A strategic security vendor versus the best-in-breed

By Ellen Messmer, Network World |  Security, Cisco, firewall Add a new comment

A huge debate these days is whether to select a strategic security vendor to provide the majority of security products and services the enterprise might require, or opt to evaluate point products, including those from start-ups, with an eye toward best of breed.

"My tendency is to lean toward a strategic vendor if we can," says Rick Haverty, director of IS infrastructure at the University of Rochester Medical Center, which includes hospitals and medical research centers. Cisco is the strategic networking vendor for URMC, and using IronPort, Cisco's Web-filtering appliance, solidifies URMC's business clout with Cisco, Haverty says.

But he adds he doesn't yet see the benefit of product integration that choosing a strategic security vendor is supposed to bring, such as a common management console, in Cisco networking and security products.

"They're just not there yet," he says.

In any event, URMC also looks for point products to meet the organization's needs, turning to security vendors such as Voltage for e-mail encryption with business partners and Check Point for its PointSec whole-disk encryption for the desktop. Haverty says he knows he simply has to be pragmatic in making choices about enterprise security.

Brad Blake, director of IT at Boston Medical Center, says the outlook at the healthcare provider he works for is to buy best of breed for clinical applications but focus on a strategic vendor -- or two -- for security.

The main reason is the strategic security vendor approach can help stretch a budget and gain the advantage of a common management platform, he says.

Boston Medical Center considers McAfee a strategic vendor because it makes use of McAfee's large portfolio of security products and its ePolicy Orchestrator console to manage them. ArcSight is also considered a critical vendor because its security information management platform can combine log data from many sources for analysis.

Although Boston Medical Center is a "Cisco shop," the healthcare provider so far hasn't been impressed enough with Cisco's service to warrant expanding into Cisco security products.

George Japak, head of ICSA Labs, which tests a wide variety of security products, says Cisco is layering security like antivirus and firewalls into switches and routers. Increasingly, the larger Fortune 2000 companies reliant on Cisco gear are choosing Cisco as its strategic security vendor as well as a way to reduce complexity in their networks.

But he argues that strategic security vendors can't be given an easy pass and "have to be held accountable" on every security function they're given.

"You can have a primary security vendor but keep other vendors in play, don't preclude other vendors," Japak says.

Gaby Dowling, manager of IT security at international law firm Proskauer Rose, believes it isn't logical to consider anything "strategic" if the vendor and the product can't rapidly adapt to a changing threatscape. "Just because different products come from the same vendor doesn't mean they integrate well in my experience," she adds.

ITworld LIVE

SecurityWhite Papers & Webcasts

Webcast On Demand

Seven Deadly Sins of Cloud Security (Video)

As cloud computing gains popularity, too few people are aware of the security threats that are emerging. In this short video, experts from HP discuss the latest cloud security threats and explain measures to help overcome them. Hear about the seven deadly sins of cloud security and learn how to avoid becoming a victim of poor security in your cloud environment.Intel and the Intel logo are trademarks of Intel Corporation in the U.S. and/or other countries.

Sponsor: HP & Intel

White Paper

Establishing a Strategy for Database Security is No Longer Optional

The options for securing increasingly valuable databases are very broad and deep, and can be confusing. This research provides an overview of three categories of controls that should be implemented to ensure that enterprise data is protected in the most efficient and effective manner.

White Paper

Database Activity Monitoring Is Evolving

Read the analyst report and learn how you can leverage the core capabilities of a DAP solution for better database security.

White Paper

Protecting Against Database Attacks and Insider Threats: Top 5 Scenarios

Read this new eBook to learn the top five scenarios and essential best practices for preventing database attacks and insider threats.

Webcast On Demand

Distributed Database Security with Real-time Monitoring

View this demo and learn how IBM InfoSphere Guardium database activity monitoring can help protect your sensitive data in distributed DBMS environments with a holistic approach to data security and compliance.

Sponsor: IBM

See more White Papers | Webcasts

Ask a question

Ask a Question