Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Continuing Education
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
Cybersecurity News

Building Enterprise Solutions to 8 Major Cybersecurity Problems

By Corey Marshall
April 23, 2014

As the incidence and impact of cybercrime and cyber-warfare on business continues to escalate, one fact is beyond dispute: enterprises are losing. Enterprises are losing revenue, customer data, goodwill and intellectual capital. This might come as a surprise to some people, considering that businesses are spending increasing portions of their IT budgets specifically on security on ever more sophisticated solutions.

So how can they possibly be losing the war when they’re spending more than ever on IT security? There are undoubtedly many reasons for this, but the root cause typically lies within the very DNA of an organization. Here are some indicators that your enterprise is overly vulnerable – and some steps you can take to rectify that.

  • Lack of executive and board support. Commitment from the top is the single most important factor in determining vulnerability. I strongly believe that the CIA triad – confidentiality, integrity and availability – in CISSP parlance applies to not only technology components but to people as well. Particularly the integrity component as applied to executive leadership. If executives are willing to sacrifice security for convenience, this tone will trickle down through the organization, making it virtually impossible to implement comprehensive and effective security policies.
  • Security strategy is applied from the outside-in instead of from the inside-out. Organizations commonly invest outsized portions of their IT security budgets at the perimeter, yet most of their critical resources are deep within the network. Security controls should evolve outward starting from the application to the point of access.
  • The belief that “defense-in-depth” equals “layered security.” Defense-in-depth is the result of layered security and not the opposite. For example, chaining firewalls, intrusion protection systems and application delivery controllers (ADCs) in front of an application will likely lead to decreased security because each platform is operating in a silo. Without the benefit of sharing context in real-time with each other, devices in the service chain don’t have a complete picture of the communication. In addition, organizational focus and expertise is divided among the tiered platforms, leading to a situation where the sum is less than the parts.

    Consider a vertically layered security model by consolidating security functions in fewer platforms. Invest in platforms that have the ability to inspect and understand the entire context and flow of a transaction from the network to the application. This approach provides a path to a better security posture since it allows you to channel resources and expertise into delivering the security function instead of managing platforms with improved operational efficiency.
  • Poor operational practices and processes. Great IT security starts with excellent operations – practices such as change policy, aggressive patch management, standards compliance and baselining. Operations are key because they allow an organization to establish normalcy.  

    Establish a common-sense change policy that balances business with operational availability concerns. If a change policy is overly restrictive, administrators will neglect patching systems against known vulnerabilities, which can lead to unnecessary risks for the enterprise.
  • No centralized and pervasive monitoring infrastructure. The NSA should have nothing on your enterprise monitoring capabilities. Every platform on the network should have a monitoring strategy to detect changes – and changes should be measurable against a baseline. For example, when an administrative group is changed, an alert should be issued.

    Consider investing in log consolidation and trending solutions even before SIEM solutions. Most organizations focus on event correlation before they have even established a pervasive monitoring infrastructure. Once that infrastructure is established, SIEM can be used to align the data log data with normal activity and detect anomalies.
  • Principle of least privilege is not rigorously applied to platform, application and data access. For attackers, accounts with elevated or administrative privileges are an ideal target. If an attacker compromises a host without having elevated privileges, they must take the additional and potentially more difficult step of elevating their level of privileges in order to gain an effective foothold on the compromised system. Organizations, however, often make obtaining administrative level privileges a trivial task; users and administrators often both operate with elevated and/or administrative privileges. This is roughly equivalent to locking the door to your home but leaving the key in the lock.  

    Consider vaulting sensitive administrative credentials and rotate them like encryption keys after a set number of credential uses, per the risk profile of the system or application. In addition, users and administrators alike should not operate with administrative privileges unless absolutely necessary at a particular point and time.
  • The enterprise network is flat. Internal network zoning and security boundaries are critical to help reduce the scope of a potential compromise.  In networks without zones, a single compromised host can communicate freely throughout the entire network, making it extremely difficult to determine the scope and impact of a compromise.

    Consider applying segmentation policies at the ADC. This is a logical place to apply access policies and monitor application traffic since most enterprise applications typically reside behind an ADC. Only allow users limited access to services (for example, DNS), and only allow network-based access to presentation tiers of applications.
  • Users have broad access to the Internet. Users with broad or unlimited Internet access typically represent the largest threat vector for an enterprise. Whether it be phishing, drive-by downloads, or email-based malware; infiltration, command and control, and exfiltration of data will usually require some form of Internet connectivity. Limiting Internet access for users will radically improve the security posture of an organization.

    Implement stringent Internet access policies to restrict employees’ access to work-related sites only, such as for B2B transactions. With the prevalence and pervasiveness of personal smart devices, users can still work productively and stay connected without placing the organization at undue risk.
KEYWORDS: cybersecurity solutions layered cybersecurity security budget

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Corey Marshall, Security Solutions Architect, F5 Networks

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Career Intelligence
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
  • The Most Influential People in Security 2025

    Security’s Most Influential People in Security 2025

    Security Magazine’s 2025 Most Influential People in...
    Most Influential People in Security
    By: Security Staff
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • critical event management
    Sponsored byEverbridge

    Why a Unified View Across IT, Continuity, and Security Makes or Breaks Crisis Response

  • Charlotte Star Room
    Sponsored byAMAROK

    In an Uncertain Economy, Security Is a Necessity - Not an Afterthought

  • Sureview screen
    Sponsored bySureView Systems

    The Evolution of Automation in the Command Center

Popular Stories

Cybersecurity trends of 2025

3 Top Cybersecurity Trends from 2025

Red laptop

Security Leaders Discuss SitusAMC Cyberattack

Green code

Logitech Confirms Data Breach, Security Leaders Respond

Neon human and android hands

65% of the Forbes AI 50 List Leaked Sensitive Information

The Louvre

After the Theft: Why Camera Upgrades Should Begin With a Risk Assessment

Top Cybersecurity Leaders

Events

September 18, 2025

Security Under Fire: Insights on Active Shooter Preparedness and Recovery

ON DEMAND: In today’s complex threat environment, active shooter incidents demand swift, coordinated and well-informed responses.

December 11, 2025

Responding to Evolving Threats in Retail Environments

Retail security professionals are facing an increasingly complex array of security challenges — everything from organized retail crime to evolving cyber-physical threats and public safety concerns.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Related Articles

  • CISOs Look Past Compliance for New Solutions to Old Problems

    See More
  • cyber6-900px.jpg

    2018: Companies Will Make Major Enterprise-Wide Changes to Address Cyber Risk

    See More
  • 8 Questions for Effective Cybersecurity in Your Enterprise

    See More

Related Products

See More Products
  • into to sec.jpg

    Introduction to Security, 10th Edition

  • school security.jpg

    School Security: How to Build and Strengthen a School Safety Program

  • The Complete Guide to Physical Security

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2025. All Rights Reserved BNP Media.

Design, CMS, Hosting & Web Development :: ePublishing