People are still unsure about endpoint security

author-image
DQC News Bureau
New Update

Why do you think has endpoint security gained prominence in recent times?

Till four years ago, the entire security was concentrated on the periphery
of an organization's network with firewalls, devices for protection on servers
and anti virus programs on workstations. Then two years ago, we saw the
emergence of portable devices like USB drives and flash memory based products
and that is when it became pertinent that security had to factor for these
devices as well and it started moving from the periphery to these devices.

Advertisment

Earlier, there were floppies with 1.44 MB storage and there were the only
portable media. Later we had flash drives with huge memory space and no single
interface. They could be accessed through Wi-Fi networks, Bluetooth, Infrared,
USB ports, etc. This threw up the challenge of data being stolen from a client
station without the knowledge of the owner, on these devices and this is why
suddenly you see organisations trying to decide on how to have security policies
for these endpoints.

But can't the existing security policies be simply extended to end point
devices as well?

Not necessarily. These endpoints have massive storage space and what makes
it difficult to manage is that they are easily concealable. Earlier PCs were
connected to servers and the intellectual property rights could be protected as
a CIO could define the various security zones and no one could therefore take
any data away. But that is not the case anymore. So even with the best of
anti-virus and firewalls, data can still be stolen from a client station.

Another reason why a CIO has to chart a totally new strategy for endpoints is
because in ths age of tele-working and a mobile workforce, companies want their
employees to work from any place, anytime and do not want to restrict them to
work only on their workstations. So they can't prevent employees from carrying
away some data on a USB drive, at the same time they want to ensure that the
data is not misused.

Advertisment

So do you think enterprises are willing to invest in it?

Enterprise customers are still unsure about end point security. Sometimes
they think that they don't want it. But we are continuing our endeavor to
educate them on why they need it.

How are you educating them?

Our educational program is a three-way process. Before we preach to our
customers we believe in convincing our own people why end point security is
becoming a critical area for most enterprises. We showcase the pitfalls and
problems that customers are likely to face and the benefits and advantages of
having end point security solutions. When it comes to our channel partners, we
bring them to our office weekly and share case studies of companies where data
thefts have taken place and how it affected the companies. And then we empower
them to share this knowledge to the customers.

Govind Rammurthy

Microworld Technologies Services

Do you think channel partners are excited about offering endpoint
solutions?

Partners are always interested in those solutions which they can offer as a
value to their clients and which bring them good margins. Like customers, they
do not want to understand concepts. Instead they will listen to real life
instances, which is why we share with them real life cases of companies which
have suffered due to data thefts through end point devices.

Advertisment

So you feel enterprises have to adopt endpoint security solutions?

They do not have a choice. India is a place where people are lowering
manpower costs and investing in technology to automate process and become cost
efficient. Therefore infor­mation technology is the most critical area for any
enterprise. They have to ensure that this network is as secure as it gets.
Security needs have to be addressed when the policies are being defined and
revisited on a regular basis, without a doubt.

Vinita Bhatia

(vinitavs@cybermedia.co.in)