惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

L
LINUX DO - 热门话题
Stack Overflow Blog
Stack Overflow Blog
B
Blog
WordPress大学
WordPress大学
Project Zero
Project Zero
P
Palo Alto Networks Blog
阮一峰的网络日志
阮一峰的网络日志
博客园 - 司徒正美
有赞技术团队
有赞技术团队
S
SegmentFault 最新的问题
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
小众软件
小众软件
T
Tailwind CSS Blog
Forbes - Security
Forbes - Security
F
Full Disclosure
SecWiki News
SecWiki News
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Hacker News: Ask HN
Hacker News: Ask HN
C
Check Point Blog
Microsoft Security Blog
Microsoft Security Blog
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
F
Fortinet All Blogs
Cisco Talos Blog
Cisco Talos Blog
G
Google Developers Blog
J
Java Code Geeks
Google DeepMind News
Google DeepMind News
人人都是产品经理
人人都是产品经理
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Recorded Future
Recorded Future
O
OpenAI News
Spread Privacy
Spread Privacy
MongoDB | Blog
MongoDB | Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
C
Cybersecurity and Infrastructure Security Agency CISA
S
Securelist
V
Vulnerabilities – Threatpost
Y
Y Combinator Blog
IT之家
IT之家
U
Unit 42
腾讯CDC
S
Security Affairs
C
Cisco Blogs
Schneier on Security
Schneier on Security
The Last Watchdog
The Last Watchdog
B
Blog RSS Feed
宝玉的分享
宝玉的分享
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
S
Security @ Cisco Blogs
Cyberwarzone
Cyberwarzone
T
The Blog of Author Tim Ferriss

Network and Security Virtualization

Tackling the 5Cs of Enterprise Security with the Advent of AI – Spotlight on Cloud and Automation Efficiency Next-Level Lateral Security for Your Private Cloud Cybersecurity, Cloud and AI: Top-of-mind themes heading into 2024 Optimizing NSX Performance Based on Workload and ROI Generative AI Meets Cybersecurity: Use Cases for Lateral Security and the SOC Migration Coordinator – Selecting the migration mode VPC: The Secure Bridge Between Application and Infrastructure Teams NSX V2T Layer 2 Bridging with NSX-T Projects VMware NSX Bare Metal Edge Performance
Lateral Security for the Private Cloud – Leveraging the Power of Seamless Integration
Shashi Kiran · 2024-03-02 · via Network and Security Virtualization

Because modern threats are distributed and multi-varied, protecting against them cannot be accomplished through a series of point security solutions.

Recently, there are discussions happening in the industry around the “platformization of security”. These are not new thoughts but are all essentially derived from how to offer a simpler solution to a complex problem. In my previous blog “Tackling the 5Cs of enterprise security with the advent of AI” , I had highlighted the preference for “consolidation” through a platform approach.

Since the security attack surface is ever broadening, customers prefer a holistic and integrated approach to solving it, versus a variety of point solutions each with independent bells and whistles. Integration in this context means seamless interworking between the different components, deep visibility across the components and providing customers with a secure plug-n-play experience that drives operational simplicity and ease of use. Fundamentally, his is the promise of the security platform.

Let’s consider this in the context of the private cloud, taking the industry-leading private cloud solution from VMware as an example. Enterprises choose private clouds because it gives them greater control, compliance, and, in many cases a significantly lower operating cost structure.

Customers adopting the VMware Cloud Foundation (VCF) are security conscious enterprises requiring an enterprise-grade security solution. The question is whether they take an a la carte approach or opt for a tightly integrated solution. In the case of the former, the onus of integration and interworking lies with them. In the context of security, the chain is only as strong as the weakest link.

For lateral security, the fully integrated security stack takes ownership of the underlying complexity inherent in data center and private cloud environments. It makes it easier for the security administrator or SOC operator to take a holistic view to protect the organization’s critical traffic in the east-west direction (typically this is 80% of the organization’s sensitive traffic versus 20% being in the north-south direction).

Each component can work seamlessly with the “layers” above or below allowing network and application-level security protection to be dynamically applied.

The distributed firewall brings micro-segmentation capabilities with zoning across a L2-L7 environment. Malware and ransomware are handled better by quickly mitigating zero-day exploits, pattern matching and co-relating to detect anomalies quickly. All these allow the security intelligence to recommend robust rules that can be dynamically applied. Analytics and insights across the entire stack make the life of the administrator or operator simpler. With the onset of artificial intelligence (AI) and generative AI (Gen-AI) these can be further applied at scale augmenting the human capabilities and further hardening the security posture of the private cloud.

Owning the distributed set of components makes it easier to gain deep visibility across the spectrum and minimize or eliminate “blind-spots”. Managing them stack also becomes simpler reducing operational overhead and manual errors. Response to threats becomes faster and more accurate due to the minimization of the “lego block” elements and the pre-built integrated stack

Customers today are willing to pay for simplicity, as it saves them time and the mean time to resolution is significantly faster when something goes wrong.

In the case of the VMware security solution the Firewall and Firewall + Advanced Threat Prevention (ATP) packages bring incredible simplicity and value. The plug-n-play experience with VCF with a focus on value engineering and innovation make it easier to procure, deploy and operate – reducing friction across the entire lifecycle.

Sophisticated threats and attack vectors demand smart response. The VMware Firewall + ATP offering provides a comprehensive solution to mitigate threats, breaches and ransomware. For customers exploring a simpler solution to complex lateral threats, with a platform-like approach geared towards the private cloud, this is perhaps as good as it gets.