A Comparative Study of Different Intrusion Prevention Systems

Atul Sawant · 2018

The paper confronts the challenges in network security and compares different Intrusion Prevention systems based on their features and working mechanisms. Defense-in-depth is an IT security approach that uses multilayered approach in security, in which multiple security mechanisms are deployed over different levels of organization for protection of different assets of the organization. Defense-in-depth ensures security at every level of the network architecture. Organization's most important assets are segregated and protected with help of multilayered security. Multilayered approach can be executed to different levels of security. Not all assets required to be completely secured; it's challenging to ensure optimal security of entire system. By using multiple systems to mitigate damage, the organization can ensure failsafe mechanism, even if one system or multiple systems fail, the system itself is still protected. Organizations today often need to install multiple cyber security applications, such as Firewall, Antivirus, anti-malware, Intrusion Detection and Prevention System, Virtual Private Network, etc. Intrusion Detection/Prevention system are able to detect any anomaly in the system based on the behavior or the signatures assigned to the system network. It is able to detect any suspicious traffic getting in or out of the network and generate an alert accordingly. IDS/IPS can be implemented in multilayered security next to firewall to detect the incoming and outgoing traffic.

Read the paper · More papers on PaperTik