Why there are so many cybersecurity vendors and where do we go from here
ventureinsecurity.net
Why there are so many cybersecurity vendors and where do we go from here
1–10 of 61 posts
Re: Why there are so many cybersecurity vendors and where do we go from here
#2Re: Why there are so many cybersecurity vendors and where do we go from here
#3There is going to be a lot of tool consolidation at most organizations coming in the next few years.
Re: Why there are so many cybersecurity vendors and where do we go from here
#4Re: Why there are so many cybersecurity vendors and where do we go from here
#5Re: Why there are so many cybersecurity vendors and where do we go from here
#6It's a gross industry designed to milk big dollars out of clueless customers. Listening to these 'security experts' talk makes me roll my eyes roll so hard that I'm afraid they'll get stuck in the back of my head.
Re: Why there are so many cybersecurity vendors and where do we go from here
#7I'm curious on what keeps the prices for these products so high. You'd think with the kind of competition this industry has (all providing the same type of functionality, kinda), you'd see more of a race to the bottom. But when you go to quote, you start seeing a really bizarre pattern where it's almost the same price per feature across the board. I'm not saying it's price fixing, but something's not right here.
Re: Why there are so many cybersecurity vendors and where do we go from here
#8HBR indicates it takes 25 years for markets to mature.[1]
Re: Why there are so many cybersecurity vendors and where do we go from here
#9Take a step back, and look at history. It should be unsurprising that the problem was encountered, studied[0] and solved, decades ago.
During the Viet Nam conflict, the Air Force needed to plan missions with multiple levels of classified data. This couldn't be done with the systems of that era. This resulted in research and development of multi-level security, the Bell-LaPadula model[2], and capability based security[1].
Conceptually, it's elegant, and requires almost no changes in user behavior while solving entire classes of problems with minimal code changes. It's a matter of changing the default from all access to no access, all the way down to the kernel.
Life without it, is like trying to run a modern electrical grid without any circuit breakers, anywhere, ever.
Getting rid of virus scanners alone should be worth the platform switching costs, at least in terms of performance for most users.
[0] https://csrc.nist.rip/publications/history/ande72.pdf
[1] https://en.wikipedia.org/wiki/Capability-based_security
[2] https://en.wikipedia.org/wiki/Bell%E2%80%93LaPadula_model
Re: Why there are so many cybersecurity vendors and where do we go from here
#10Boom time for snake oil