<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://shaulefraim.sys-con.com"  xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Latest News from Shaul Efraim</title>
 <link>http://shaulefraim.sys-con.com/</link>
 <description>Latest News from Shaul Efraim</description>
 <language>en</language>
 <copyright>Copyright 2012 Ulitzer.com</copyright>
 <generator>Ulitzer.com</generator>
 <lastBuildDate>Wed, 16 May 2012 11:27:08 EDT</lastBuildDate>
 <docs>http://backend.userland.com/rss</docs>
 <ttl>360</ttl>
<item>
 <title>Network Security 101: Automating for Continuous Compliance</title>
 <link>http://shaulefraim.sys-con.com/node/2144714</link>
 <description>Managing access to confidential information and application resources via firewalls is the foundation of network security, and firewall audits are central to any mature network security process. However, relying on security and network experts to review rules across multiple firewall zones and different firewall products is proving to be costly and ineffective. Few will dispute that when it comes to network security, automating best practices to reduce operating costs, complexity, human error, and streamline processes is a good thing. However, in what we call the age of Continuous Compliance – brought on by the reality that point-in-time audits done hastily to meet reporting deadlines rarely – if ever – deliver any security or compliance benefits once that point in time has passed, automation becomes more than just good.  It becomes essential.
Case in point: a November 2011 survey from Tufin Technologies of 100 firewall managers revealed that only 1.3% of configuration changes that cause network downtime or pose a security breach are identified during the quarterly audit, yet almost a third of the respondents spent 3 to 7 days per quarter of valuable network security team time on firewall audits (Disclosure: I work for Tufin). Organizations receive precious few benefits for the level of resource spent on manual firewall audits – it is proving to be an inefficient approach to maintaining a secure network and if you do the math, an extremely inefficient use of skilled security personnel.&lt;p&gt;&lt;a href=&quot;http://shaulefraim.sys-con.com/node/2144714&quot; target=&quot;_blank&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
 <pubDate>Mon, 30 Jan 2012 07:30:00 EST</pubDate>
 <guid isPermaLink="true">http://shaulefraim.sys-con.com/node/2144714</guid>
 <comments>http://shaulefraim.sys-con.com/node/2144714#feedback</comments>
</item>
</channel>
</rss>

