Cyber threats: reducing the time to detection and response
Ross Brewer · Network Security · 2015
Over the past decade, IT environments have become increasingly vulnerable. As enterprise mobility, cloud services and ‘bring-your-own-everything’ have taken off, the perimeter separating an organisation's systems from the wider world has all but disappeared. While increased mobility may make an organisation and its employees more productive, it also creates layers of complexity for securing the enterprise. As IT environments continue to become increasingly vulnerable, any organisation's ultimate security goal should be to effectively and efficiently identify and deal with threats in as short a time as possible. The truth is that most organisations take far too long to detect and mitigate attacks. Ross Brewer of LogRhythm explains the steps that support a full threat detection and response process, and how, if a business can optimise its efficiency in performing these steps, it can significantly reduce its exposure to risk.