Operations

2/5/2018
02:00 PM
Jai Vijayan
Jai Vijayan
Slideshows
Connect Directly
Twitter
LinkedIn
RSS
E-Mail

7 Ways to Maximize Your Security Dollars

Budget and resource constraints can make it hard for you to meet security requirements, but there are ways you can stretch your budget.
2 of 8

Optimize Product Utilization
Before spending money on new or more security tools make sure you are getting the most out of what you already have, says Roselle Safran, president of cybersecurity consultancy Rosint Labs. Often, businesses that buy new tools end up not utilizing them fully or exploring all the ways the technology can be used, says Safran, a former manager of cybersecurity ops at the Executive Office of the President during the Obama era.
Products keep getting enhanced all the time and a tool that you purchased a year or two ago for a specific purpose may now have the ability to do other things. So before shopping for new products make sure you are harnessing all the capabilities of what you already have. 'Often, there are products that can cover several different tasks,' she says. 'Using all the capabilities that your products have is less expensive,' than splurging on more tools. Optimizing product use can be a great money saver, she says.
Image Source:  v2e via Shutterstock

Optimize Product Utilization

Before spending money on new or more security tools make sure you are getting the most out of what you already have, says Roselle Safran, president of cybersecurity consultancy Rosint Labs. Often, businesses that buy new tools end up not utilizing them fully or exploring all the ways the technology can be used, says Safran, a former manager of cybersecurity ops at the Executive Office of the President during the Obama era.

Products keep getting enhanced all the time and a tool that you purchased a year or two ago for a specific purpose may now have the ability to do other things. So before shopping for new products make sure you are harnessing all the capabilities of what you already have. "Often, there are products that can cover several different tasks," she says. "Using all the capabilities that your products have is less expensive," than splurging on more tools. Optimizing product use can be a great money saver, she says.

Image Source: v2e via Shutterstock

2 of 8
Comment  | 
Print  | 
Comments
Newest First  |  Oldest First  |  Threaded View
Michael Lines
0%
100%
Michael Lines,
User Rank: Author
2/15/2018 | 3:07:00 PM
And start with risk...
All good points in terms of what companies can do to maximize the effectiveness of their security program. The item I would add, and suggest should be step one, is to view their security program through the lens of risk. What are the critical assets of the company (which can be data, business processes or systems), what are the most likely threats to those assets, what vulnerabilities exist against likely attacks, and finally what are the ramifications from a successful attack. From that, the CISO can develop a list of actions to close the gaps, prioritized by their risk score. Risk assessment and ongoing management allow the cash, time and staff-strapped CISO to make the most use of the limited resources they have to reduce the overall risk to the enterprise, and perhaps even more important, be able to justify what they are doing and why to their leadership and regulators. 
New Mexico Man Sentenced on DDoS, Gun Charges
Dark Reading Staff 5/18/2018
Cracking 2FA: How It's Done and How to Stay Safe
Kelly Sheridan, Staff Editor, Dark Reading,  5/17/2018
What Israel's Elite Defense Force Unit 8200 Can Teach Security about Diversity
Lital Asher-Dotan, Senior Director, Security Research and Content, Cybereason,  5/21/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "The one you have not seen, won't be remembered".
Current Issue
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-6495
PUBLISHED: 2018-05-23
Cross-Site Scripting (XSS) in Micro Focus Universal CMDB, version 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, 10.33, 11.0, CMS, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1 and Micro Focus UCMDB Browser, version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15.1. This vulnerability could be remotely exploited to al...
CVE-2018-10653
PUBLISHED: 2018-05-23
There is an XML External Entity (XXE) Processing Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
CVE-2018-10654
PUBLISHED: 2018-05-23
There is a Hazelcast Library Java Deserialization Vulnerability in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
CVE-2018-10648
PUBLISHED: 2018-05-23
There are Unauthenticated File Upload Vulnerabilities in Citrix XenMobile Server 10.8 before RP2 and 10.7 before RP3.
CVE-2018-10649
PUBLISHED: 2018-05-23
There is a Cross-Site Scripting Vulnerability in Citrix XenMobile Server 10.7 before RP3.