openPR Logo
Press release

Enterprises Should Invest in Strengthening Their Security and Compliance Programs

10-05-2016 11:12 AM CET | IT, New Media & Software

Press release from: Vistar Communications

/ PR Agency: Vistar
Rajat Mohanty, Co-founder, Chairman and CEO at Paladion

Rajat Mohanty, Co-founder, Chairman and CEO at Paladion

Enterprises today are losing sleep over information security concerns, despite investing heavily on technology to ensure better business performance. However, these technology investments are being made in the interest of innovating and accelerating the impact of technology for their customers rather than to protect the data itself.

"The compliance and security teams often approach their CFOs to set aside budgets required to strengthen the companies’ security and compliance programs," explained Rajat Mohanty, Co-founder, Chairman and CEO at Paladion.  "However, owing to the CFO’s risk-averse nature, they mostly focus on the business and the bottom line. In view of this, the next step towards information risk management would be for the CFOs to bring innovative ideas to the table to help their companies remain competitive."

According to market research firm Gartner, Middle East and North Africa (MENA) spending on information security technology and services reached $1.1 billion in 2015, an increase of 3.3% over 2014. The overall security spending is also on the rise in the region - it grew by 15% in 2015. Analysts at Gartner said that enterprises in MENA are now realising that merely adopting preventive strategies is not enough, and they are beginning to focus on detection and response approaches to improve the security posture of their organization.

Indeed, large organisations in MENA are investing in building out security operations capabilities either in house or by leveraging external services offered by managed security services providers (MSSPs). Organisations surely need to spend more on detection, but not at the expense of blocking known threats. This requires enterprises to relook at their people, process and technology strategies around information security.

According to Gartner, in 2017, more than half of the network attacks targeting enterprises will use encrypted traffic to bypass controls, up from less than 5% today. In addition, through 2018, more than 40% of state-sponsored attacks will have the source nation misidentified by the target. Also, 99.9% of attacks will be based on product vulnerabilities that were known of for at least a year.

"CFOs and CEOs in such enterprises need to identify all the assets that contain or transmit the information they are trying to protect," added Mohanty. "It could be anything from a Personal Identification Information (PII), Protected Health Information (PHI), Payment Card Information (PCI), or any other proprietary or sensitive information important to the business. These information assets not only include application but also the media that contains those applications, such as servers, back-up tapes, desk tops, laptops, and thumb drives."

Thus, identification of vulnerabilities of those assets is the next significant step. Taking informed decisions on risk treatment involves isolating all combinations of assets, threats to those assets and the vulnerabilities that might be exploited. Absence of these three aspects indicates that there is no risk to the information of the company.

Apart from determining the likelihood of the threats exploiting the vulnerabilities, enterprises also need to generate a risk-list, with high impact risk at the top and low impact risk at the bottom and everything else in between. Once the list is in place, the CISOs, CFOs, CEOs and all other C-suites need to congregate and belt out solutions and determine the cost of all risks.

"Continuous evaluations and re-evaluations of risks that a company faces, is a good practice. Although time, energy and commitment are some of the most important pre-requisites for such practices, one has to agree that ongoing vigilance has its own rewards. Apart from mitigating huge business costs, it also saves the companies immense reputational damage that could stem out of data breach," concluded Mohanty.

About Paladion:
Paladion is a specialized partner for information risk management to organizations across industries in Asia, US, and the Middle East. Paladion is rated as a ‘pure-play’ information risk management partner in Asia and is also a Gartner rated managed security provider in the Middle East.

For over a decade, Paladion has been actively managing information risks for over 700 customers. Paladion provides a complete spectrum of information risk management comprising security assurance, compliance, governance, monitoring, security analytics and security management services to large and medium-sized organizations. Paladion also offers a suite of security intelligence products for global enterprises and Cloud Managed Security Services for mid-market organizations. Paladion’s offerings have been recognized and awarded by Gartner, Asian Banker, and Red Herring amongst others. Paladion is also actively involved in several information risk management research forums and has published many books on the topic.

628, Business Village
Tower B, Deira,
Dubai, UAE

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Enterprises Should Invest in Strengthening Their Security and Compliance Programs here

News-ID: 369586 • Views:

More Releases from Vistar Communications

Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami, the region’s primary cyber security value-added distributor today announced that it has won the coveted ‘Top Distributor for Network Security of the Year’ award at the GEC Awards 2020, organised by the leading technology media company in the Middle East, GEC Media group. The 7th edition of GEC Awards this year were one of the first live in-person awards that were conducted since the outbreak of coronavirus in the region.
AOC launches brand new series of Surveillance Monitors
AOC launches brand new series of Surveillance Monitors
AOC, the display specialist today announced the expansion of product portfolio with the introduction of its brand new E1 series of surveillance monitors targeting the fast growing regional market for video surveillance. According to the analysts 6Wresearch, the Middle East commercial security market will grow by nearly 17 percent annually over the next six years, valuing US$7.4 billion in 2024, compared to an estimated US$2.9 billion in 2018. Video surveillance
ESET launches new security solutions to protect constantly-connected users
The latest version of ESET NOD32 Antivirus, ESET Internet Security and ESET Smart Security Premium that offers fortified multilayered protection, enhanced IoT protection, product referral and a new security report feature is released today. Users can rely on the best balance of speed, detection and usability acknowledged by multiple testing bodies to protect their constantly-connected devices. It is predicted that by 2025, there will be over 75 billion connected devices

More Releases for Paladion

Paladion Cited among 10 Top Emerging Managed Security Services Providers
Paladion is among the 10 top emerging managed security service providers (MSSPs), according to The Forrester Wave: Emerging Managed Security Services Providers (MSSPs), Q3 2018. To build their list, the firm performed a comprehensive review of emerging MSSPs, and evaluated providers on 24 criteria. The results were published in the Forrester Wave report, which stated that “Paladion’s' strength lies in its actionable data and dashboard. “We are happy that Forrester named
Paladion Wins Best Managed Detection and Response Service Provider Award
Paladion, a global leader in Managed Detection and Response, today announced that it has been honoured with the ‘Best Managed Detection and Response Service Provider Award’ at the 2018 TahawulTech.com Future Security Awards ceremony. The event was attended by 200 industry leaders, and awards made to a select group of 20 organisations and IT security leaders for their accomplishments. Future Security Awards organised by TahawuLtech.com recognises the top security minds and projects
Paladion Launches the First AI-Driven SOC in the Middle East
Paladion has launched the first AI-driven SOC in the Middle East to protect enterprises in the region from next-generation threats. The leading-edge AI-driven SOC is located in Dubai, UAE, and will service customers in the MEA region. Paladion’s AI-Driven SOC is a response to changes in the global and regional threat landscape. Globally, cyber criminals have begun to deploy their own AI-driven cyber-attacks. They are using AI platforms to increase
Paladion announces its participation at Saudi Arabia’s biggest digital transfo …
Paladion, a global cyber security provider, today announced its participation at the Kingdom Digital Enterprise Transformation Show, the Saudi Arabia’s biggest digital transformation show that will be held in the capital city of Riyadh at Burj Rafal, Hotel Kempinski on 7th and 8th November 2017. The Kingdom Digital Enterprise Transformation Show is primarily created to support the Digital Transformation Movement within the Kingdom of Saudi Arabia in line with the Saudi
Paladion Joins the 10th Annual Cyber Defence Summit as the Gold Sponsor
Paladion, a global cyber security provider, is all set to present their comprehensive cyber security solution that enables an enterprise to detect the cyber threats faster and act with enhanced response capabilities to counter any cyber-attack at the 10th Annual Cyber Defence Summit organized by Naseba in Dubai. The event is aimed at bringing together experts in security technology, threat intelligence and incident response to address the challenges faced by
Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Thr …
Paladion—a global cyber defence company announced today that since Sunday, May 14, 2017, it has discovered new variants of the WannaCry Ransomworm. These new variants have no connection to the previous Kill Switch found in the original ransomware, which started wreaking havoc across the globe on May 12, 2017. Speaking about the latest global cyber attack, Amit Roy, executive vice president and regional head for EMEA at Paladion, said, “The first