openPR Logo
Press release

Enterprises Should Invest in Strengthening Their Security and Compliance Programs

10-05-2016 11:12 AM CET | IT, New Media & Software

Press release from: Vistar Communications

/ PR Agency: Vistar
Rajat Mohanty, Co-founder, Chairman and CEO at Paladion

Rajat Mohanty, Co-founder, Chairman and CEO at Paladion

Enterprises today are losing sleep over information security concerns, despite investing heavily on technology to ensure better business performance. However, these technology investments are being made in the interest of innovating and accelerating the impact of technology for their customers rather than to protect the data itself.

"The compliance and security teams often approach their CFOs to set aside budgets required to strengthen the companies’ security and compliance programs," explained Rajat Mohanty, Co-founder, Chairman and CEO at Paladion.  "However, owing to the CFO’s risk-averse nature, they mostly focus on the business and the bottom line. In view of this, the next step towards information risk management would be for the CFOs to bring innovative ideas to the table to help their companies remain competitive."

According to market research firm Gartner, Middle East and North Africa (MENA) spending on information security technology and services reached $1.1 billion in 2015, an increase of 3.3% over 2014. The overall security spending is also on the rise in the region - it grew by 15% in 2015. Analysts at Gartner said that enterprises in MENA are now realising that merely adopting preventive strategies is not enough, and they are beginning to focus on detection and response approaches to improve the security posture of their organization.

Indeed, large organisations in MENA are investing in building out security operations capabilities either in house or by leveraging external services offered by managed security services providers (MSSPs). Organisations surely need to spend more on detection, but not at the expense of blocking known threats. This requires enterprises to relook at their people, process and technology strategies around information security.

According to Gartner, in 2017, more than half of the network attacks targeting enterprises will use encrypted traffic to bypass controls, up from less than 5% today. In addition, through 2018, more than 40% of state-sponsored attacks will have the source nation misidentified by the target. Also, 99.9% of attacks will be based on product vulnerabilities that were known of for at least a year.

"CFOs and CEOs in such enterprises need to identify all the assets that contain or transmit the information they are trying to protect," added Mohanty. "It could be anything from a Personal Identification Information (PII), Protected Health Information (PHI), Payment Card Information (PCI), or any other proprietary or sensitive information important to the business. These information assets not only include application but also the media that contains those applications, such as servers, back-up tapes, desk tops, laptops, and thumb drives."

Thus, identification of vulnerabilities of those assets is the next significant step. Taking informed decisions on risk treatment involves isolating all combinations of assets, threats to those assets and the vulnerabilities that might be exploited. Absence of these three aspects indicates that there is no risk to the information of the company.

Apart from determining the likelihood of the threats exploiting the vulnerabilities, enterprises also need to generate a risk-list, with high impact risk at the top and low impact risk at the bottom and everything else in between. Once the list is in place, the CISOs, CFOs, CEOs and all other C-suites need to congregate and belt out solutions and determine the cost of all risks.

"Continuous evaluations and re-evaluations of risks that a company faces, is a good practice. Although time, energy and commitment are some of the most important pre-requisites for such practices, one has to agree that ongoing vigilance has its own rewards. Apart from mitigating huge business costs, it also saves the companies immense reputational damage that could stem out of data breach," concluded Mohanty.

About Paladion:
Paladion is a specialized partner for information risk management to organizations across industries in Asia, US, and the Middle East. Paladion is rated as a ‘pure-play’ information risk management partner in Asia and is also a Gartner rated managed security provider in the Middle East.

For over a decade, Paladion has been actively managing information risks for over 700 customers. Paladion provides a complete spectrum of information risk management comprising security assurance, compliance, governance, monitoring, security analytics and security management services to large and medium-sized organizations. Paladion also offers a suite of security intelligence products for global enterprises and Cloud Managed Security Services for mid-market organizations. Paladion’s offerings have been recognized and awarded by Gartner, Asian Banker, and Red Herring amongst others. Paladion is also actively involved in several information risk management research forums and has published many books on the topic.

628, Business Village
Tower B, Deira,
Dubai, UAE

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release Enterprises Should Invest in Strengthening Their Security and Compliance Programs here

News-ID: 369586 • Views:

More Releases from Vistar Communications

Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami wins the Top Distributor for Network Security of the Year Award
Spectrami, the region’s primary cyber security value-added distributor today announced that it has won the coveted ‘Top Distributor for Network Security of the Year’ award at the GEC Awards 2020, organised by the leading technology media company in the Middle East, GEC Media group. The 7th edition of GEC Awards this year were one of the first live in-person awards that were conducted since the outbreak of coronavirus in the region.
AOC launches brand new series of Surveillance Monitors
AOC launches brand new series of Surveillance Monitors
AOC, the display specialist today announced the expansion of product portfolio with the introduction of its brand new E1 series of surveillance monitors targeting the fast growing regional market for video surveillance. According to the analysts 6Wresearch, the Middle East commercial security market will grow by nearly 17 percent annually over the next six years, valuing US$7.4 billion in 2024, compared to an estimated US$2.9 billion in 2018. Video surveillance
ESET launches new security solutions to protect constantly-connected users
The latest version of ESET NOD32 Antivirus, ESET Internet Security and ESET Smart Security Premium that offers fortified multilayered protection, enhanced IoT protection, product referral and a new security report feature is released today. Users can rely on the best balance of speed, detection and usability acknowledged by multiple testing bodies to protect their constantly-connected devices. It is predicted that by 2025, there will be over 75 billion connected devices

More Releases for Paladion

Paladion Cited among 10 Top Emerging Managed Security Services Providers
Paladion is among the 10 top emerging managed security service providers (MSSPs), according to The Forrester Wave: Emerging Managed Security Services Providers (MSSPs), Q3 2018. To build their list, the firm performed a comprehensive review of emerging MSSPs, and evaluated providers on 24 criteria. The results were published in the Forrester Wave report, which stated that “Paladion’s' strength lies in its actionable data and dashboard. “We are happy that Forrester named
Paladion Wins Best Managed Detection and Response Service Provider Award
Paladion, a global leader in Managed Detection and Response, today announced that it has been honoured with the ‘Best Managed Detection and Response Service Provider Award’ at the 2018 TahawulTech.com Future Security Awards ceremony. The event was attended by 200 industry leaders, and awards made to a select group of 20 organisations and IT security leaders for their accomplishments. Future Security Awards organised by TahawuLtech.com recognises the top security minds and projects
Paladion Recognized as a Representative Vendor in Gartner’s 2017 Market Guide …
Paladion—a global cyber defense company that provides managed detection and response services— today announced its placement in Gartner’s Market Guide for Managed Detection and Response as a representative vendor. Gartner identified Paladion as a representative vendor for its advanced threat detection and incident response capabilities using their proprietary security analytics and orchestration platform, which are capabilities profiled in this research. In this research, Gartner recommends IT security buyers: “Use MDR
Paladion Releases a Public Cyber Advisory to Contain the WannaCry Ransomware Thr …
Paladion—a global cyber defence company announced today that since Sunday, May 14, 2017, it has discovered new variants of the WannaCry Ransomworm. These new variants have no connection to the previous Kill Switch found in the original ransomware, which started wreaking havoc across the globe on May 12, 2017. Speaking about the latest global cyber attack, Amit Roy, executive vice president and regional head for EMEA at Paladion, said, “The first
Independent Report Recognizes Paladion as an MSSP that specializes in advanced [ …
Paladion—a global cyber defence company that provides managed detection and response services, DevOps security, Cyber Forensics, and Professional Services—today announced its placement in Forrester’s April 2017 report, Vendor Landscape: Global Managed Security Services. Forrester recognized Paladion as an MSSP that "specializes in advanced [security] analytics and automation." The report noted that Paladion's solution "makes heavy use of statistical and machine learning models across the data sets it collects from clients. Heavy
Paladion underlines the importance of security analytics for faster detection an …
Paladion, a global cyber security provider, in its commitment to enabling enterprises with the right tools to combat today’s advanced cyber threats, sponsored a two day cyber security conference organized by MESCON on the 11th and 12th of April 2017 . The conference hosted over 200 plus CISOs from different business verticals from the Middle East. Rajesh Gopinath, Paladion’s Pre-Sales Head for MEA, addressed a packed room of CISOs and