<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>The Situational Room by eIQnetworks &#187; Uncategorized</title>
	<atom:link href="http://situationalroom.wordpress.com/category/uncategorized/feed/" rel="self" type="application/rss+xml" />
	<link>http://situationalroom.wordpress.com</link>
	<description></description>
	<lastBuildDate>Thu, 26 Jan 2012 14:02:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='situationalroom.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>The Situational Room by eIQnetworks &#187; Uncategorized</title>
		<link>http://situationalroom.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://situationalroom.wordpress.com/osd.xml" title="The Situational Room by eIQnetworks" />
	<atom:link rel='hub' href='http://situationalroom.wordpress.com/?pushpress=hub'/>
		<item>
		<title>More SecureMaryland Podcasts</title>
		<link>http://situationalroom.wordpress.com/2011/11/21/more-securemaryland-podcasts/</link>
		<comments>http://situationalroom.wordpress.com/2011/11/21/more-securemaryland-podcasts/#comments</comments>
		<pubDate>Mon, 21 Nov 2011 14:36:05 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=954</guid>
		<description><![CDATA[I&#8217;ve been privileged to guest-host two more SecureMaryland podcasts over the past few weeks, both of which are now available (with video, too!) at SecureMaryland.org: &#8220;Episode 5: Send Me a PDF&#8221; &#8211; Penetration testing has expanded beyond just OS/network level attacks, and is now focused heavily on applications and third-party components (Browsers, Java RunTime, PDF, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=954&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been privileged to guest-host two more SecureMaryland podcasts over the past few weeks, both of which are now available (with video, too!) at <a title="SecureMaryland" href="http://www.securemaryland.org/" target="_blank">SecureMaryland.org</a>:</p>
<ul>
<li>&#8220;<a title="SecureMaryland Episode 5" href="http://www.securemaryland.org/2011/11/securemd-5-send-me-a-pdf/" target="_blank">Episode 5: Send Me a PDF</a>&#8221; &#8211; Penetration testing has expanded beyond just OS/network level attacks, and is now focused heavily on applications and third-party components (Browsers, Java RunTime, PDF, etc). In this episode we explore these new attack vectors with a specific focus on PDFs.</li>
<li>&#8220;<a title="SecureMaryland Eposide 6" href="http://www.securemaryland.org/2011/11/securemd-06-state-of-the-hack-0001/" target="_blank">Episode 6: State of the Hack 0001</a>&#8221; &#8211; Expanding on last week&#8217;s podcast, in this episode we kick off our monthly “state of the hack” series: a SecureMaryland podcast dedicated to all things related to PenTesting.  This first episodes discusses the necessity of  “standards” both from a corporate as well as a pen tester perspective.  Also in this episode a new project is announced: PTF, a PenTesting Framework.  PTF is a detailed mind map of all aspects related to pentesting.</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/954/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/954/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/954/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=954&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/11/21/more-securemaryland-podcasts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>A Clear and Present Danger (with Apologies to Tom Clancy)</title>
		<link>http://situationalroom.wordpress.com/2011/11/04/a-clear-and-present-danger-with-apologies-to-tom-clancy/</link>
		<comments>http://situationalroom.wordpress.com/2011/11/04/a-clear-and-present-danger-with-apologies-to-tom-clancy/#comments</comments>
		<pubDate>Fri, 04 Nov 2011 12:14:11 +0000</pubDate>
		<dc:creator>The Secure View</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=946</guid>
		<description><![CDATA[As regular readers of The Situational Room will know, we&#8217;re not big on FUD (Fear, Uncertainty and Doubt), instead focusing on the realities that global commercial enterprises and federal agencies face in protecting their information infrastructure from attack.  We at eIQ – along with, I suspect, the majority of our peers in the information security [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=946&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>As regular readers of The Situational Room will know, we&#8217;re not big on FUD (Fear, Uncertainty and Doubt), instead focusing on the realities that global commercial enterprises and federal agencies face in protecting their information infrastructure from attack.  We at eIQ – along with, I suspect, the majority of our peers in the information security industry – been watching with interest the discussions taking place in London at the Second Annual Cyberspace Summit, and were intrigued by one particular comment from Claire Yorke of <a href="http://www.chathamhouse.org/">Chatham House</a>, a British Institute created for the analysis of international issues.</p>
<p>In an interview with the BFBS (British Forces Broadcasting Service) Claire comments that, “actual warfare is quite a high level threat, and I think it will be quite interesting to see whether it is actually possible in cyberspace given it&#8217;s limited capacity to actually cause physical harm.”  <strong><em>Limited capacity to actually cause physical harm?!?</em></strong>  I don&#8217;t know about you, but attacking centrifuges at nuclear power plants is very real and has the potential to do serious physical harm!</p>
<span style="text-align:center; display: block;"><a href="http://situationalroom.wordpress.com/2011/11/04/a-clear-and-present-danger-with-apologies-to-tom-clancy/"><img src="http://img.youtube.com/vi/fLBURr6cj4o/2.jpg" alt="" /></a></span>
<p>It&#8217;s great that events like this are taking place &#8211; the London event was attended by representatives from more than 60 countries.  The threat posed by modern advanced persistent and insider attacks is an increasingly real one; the challenge of protecting critical corporate and federal infrastructures from attacks is growing ever more complex; and the potential for a cyber-based attack to do significant and prolonged collateral damage – <strong><em>including plenty of damage in the physical world</em></strong> – is significant.</p>
<p>If that doesn&#8217;t count as cyber warfare<a href="//localhost/C/%5CUsers%5Cjlinkous%5CAppData%5CLocal%5CMicrosoft%5CWindows%5CTemporary%20Internet%20Files%5CContent.Outlook%5C2T23CSHG%5Csituationalroom.wordpress.com%5C2011%5C...%5Ccyberwar-what-is-it-good-for">, we&#8217;d love to know what does</a>!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/946/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/946/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/946/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=946&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/11/04/a-clear-and-present-danger-with-apologies-to-tom-clancy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/17aea691e1223f0a73257f630c551ca0?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">broadpr</media:title>
		</media:content>
	</item>
		<item>
		<title>eIQnetworks on the SecureMaryland Podcast</title>
		<link>http://situationalroom.wordpress.com/2011/10/17/eiqnetworks-on-the-securemaryland-podcast/</link>
		<comments>http://situationalroom.wordpress.com/2011/10/17/eiqnetworks-on-the-securemaryland-podcast/#comments</comments>
		<pubDate>Mon, 17 Oct 2011 14:48:30 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=918</guid>
		<description><![CDATA[I&#8217;ve been sitting in as a guest on Shawn Grimes&#8217; SecureMaryland podcast for the past few weeks.  SecureMaryland focuses on information security, specifically issues that are of interest to practitioners in Maryland (my home state).  Maryland is rapidly solidifying its role as &#8220;ground zero&#8221; for cybersecurity, given the large number of organizations deeply involved in [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=918&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve been sitting in as a guest on Shawn Grimes&#8217; <a title="SecureMaryland Podcast" href="http://thecastcast.com/category/shows/securemd/" target="_blank"><em><strong>SecureMaryland</strong></em> podcast</a> for the past few weeks.  SecureMaryland focuses on information security, specifically issues that are of interest to practitioners in Maryland (my home state).  Maryland is rapidly solidifying its role as &#8220;ground zero&#8221; for cybersecurity, given the large number of organizations deeply involved in the security space: the National Security Agency, US Cyber Command, and major firms such as Lockheed Martin are all located in the state.</p>
<p>In our <a title="SecureMaryland Episode 1" href="http://thecastcast.com/2011/10/09/securemd-ep1/" target="_blank">first podcast</a>, we discuss the role of security technologies &#8212; including SIEM &#8211; and how these technologies just can&#8217;t keep up with today&#8217;s modern threats.  In the <a title="SecureMaryland podcast - Cloudy with a Chance of Pain" href="http://thecastcast.com/2011/10/16/securemd-ep2/" target="_blank">second podcast</a>, <strong><em>&#8220;Cloudy with a Chance of Pain&#8221;</em></strong>, we focus on some of the critical security issues around everyone&#8217;s favorite 21st-century paradigm-shifting technology: cloud computing.</p>
<p>Stay tuned in the coming weeks for more eIQ guest speaker dates on the SecureMaryland podcast!  To access the entire catalog of SecureMaryland, you can visit: <a title="SecureMaryland Podcast" href="http://thecastcast.com/category/shows/securemd/" target="_blank">http://thecastcast.com/category/shows/securemd/</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/918/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/918/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/918/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=918&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/10/17/eiqnetworks-on-the-securemaryland-podcast/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>SIEM Is Dead? Don&#8217;t Ask Us&#8230; Ask a CISO!</title>
		<link>http://situationalroom.wordpress.com/2011/10/13/siem-is-dead-dont-ask-us-ask-a-ciso/</link>
		<comments>http://situationalroom.wordpress.com/2011/10/13/siem-is-dead-dont-ask-us-ask-a-ciso/#comments</comments>
		<pubDate>Thu, 13 Oct 2011 21:17:23 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=905</guid>
		<description><![CDATA[Earlier today, I was very privileged to have the opportunity to speak to a group of CISOs in a major U.S. market.  The subject of discussion?  The fact that “SIEM is Dead”, of course!  Over the course of the past few weeks, we’ve seen a flurry of responses – some fully in support, others more [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=905&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Earlier today, I was very privileged to have the opportunity to speak to a group of CISOs in a major U.S. market.  The subject of discussion?  The fact that “SIEM is Dead”, of course!  Over the course of the past few weeks, we’ve seen a flurry of responses – some fully in support, others more skeptical – of our claim that SIEM is dead.  While it’s easy to say those words, the real proof in the proverbial pudding is how security practitioners and executives respond to that claim.</p>
<p>During this morning’s event, we started out by identifying some points from the Verizon 2011 Data Breach report regarding the effectiveness – or rather, the lack thereof – of information security technologies including SIEM to discover realized threats, and give security professionals the information they need to mitigate them:</p>
<ul>
<li>Successful data breach activity is up substantially, having more than doubled in the past year</li>
<li>86% of breaches were discovered by a third party</li>
<li>92% of attacks were classified by Verizon as “not highly difficult”</li>
<li>The failure to implement simple controls were at the heart of 96% of breaches</li>
</ul>
<p><em><strong>Clearly, if SIEM is supposed to detect these data breaches and help make organizations more secure, it’s failing miserably at it.</strong></em></p>
<p>Fortunately, every one of these security executives agreed that there are problems with SIEM.  But the participants needed more convincing that situational awareness was the right approach: most felt these problems were solely due to implementation difficulty, lack of user knowledge, professional services costs, and other operational issues.  So, let’s look at some of the problems that make SIEM a systemic failure, not just an operational one:</p>
<ul>
<li><strong>SIEM is laser-focused only on event-based data, and looks at everything as if it’s an event. </strong> As one participant asked on today’s call, “What else is needed?”  The answer is, “a lot”.  Information security is fundamentally a discipline of discovering and analyzing the abnormal.  If everything worked as it’s supposed to, there would be little need for security practitioners.  However, that’s not the case: we have a constantly increasing base of threats and risks, coupled with a growing set of regulatory and compliance requirements.  This means you need visibility into all security-related data: certainly you need events, but you also need visibility into asset and configuration state, network traffic, performance metrics, and many other pieces of data that are not events – and should not be treated like events.</li>
<li><strong>A bunch of point tools do not make situational awareness. </strong> Gartner made this clear in their recent “Delivering Situational Awareness” research note.  Collecting data from SIEM and other tools is a great first step, but the ability to correlate all that data – both events and non-event information – is absolutely critical.  SIEM simply doesn’t do this.  Without that capability, you really only have a lot of tools that give you visibility into a piece of the puzzle, but not the whole thing.</li>
</ul>
<p>There are many other reasons why SIEM is dead; I encourage you to read up on the differences between SIEM and a platform that can deliver true situational awareness on the eIQnetworks website.</p>
<p>In the end, the majority of participants on this morning’s call agreed that SIEM simply doesn’t work as advertised due to not only architecture and implementation problems, but due to a fundamental lack of capability.  The consensus was that something more is needed, that takes into consideration all aspects of security, and does so in an efficient, user-friendly manner.  Fortunately, we know <a title="SecureVue" href="http://www.eiqnetworks.com/securevue/securevue.php" target="_blank">just such a solution</a>.</p>
<p>So, is SIEM really dead?  We think so.  Want more evidence?  Give us a call <strong>(+1.978.266.9933)</strong> or drop us an <strong><a href="mailto:sales@eiqnetworks.com">e-mail</a></strong>, and give us 60 minutes of your time to demonstrate the world’s first unified situational awareness platform.  You’ll be glad you did.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/905/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/905/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/905/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=905&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/10/13/siem-is-dead-dont-ask-us-ask-a-ciso/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>Is SIEM Dead? &#8220;And the Survey Says&#8230;&#8221;</title>
		<link>http://situationalroom.wordpress.com/2011/08/26/is-siem-dead-and-the-survey-says/</link>
		<comments>http://situationalroom.wordpress.com/2011/08/26/is-siem-dead-and-the-survey-says/#comments</comments>
		<pubDate>Fri, 26 Aug 2011 15:24:35 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=803</guid>
		<description><![CDATA[There&#8217;s absolutely no doubt that the cybersecurity landscape has changed dramatically in the first six months of 2011, leaving CISOs, security analysts, and compliance professionals scrambling to adjust their systems, processes and technologies.  Unfortunately, we&#8217;ve also been increasingly hearing from security practitioners, prospects, analysts and influencers that these changes in approach are not quite doing [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=803&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There&#8217;s absolutely no doubt that the cybersecurity landscape has changed dramatically in the first six months of 2011, leaving CISOs, security analysts, and compliance professionals scrambling to adjust their systems, processes and technologies.  Unfortunately, we&#8217;ve also been increasingly hearing from security practitioners, prospects, analysts and influencers that these changes in approach are not quite doing the job &#8212; especially when it comes to point tools like SIEM, which are only providing limited visibility into the information security data they need to address today&#8217;s modern APTs, cyber attacks, compliance reporting, and other threats and mandates.</p>
<p><em><strong>eIQnetworks wants to know what you think.</strong></em>  <em>What security threats keep you up at night?  Are the tools and technologies you have today meeting your needs to address both security and compliance?  What new capabilities do you need to better address today&#8217;s advanced threats and compliance mandates?</em></p>
<p>We&#8217;ve assembled a brief survey to get your opinion; all responses are kept confidential, and you don&#8217;t have to reveal your name or organization.  <span style="color:#ff0000;"><em><strong>If you complete the survey, you&#8217;ll be entered into a drawing to receive one of ten $25 Amazon.com gift certificates!</strong></em></span>  The survey is open through Tuesday, September 6, and we&#8217;ll post the results online in the coming weeks so you can see how your opinion stacks up against your peers in the industry.</p>
<p>To start the survey, <a title="Survey - Is SIEM Dead?" href="http://www.surveygizmo.com/s3/621099/Is-SIEM-Dead" target="_blank">click here</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/803/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/803/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/803/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=803&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/08/26/is-siem-dead-and-the-survey-says/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>Want To See Us In Action?  Register for Our Upcoming Webinars&#8230; and Win an Apple iPad 2!</title>
		<link>http://situationalroom.wordpress.com/2011/08/26/want-to-see-us-in-action-register-for-our-upcoming-webinars/</link>
		<comments>http://situationalroom.wordpress.com/2011/08/26/want-to-see-us-in-action-register-for-our-upcoming-webinars/#comments</comments>
		<pubDate>Fri, 26 Aug 2011 13:55:02 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=792</guid>
		<description><![CDATA[We&#8217;ve been quite the hive of activity lately at eIQnetworks, and coming up in the next few weeks we&#8217;ll be kicking off the fall season with several webinars: Wednesday, 9/7, 1pm &#8211; 2pm ET: Using SecureVue to Meet Verizon&#8217;s 12-Step Challenge to Minimize Data Breaches. (click to register!)  Verizon&#8217;s annual Data Breach Survey has become [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=792&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>We&#8217;ve been quite the hive of activity lately at eIQnetworks, and coming up in the next few weeks we&#8217;ll be kicking off the fall season with several webinars:</p>
<ul>
<li><em><strong>Wednesday, 9/7, 1pm &#8211; 2pm ET: Using SecureVue to Meet Verizon&#8217;s 12-Step Challenge to Minimize Data Breaches.</strong></em> (<a title="Webinar Registration - 9/7/11" href="https://www2.gotomeeting.com/register/433444938" target="_blank"><em><strong>click to register!</strong></em></a>)  Verizon&#8217;s annual Data Breach Survey has become the gold standard of visibility into realized security threats.  In this webinar, we&#8217;ll review the requirements defined by this year&#8217;s Data Breach Survey to drastically reduce the risk of becoming the next security statistic, and provide a live demonstration of how the SecureVue unified situational awareness platform can provide real-time visibility into systems to ensure that threats don&#8217;t turn into a loss of critical data.</li>
</ul>
<ul>
<li><em><strong>Tuesday, 9/20, 1pm &#8211; 2pm ET: Fast, Easy and Complete Configuration Assessment Using SecureVue. (<a title="Webinar Registration - 9/20/11" href="https://www2.gotomeeting.com/register/679429154" target="_blank">click to register!</a>) </strong></em> According to Gartner&#8217;s John Pescatore, <span style="text-decoration:underline;"><em>65% of successful information security attacks exploit misconfigured systems.</em></span>  In this webinar, we&#8217;ll demonstrate how the SecureVue unified situational awareness platform fcan be used to quickly, effectively and completely measure and report on the security of systems in real-time, including hardware, OS and patch data, services and daemons, enabled ports and protocols, access control lists (ACLs), and more &#8212; all without the need to deploy agents!</li>
</ul>
<p>Still not convinced?  <span style="text-decoration:underline;color:#ff0000;"><em><strong>Did I mention that we&#8217;re giving away an Apple iPad 2 at each webinar?</strong></em></span></p>
<p><em><strong>But wait&#8230; there&#8217;s more!</strong></em>  Throughout October and November, we&#8217;ll be hosting live events in several major cities, with a major security industry speaker (and eIQnetworks customer!).  Stay tuned in the next few days for announcements to events in <strong>Houston</strong>, <strong>Los Angeles</strong>, <strong>San Francisco</strong>, and <strong>Atlanta</strong>!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/792/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/792/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/792/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=792&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/08/26/want-to-see-us-in-action-register-for-our-upcoming-webinars/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>Eternal Vigilance is the Price of Security</title>
		<link>http://situationalroom.wordpress.com/2011/06/30/eternal-vigilance-is-the-price-of-security/</link>
		<comments>http://situationalroom.wordpress.com/2011/06/30/eternal-vigilance-is-the-price-of-security/#comments</comments>
		<pubDate>Thu, 30 Jun 2011 11:47:26 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=683</guid>
		<description><![CDATA[As eIQnetworks continues to expand its role as the first and (to date) only true situational awareness platform, we&#8217;re proud to announce a new case study with the United States Army.  Multiple Army installations throughout the world are utilizing SecureVue to ensure that our nation&#8217;s critical infrastructure, applications and data remain secure.  You can read [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=683&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>As eIQnetworks continues to expand its role as the first and (to date) only true situational awareness platform, we&#8217;re proud to announce a new case study with the United States Army.  Multiple Army installations throughout the world are utilizing SecureVue to ensure that our nation&#8217;s critical infrastructure, applications and data remain secure.  You can read the entire use case, including how the Army uses SecureVue to achieve a Common Operating Picture (COP) of their environment, achieve DISA STIG compliance, and conduct detailed forensic analysis <a title="eIQnetworks Case Study - US Army" href="http://www.eiqnetworks.com/resources/usarmy_casestudy.php" target="_blank">here</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/683/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/683/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/683/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=683&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/06/30/eternal-vigilance-is-the-price-of-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>The Best Offense is a Good Defense</title>
		<link>http://situationalroom.wordpress.com/2011/02/22/the-best-offense-is-a-good-defense/</link>
		<comments>http://situationalroom.wordpress.com/2011/02/22/the-best-offense-is-a-good-defense/#comments</comments>
		<pubDate>Tue, 22 Feb 2011 13:05:53 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=335</guid>
		<description><![CDATA[We&#8217;re pleased to announce today that our Unified Situational Awareness platform, SecureVue, has been certified by the Defense Information Systems Agency for its Unified Capabilities Approved Products List (UCAPL) &#8211; meaning it is now available to all Department of Defense (DoD) agencies without the need for further testing. As many of you will know DISA [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=335&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>We&#8217;re pleased to announce today that our Unified Situational Awareness platform, SecureVue, has been certified by the <a title="DISA" href="http://www.disa.mil" target="_blank">Defense Information Systems Agency</a> for its Unified Capabilities Approved Products List (UCAPL) &#8211; meaning it is now available to all Department of Defense (DoD) agencies without the need for further testing. As many of you will know DISA certification isn&#8217;t something that is given out easily.</p>
<p>From start to finish, the certification process has taken about a year and has involved <span id="more-335"></span>Interoperability and Information Assurance (IA) tests by a multitude of DoD departments. Perhaps what makes obtaining certification most satisfying is that we always thought we&#8217;d developed a great piece of technology for helping commercial and Federal IT networks secure and enable them to demonstrate compliance quickly and easily. Now we know we did.</p>
<p>The list of all DoD approved products is available <a title="DISA UC APL Database" href="https://aplits.disa.mil/processAPList.do" target="_blank">here</a> &#8211; SecureVue can be found in the Element Management System category.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/335/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/335/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/335/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=335&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/02/22/the-best-offense-is-a-good-defense/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>Clash of the Titans</title>
		<link>http://situationalroom.wordpress.com/2011/02/17/clash-of-the-titans/</link>
		<comments>http://situationalroom.wordpress.com/2011/02/17/clash-of-the-titans/#comments</comments>
		<pubDate>Thu, 17 Feb 2011 16:57:56 +0000</pubDate>
		<dc:creator>John Linkous</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=332</guid>
		<description><![CDATA[Earlier this week ,Vijay Basani, our CEO, participated as a panelist in the 7th annual America&#8217;s Growth Capital (AGC) Information Security Conference in San Francisco, held right before the kickoff of RSA 2011.  I took a few minutes to do a brief Q&#38;A with Vijay, and get his perspective on the event and &#8212; in particular [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=332&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Earlier this week ,Vijay Basani, our CEO, participated as a panelist in the 7th annual America&#8217;s Growth Capital (AGC) Information Security Conference in San Francisco, held right before the kickoff of RSA 2011.  I took a few minutes to do a brief Q&amp;A with Vijay, and get his perspective on the event and &#8212; in particular &#8211; a distinct difference in viewpoint between <span id="more-332"></span>two of the other panelists, IBM and Hewlett-Packard.</p>
<p><strong>John: <em>The panel you were on was titled, &#8220;Convergence of Security and Systems Management&#8221;.  What were the key take-away ideas that panelists presented at the event?</em></strong></p>
<p><strong>Vijay: </strong>The most critical message that we identified is that systems and security management are absolutely converging today; organizations are <em><span style="text-decoration:underline;">already </span></em>down the road of evaluating how to do it, and some of the leading-edge enterprises are already implementing solutions.  Interestingly, at the panel, there was some disagreement between some of the panelists &#8212; specifically, IBM and HP (who recently purchased Arcsight) - regarding the current viability of security and systems management technologies and platforms.  HP believes that customers aren&#8217;t yet ready for real convergence; IBM and most of the other panelists (including me) disagreed.</p>
<p><strong>John: <em>It sounds like there are some differing ideas on the value of convergence between IBM and HP.  What&#8217;s your take on their differing ideas?</em></strong></p>
<p><strong>Vijay:</strong> HP seems to believe that security and IT operations teams are looking at different points of data, with different tools, and that either there&#8217;s minimal value in the cross-correlation in visualizing the data between these tools, or &#8212; perhaps more likely &#8211; they believe that it can&#8217;t yet be done; at least, not with their own current tool set.  IBM knows that it not only <span style="text-decoration:underline;"><em>can</em></span> be done, but <em><span style="text-decoration:underline;">must</span></em> be done in order to address modern, fundamental business problems.  To make this point, they elocuted that it will require a common correlation engine to be done the right way.  We at eIQ fully agree that&#8217;s the right approach, and it&#8217;s something that we&#8217;ve been talking about &#8212; and implementing in our SecureVue platform &#8211; for years.</p>
<p><strong>John: <em>What are the biggest challenges that audience members and panelists brought up related to security and systems management convergence?</em></strong></p>
<p><strong>Vijay:</strong> The big difference in vision between the panelists was in terms of how to implement a solution.  Many large vendors would like to believe that they can provide a single, unified stack to address both the &#8220;micro&#8221; problems of security and systems management (say, end-point anti-virus, NAC, and patch management) as well as the &#8220;macro&#8221; problems (such as insider threat identification or global threat intelligence).  Ultimately, however, the opportunity for a single-vendor approach to solving convergence is minimal.  Some vendors already understand this; Dave DeWalt of McAfee has often stated that the reality will be an &#8220;ecosystem&#8221; consisting of multiple vendors and technologies; however, there will need to be something aggregating and analyzing the data that sits above these tools.  Some vendors, like McAfee, have solved this for certain aspects of security and systems management &#8212; for example, the McAfee ePolicy Orchestrator console which brings together end-point security and configuration data from many different vendors&#8217; technologies.</p>
<p>However, an even broader level of visibility that extends beyond end-point data into network data, device data, user data, and other points of information are required to competently solve the more complex &#8212; and increasingly more common &#8211; threats and other issues that affect both security and systems management.  That&#8217;s where a platform like SecureVue adds tremendous value, by providing a common correlation technology that spans all security, compliance, systems management, and other and IT operations data.</p>
<p><strong>John: <em>What do you personally see as eIQ&#8217;s biggest advantage in being positioned to address convergence between security and systems management?</em></strong></p>
<p><strong>Vijay:</strong> Customers today are looking for a solution for security and systems management convergence <em><span style="text-decoration:underline;">today</span></em>.  Many vendors are trying to satisfy that need: in some cases through legitimate attempts to create near real-time data ecosystems with real correlation; in other cases, through clever marketing tactics such as buying point technologies and putting them under a brand umbrella.  Neither of these approaches delivers to the enterprise today, but SecureVue does.  Our advantage is not simply one of being a market first mover, but of being a proven approach that is already delivering the promise of security and systems management convergence to organizations from the Fortune 1000 down to the large end of the mid-market.</p>
<p><em><strong>Thanks for your insight, Vijay!</strong></em></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/332/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=332&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2011/02/17/clash-of-the-titans/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/26b8228ee1d43d6035459b3a2feefa69?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">phylum</media:title>
		</media:content>
	</item>
		<item>
		<title>Rudolph the red-faced CISO</title>
		<link>http://situationalroom.wordpress.com/2010/12/21/rudolph-the-red-faced-ciso/</link>
		<comments>http://situationalroom.wordpress.com/2010/12/21/rudolph-the-red-faced-ciso/#comments</comments>
		<pubDate>Tue, 21 Dec 2010 20:15:16 +0000</pubDate>
		<dc:creator>The Secure View</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://situationalroom.wordpress.com/?p=254</guid>
		<description><![CDATA[Dear Santa, I&#8217;ve been a good CISO this year [well, there haven't been any MAJOR breaches].  I bought all of the tools I thought I needed to keep our network protected against an evolving array of malicious cyber and internal attacks.    Generally, they have worked well. When I say &#8216;generally&#8217; there were a couple of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=254&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Dear Santa,</p>
<p>I&#8217;ve been a good CISO this year [well, there haven't been any MAJOR breaches].  I bought all of the tools I thought I needed to keep our network protected against an evolving array of malicious cyber and internal attacks.    Generally, they have worked well.</p>
<p>When I say &#8216;generally&#8217; there were a couple of times that our network was breached, but I don&#8217;t think that we lost any data… nothing bad has happened yet.  We can keep that between the two of us, can&#8217;t we Santa?  <span id="more-254"></span>No need to worry our compliance team, right?  If I&#8217;m being honest, there was also that <a title="Stuxnet" href="http://en.wikipedia.org/wiki/Stuxnet">Stuxnet</a> attack &#8211; but nobody ever sees those tykes coming, do they?  I&#8217;m still not even sure what really happened… but with attacks like that you don&#8217;t, right?!</p>
<p>If you feel like stopping by on Christmas eve Santa, I could use a way to collect data from every corner of my network, in all data formats and give me a way to correlate it all.  I have such a large amount of data on multiple point systems&#8230; it&#8217;s simply not been possible to capture it all in one place with the tools we use.  It&#8217;d be great to have the ability to see if something that looks suspicious is something I should really be worrying about, or whether I can go back to sleep.</p>
<p>If there was something we needed to take action on then it&#8217;d great to be able to understand how and where it started, and how it was spreading, so that we could take preventative action I&#8217;d really appreciate it if it could be your Christmas gift to me.  Your elves are talented guys, right Santa?  Surely they can come up with <a title="SecureVue" href="http://www.eiqnetworks.com/products/SecureVue.shtml">SOMETHING</a> to help?</p>
<p>Thanks and have a safe and secure 2011 Santa,</p>
<p>Best wishes,</p>
<p>Rudolph</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/situationalroom.wordpress.com/254/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/situationalroom.wordpress.com/254/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/situationalroom.wordpress.com/254/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=situationalroom.wordpress.com&amp;blog=17107788&amp;post=254&amp;subd=situationalroom&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://situationalroom.wordpress.com/2010/12/21/rudolph-the-red-faced-ciso/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/17aea691e1223f0a73257f630c551ca0?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">broadpr</media:title>
		</media:content>
	</item>
	</channel>
</rss>
