TechCentralTechCentral
    Facebook Twitter YouTube LinkedIn
    Facebook Twitter LinkedIn YouTube
    TechCentral TechCentral
    NEWSLETTER
    • News

      The great crypto crash: the fallout, and what happens next

      22 June 2022

      Winter 1, Eskom 0

      22 June 2022

      What it will take to bring the Guptas to justice

      22 June 2022

      Inflation in South Africa spikes higher

      22 June 2022

      Eskom announces massive escalation in load shedding

      22 June 2022
    • World

      Tether to launch a stablecoin tied to the British pound

      22 June 2022

      Tech giants form metaverse standards body, without Apple

      22 June 2022

      There are still unresolved matters in Twitter deal, Musk says

      21 June 2022

      5G subscriptions to top one billion in 2022: Ericsson

      21 June 2022

      Crypto lenders face a DeFi drubbing

      21 June 2022
    • In-depth

      Goodbye, Internet Explorer – you really won’t be missed

      19 June 2022

      Oracle’s database dominance threatened by rise of cloud-first rivals

      13 June 2022

      Everything Apple announced at WWDC – in less than 500 words

      7 June 2022

      Sheryl Sandberg’s ad empire leaves a complicated legacy

      2 June 2022

      Tulipmania meets the real economy at WhatsApp speed

      30 May 2022
    • Podcasts

      How your organisation can triage its information security risk

      22 June 2022

      Everything PC S01E06 – ‘Apple Silicon’

      15 June 2022

      The youth might just save us

      15 June 2022

      Everything PC S01E05 – ‘Nvidia: The Green Goblin’

      8 June 2022

      Everything PC S01E04 – ‘The story of Intel – part 2’

      1 June 2022
    • Opinion

      Has South Africa’s advertising industry lost its way?

      21 June 2022

      Rob Lith: What Icasa’s spectrum auction means for SA companies

      13 June 2022

      A proposed solution to crypto’s stablecoin problem

      19 May 2022

      From spectrum to roads, why fixing SA’s problems is an uphill battle

      19 April 2022

      How AI is being deployed in the fight against cybercriminals

      8 April 2022
    • Company Hubs
      • 1-grid
      • Altron Document Solutions
      • Amplitude
      • Atvance Intellect
      • Axiz
      • BOATech
      • CallMiner
      • Digital Generation
      • E4
      • ESET
      • Euphoria Telecom
      • IBM
      • Kyocera Document Solutions
      • Microsoft
      • Nutanix
      • One Trust
      • Pinnacle
      • Skybox Security
      • SkyWire
      • Tarsus on Demand
      • Videri Digital
      • Zendesk
    • Sections
      • Banking
      • Broadcasting and Media
      • Cloud computing
      • Consumer electronics
      • Cryptocurrencies
      • Education and skills
      • Energy
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Motoring and transport
      • Public sector
      • Science
      • Social media
      • Talent and leadership
      • Telecoms
    • Advertise
    TechCentralTechCentral
    Home»Sections»Information security»‘Siemplifying’ cybersecurity automation

    ‘Siemplifying’ cybersecurity automation

    Information security By Port4431 June 2022
    Facebook Twitter LinkedIn WhatsApp Telegram Email

    One of the many challenges facing C-level executives today is the correlation between investment in cybersecurity controls and the associated increased efficacy of the security posture.

    From a compliance and governance perspective, the risk-based scorecard is an approach to calculate and record a risk level, in line with an organisation’s risk-based approach, policies and procedures. A critical element thereof is the ability to quantify the risk associated with a cyber breach. In many cases, there is an assumption that a material monetary investment in numerous security controls has an automatic corresponding reduction in the risks associated with cyber breaches. However, this is not always the case.

    Looking at this conundrum through two lenses can yield the following insights:

    1. An investment in security controls, with a “set and forget” approach can very quickly yield the underlying investment obsolete; and
    2. An investment in security controls without having these controls act in unison can materially reduce the overall efficacy of the security posture.

    With the introduction of a security orchestration, automation and remediation (SOAR) platform, these risks can be mitigated.

    A SOAR platform is designed to integrate into multiple security controls, from a multitude of vendors. However, these platforms are expensive, and the skills required to develop on them are scarce. What is frequently needed are only a few automations to specifically overcome these two challenges. Port443’s platform is built on top of the Siemplify SOAR to power these automations “as a service”.

    Consuming these automations “as a service” makes it readily affordable and overcomes this conundrum.

    1. A continuous automated hardening of security controls against best practices can overcome the “set and forget” mindset, ensuring that the investment into these controls yield the requisite risk-reduced outcome for a nominal amount relative to the costs associated with the underlying control. An example includes the policies configured on a firewall. Automating frequent validations of the best practice configurations of the firewall policies against industry best practices as well as the vendor’s best practice can help alleviate the “set and forget” risk.
    2. While each control, in isolation, can yield mitigation in response to a specific inbound indicator of compromise (IOC), the real benefit of having these controls trigger each other to achieve immediate containment significantly increases the overall security posture. An example to achieve immediate containment would be to have an e-mail security control, a network security control and a privileged access management (PAM) security control trigger each other to achieve immediate containment of an IOC.

    SOAR platforms are built to integrate into various controls to achieve these kinds of risk mitigations through automation. Consuming these automations as a service is the essence of the Port443 proposition.

    The power of the platform can be consumed as a service without having to worry about the intensive capital investment, the skills required to build thereon and ensuring that only those automations that are relevant to your organisation are what is ultimately paid for.

    SOAR as a service — Siemplifying cybersecurity automation. Contact us at [email protected] for additional information.

    About Port443
    Port443 is a cybersecurity company operating across the Middle East and Africa offering services to all market segments. We believe that security should be readily accessible, affordable and always ahead of the ever-evolving threat landscape. Our core platform is a SOAR (security orchestration, automation and remediation) platform on top of which we offer automations “as a service” across multiple security controls and across multiple security technologies. The automations augment security engineering teams, introducing efficiency and speed in reacting to IOCs and a focus on continual hardening of the existing security controls.

    Port443 has extensive experience in identifying candidates for automation and building these automations, so they can be consumed “as a service”.

    Contact us at [email protected], visit www.port443.co.za or find us on LinkedIn.

    • This promoted content was paid for by the party concerned
    Port443 SOAR
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email
    Previous ArticleNaspers leads R53-million round in SA fintech LifeCheq
    Next Article UK weighs R15-billion guarantee for SA’s shift from coal

    Related Posts

    The great crypto crash: the fallout, and what happens next

    22 June 2022

    Winter 1, Eskom 0

    22 June 2022

    What it will take to bring the Guptas to justice

    22 June 2022
    Add A Comment

    Comments are closed.

    Promoted

    More than card machines – iKhokha diversifies to reach more SMEs

    22 June 2022

    What does it cost to be a student in 2022?

    22 June 2022

    Rugged PCs bring AI to the edge in industrial settings

    21 June 2022
    Opinion

    Has South Africa’s advertising industry lost its way?

    21 June 2022

    Rob Lith: What Icasa’s spectrum auction means for SA companies

    13 June 2022

    A proposed solution to crypto’s stablecoin problem

    19 May 2022

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2022 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.