Thursday, April 25, 2019

When security is Mantra then security advisory is Tantra

"300 Lithuanian websites hacked by Russian hackers"

"In September, major government officials' Google email accounts were tampered with. Earlier, the passwords and logins of the National Defense Academy and major Indian embassies were attacked by hackers on this site."

"India's external affairs server was attacked by Chinese hackers"

How often do we hear such news...
from

  ...
from

  Many times... um!!! After many such accidents, only a few people saw the lime lamp. The reason is that most companies are reluctant to disclose them, fearing that they may lose customer confidence. These events happen frequently, and we only react when such events occur. Most of the time we are passive rather than proactive! All of these incidents have raised concerns about the damage to security and are very concerned about curbing such activities. The importance of information security and a growing market for Indian security consulting prompted me to write this article.

Don't care about security - this is what we usually hear from most Indian start-ups and a few small and medium-sized businesses [SMBs]. The reason may be that they don't have enough time for security because they are busy taking the product out. But the truth is that start-ups should be extremely careful to protect their intellectual property so that they do not lose their competitive edge.

Safety is the way to go!!! Safety is not a product, you just need to install and keep yourself safe. Security is more than just a technology. It also includes processes and people who should follow the process and fail. Most SMBs have a limited security team with limited operations, which is contrary to a few companies that limit security, but they lack certified security professionals. It is estimated that in India, fewer than 2,500 professionals have specific information security skills, accounting for only 0.5% of the total number of IT staff. Almost 50% of companies [12 out of 25] do not employ certified professionals to manage their safety. But the reality is that for security implementation, you need experienced certification staff who specialize and train in the core areas of security. How can you get such a person now? In India, there are a number of security consulting firms that can provide experienced certified external security consultants for employment.

According to "Forrester Wave": Security Consulting, Q3 2007" from

In the past two years, some security service providers have grown more than 40%
. The complexity of IT implementation has increased, the use of online transactions and online transactions has increased, and demand for banking and financial services, BPO, etc. has increased.

It is estimated that by 2012, the consulting business in the Asia Pacific region will grow to $1.1 billion. India's information security and services companies are moving upstream to the value chain, focusing on information security consulting, managed services, training and patch management. India's information security [IS] market is growing at a rate that is more than 50% faster than the software industry and presents a huge untapped opportunity for software companies. There have been many outstanding participants, such as Deloitte, Wipro, Accenture, Ernst & Young, who provided their consulting services in the field of information security, but the demand and vacuum of other companies are getting higher and higher. This market.

in conclusion:

  1. The days when security is considered a separate IT infrastructure are gone, and now it's more than that. It has expanded to include information storage, distribution, application-level security, perimeter security, and targeting different types of information. The refinement strategy process. Today's security consulting firm has trained personnel with BS-7799, ITSM [IT Service Management], COBIT [Information and Related Technology Control Objectives] and ISO-17799, ISO 27001 and other standards. Working in an offshore mode may result in a service from a security consulting firm to maintain compliance with the regulations of its foreign counterparts.
  2. Companies working in offshore models can gain additional advantages in hiring external consultants. These consultants view the security of the organization from an outsider's perspective and are in a better position to identify loopholes.
  3. Companies should enhance their sense of security by including top management in drafting and reviewing security policies and developing security measures in their budgets.

It is clear that India's security consulting is growing rapidly. India has the perfect combination of technology and skills to provide first-class service and grow into a top security consulting service provider.

Finally, as Tantric said - any service related to the ritual behavior of the body, mind and speech is called Tantra. That's why I said that when security is Mantra then security advisory is Tantra!




Orignal From: When security is Mantra then security advisory is Tantra

No comments:

Post a Comment