The Security for Business Innovation Council (SBIC) has published a report titled, ?Information Security Shake-Up: Disruptive Innovations to Test Security?s Mettle in 2013.?
The report findings indicate that the accelerated enterprise adoption of big data, mobile, social media and cloud computing is leading to significant gaps in information security programs across companies. With the adoption of these emerging technologies, enterprises face security threats, owing to lack of business skills and relationships, supply chain management and technology-oriented action plans.
Commenting on the findings of the report, Eddie Schwartz, chief information security officer, RSA, security division EMC, says, ?Information security must evolve in 2013 from reactive perimeter and signature-based approaches, to risk-based programs that protect the most important business assets in whatever context they may exist ? cloud, mobile, or traditional data center. To succeed security leaders must invest in intelligence-driven strategies that harness the power of big data analytics and agile decision support.?
The report evaluates the impact of emerging technologies on enterprises. It recommends strategies to help enterprises adapt information security programs to help enable business innovation in 2013. These recommendations are:
Cloud Computing ? The increasing adoption of cloud will bring security concerns of the enterprises to the forefront. Enterprises will need to find ways to effectively evaluate their providers? security controls – which also involves undertaking continuous monitoring.
Social Media- Security teams will need comprehensive policies and effective security controls to actively manage the risks posed social media. A good social media risk management strategy will require a multidisciplinary team.
Mobile? The risks emerging out of mobile adoption continue to increase. It is driving security teams to build solutions with an understanding that the end-point cannot be trusted.
Big Data ? With the evolution of big data, security teams will be required to build out multi-year plans, comprehensively evolving their security management model. These plans will enable security teams to utilise big data to detect, and more effectively remediate security threats.