14

Cloud Access Security Brokers (CASB)

A gateway for enforcing data governance, data leak prevention, and other security policies on traffic flowing between an enterprise network and a cloud provider's infrastructure. 

Vendor: Bitglass

Agentless CASB architecture for protecting SaaS, IaaS, and private cloud apps on managed and unmanaged devices.
	
Factors to Watch

- Hybrid CASB provides both API-based and proxy-based protections
- Agentless inline protection for sanctioned and unsanctioned devices
- $45 million in Series C funding from Jan 2017 funding fueling expansion in the US and EMEA



Key Executives: Chairman and founder Nat Kausik was previously a CEO at Asterpix and several other companies. CEO Rich Campagna is a former executive at F5 network who joined Bitglass as VP of products.

Founded: 2013

Vendor: Netskope

Context-aware governance of enterprise cloud usage from the corporate network, remote location, and mobile devices.
	
Factors to Watch

- Multiple on-premise and cloud deployment options
- Patented technology for real-time control over sanctioned and unsanctioned cloud enterprise cloud services
- Has raised over $231 million making it one of most well funded CASB vendors; raised $100 million in June



Key Executives: CEO and founder Sanjay Beri is a former VP of Juniper Networks' secure access business group and co-founder of Ingrian Networks.

Founded: 2012

Analyst Commentary: 'CASBs are a crucial element to an organization's cloud security architecture, especially as they grow into PaaS and IaaS support,' says Pete Lindstrom, an analyst with IDC, who notes that Skyhigh Networks has done a good job establishing itself among the leaders in this market.

Where Skyhigh is doing a good job is in helping organizations secure the transition to Office in the cloud, email in the cloud, and other immediate priorities, adds John Pescatore, director of emerging threats at the SANS Institute. 'This is the more immediate pain point for a lot of companies is making the transition the cloud. That is where a lot of the information leakage is happening.'

Image Source: LeoWolfert via Shutterstock

Cloud Access Security Brokers (CASB)

A gateway for enforcing data governance, data leak prevention, and other security policies on traffic flowing between an enterprise network and a cloud provider's infrastructure.

Vendor: Bitglass

Agentless CASB architecture for protecting SaaS, IaaS, and private cloud apps on managed and unmanaged devices.

Factors to Watch

  • Hybrid CASB provides both API-based and proxy-based protections
  • Agentless inline protection for sanctioned and unsanctioned devices
  • $45 million in Series C funding from Jan 2017 funding fueling expansion in the US and EMEA

Key Executives: Chairman and founder Nat Kausik was previously a CEO at Asterpix and several other companies. CEO Rich Campagna is a former executive at F5 network who joined Bitglass as VP of products.

Founded: 2013

Vendor: Netskope

Context-aware governance of enterprise cloud usage from the corporate network, remote location, and mobile devices.

Factors to Watch

  • Multiple on-premise and cloud deployment options
  • Patented technology for real-time control over sanctioned and unsanctioned cloud enterprise cloud services
  • Has raised over $231 million making it one of most well funded CASB vendors; raised $100 million in June

Key Executives: CEO and founder Sanjay Beri is a former VP of Juniper Networks' secure access business group and co-founder of Ingrian Networks.

Founded: 2012

Analyst Commentary: "CASBs are a crucial element to an organizations cloud security architecture, especially as they grow into PaaS and IaaS support," says Pete Lindstrom, an analyst with IDC, who notes that Skyhigh Networks has done a good job establishing itself among the leaders in this market.

Where Skyhigh is doing a good job is in helping organizations secure the transition to Office in the cloud, email in the cloud, and other immediate priorities, adds John Pescatore, director of emerging threats at the SANS Institute. "This is the more immediate pain point for a lot of companies is making the transition the cloud. That is where a lot of the information leakage is happening."

Image Source: LeoWolfert via Shutterstock

2 of 14
Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
MarkS94105
100%
0%
MarkS94105,
User Rank: Apprentice
12/8/2017 | 2:28:08 PM
Story -> Potentially Valuable; Site -> Problematic Viewing and Printing
This topic and story is presented as a white paper.  To read the story, we must click the next arrow 13 times to see all 14 pages.  This is time consuming as the site loads so many advertisements.  There is no simple way to print the story, as the print function show only 1 of 14, 2 of 14, etc.  This may be by design, but I find it a serious barrier and will seek other sources for this material.  
New Mexico Man Sentenced on DDoS, Gun Charges
Dark Reading Staff 5/18/2018
Google to Delete 'Secure' Label from HTTPS Sites
Kelly Sheridan, Staff Editor, Dark Reading,  5/21/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "The one you have not seen, won't be remembered".
Current Issue
Flash Poll
[Strategic Security Report] Navigating the Threat Intelligence Maze
[Strategic Security Report] Navigating the Threat Intelligence Maze
Most enterprises are using threat intel services, but many are still figuring out how to use the data they're collecting. In this Dark Reading survey we give you a look at what they're doing today - and where they hope to go.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-9317
PUBLISHED: 2018-05-23
Privilege escalation vulnerability found in some Dahua IP devices. Attacker in possession of low privilege account can gain access to credential information of high privilege account and further obtain device information or attack the device.
CVE-2018-1193
PUBLISHED: 2018-05-23
Cloud Foundry routing-release, versions prior to 0.175.0, lacks sanitization for user-provided X-Forwarded-Proto headers. A remote user can set the X-Forwarded-Proto header in a request to potentially bypass an application requirement to only respond over secure connections.
CVE-2018-1122
PUBLISHED: 2018-05-23
procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset in an attacker-controlled directory, the attacker could achieve privilege escalation by exploiting one of several vulnerabilities in the config_file() function.
CVE-2018-1123
PUBLISHED: 2018-05-23
procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection in ps maps a guard page at the end of the overflowed buffer, ensuring that the impact of this flaw is limited to a crash (temporary denial of service).
CVE-2018-1125
PUBLISHED: 2018-05-23
procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgrep. This vulnerability is mitigated by FORTIFY, as it involves strncat() to a stack-allocated string. When pgrep is compiled with FORTIFY (as on Red Hat Enterprise Linux and Fedora), the impact is limited to a crash.