| By Adrian Bridgwater | Article Rating: |
|
| August 13, 2012 03:00 AM EDT | Reads: |
4,329 |
The data center (as we knew it) is never going to be the same. Fluid changes are already in motion, brought about largely as a result of ‘paradigm' shifts in computing including....:
- Multi-core processing and parallelism
- Cloud computing and server virtualization
- Bring Your Own Device
- Complex Event Processing
- Software Defined Networks
- Big Data
- Analytics and In-Memory Computing
... actually, several other major factors too, but that's a good data-centric 7-pack to start with is it not?

This swollen spring tide of information management elements brings with it empowerment for those that can bring meaningful analytics to bear upon the new data stack and, conversely, security concerns for those who fail to grasp the new triffid-sized nettle that has the growth potential to run rampant.
Colorful analogies aside... what are we talking about here in real terms? Enterprises today are increasingly forced to deal with massive amounts of so-called Big Data as they have to contend with the risk of employees connecting to the network with Bring Your Own Device (BYOD) tablets, smartphones and more.
This has created an inflexion point for large organizations in terms of data center transformation. We have reached a chasm where network security infrastructures will fail to scale and cope with the complexity of compute throughput caused by our seven factors as mentioned above. Put simply, the new under-managed over-clocked network is a security risk.
How Do We Put Our Next Step Forward Without Falling?
"The reality is, if a hacker wants to get into your network, then they will, 100 percent of the time. Match that risk with the new reality of BYOD security concerns and it's a heady concoction," argues Peter Doggart, management executive for security platform company Crossbeam. "Once we accept these basic truisms we can move on. From this point we can start to plan for compromised user containment, mitigation and segregation/quarantine."
It's not all about mitigation argues Doggart. Too much discussion circulates in the security industry focused on mitigation and cure, with comparatively scant lip service being paid to pre-infection prevention instead.
"You can't put anti-virus controls on an iPad; so putting controls at the network layer is the only way to deal with the security risks we stand in front of today. But going deeper, companies need to think about the structural build of their data centers and networks to ensure that they architect them correctly. New security vectors demand a new approach to application and network architecture. As a basic example, servers that process credit card data should be physically and locally segregated from other basic services."
Crossbeam's Doggart is adamant that this problem of implementing network security within more dynamic, virtualized data centers means that network security infrastructure needs to evolve in order to help organizations achieve their vision for the next-generation data center (NGDC). Then (and only then) can we successfully reap the benefits of cloud computing technology for both public and private environments he says.
Where Do We Turn Next?
Contemporary technologies in this space lean towards intelligent "boxed" solutions, i.e., appliances such as Intrusion Prevention Systems (IPS) and Threat Management Systems (TMS). Crossbeam's X-Series ‘network-in-a-box' challenges purpose-built security device products from HP, Oracle, IBM and others, suggesting that there is a defined need to "corral" switches, routers, load balancers, network layer protection mechanisms and application delivery controllers into a unified single solution. Indeed, HP appears to also embrace the ‘unification' label directly, naming its HP 200 Unified Threat Management (UTM) Appliance Series as it does.
Do we still need endpoint security in the shadow of more powerful network layer security controls? Take HP's aforementioned product, which does indeed come with anti-malware controls plus denial-of-service (DoS) attack protection, plus optional services such as anti-virus, anti-spam and URL filtering capabilities. The consensus argues that yes, we mostly still do need user endpoint security at whatever level we can bring it to bear; but it must work in harmony and unison with the wider strategy for this new and more intelligently designed network and data center structure currently under construction.
This is happening. Not everywhere and not at every level. But a network architecture security handbook should be on every CIOs Christmas list this year. Until we get there, wear a hard hat.
• • •
This post was first published on the Enterprise CIO Forum.
Published August 13, 2012 Reads 4,329
Copyright © 2012 SYS-CON Media, Inc. — All Rights Reserved.
Syndicated stories and blog feeds, all rights reserved by the author.
More Stories By Adrian Bridgwater
Adrian Bridgwater is a freelance journalist and corporate content creation specialist focusing on cross platform software application development as well as all related aspects software engineering, project management and technology as a whole.
- Cloud People: A Who's Who of Cloud Computing
- New Relic Q1 2013 Blazes Past Growth Targets and Reaches 40,000 Active Customer Accounts
- Cloud Expo New York: Using APIs for Better Business Partnerships
- Research and Markets: Crystal Oscillator Market: Global Forecast & Analysis - A Market Research Report Segmented by General Circuitry, By Applications, By Technology, By Mounting Scheme & Geography (2013-2018)
- Don’t forget to register for FOSE 2013
- Component Models in Java | Part 2
- Synchronoss Technologies to Present at Upcoming Conferences
- API Management Start-Up Gets Funding
- Verizon to Go into the Cloud Storage Biz
- Interop Las Vegas Previews News Announcements from over 60 Exhibitors & Sponsors
- How to Stop Worrying and Love Your Cloud
- ITC Clears Apple of Patent Infringement
- Cloud People: A Who's Who of Cloud Computing
- New Relic Q1 2013 Blazes Past Growth Targets and Reaches 40,000 Active Customer Accounts
- GDS International Confirms Unprecedented Delegation for Upcoming Next Generation Telecoms Europe Summit in May
- AWS Going into a New Line of Work
- Cloud Expo New York: Using APIs for Better Business Partnerships
- Research and Markets: Crystal Oscillator Market: Global Forecast & Analysis - A Market Research Report Segmented by General Circuitry, By Applications, By Technology, By Mounting Scheme & Geography (2013-2018)
- Google Compute enters the IaaS market
- Agile Solutions for Cloud, Big Data, Mobility Services
- SolarWinds to Announce First Quarter 2013 Financial Results on Tuesday, April 30 and Present at Upcoming Investor Conferences
- Don’t forget to register for FOSE 2013
- Apple’s Key Rubber-Band Patent Found Invalid Again
- How to Re-imagine Your Business for a Mobile World
- Where Are RIA Technologies Headed in 2008?
- Should RIM BlackBerries Be Rented?
- Has the Technology Bounceback Begun?
- Trump's Apprentice Runner-Up Rebecca Jarvis Has $150,000 Job Offer From SYS-CON Media
- "Mobile Web 2.0" – How Web 2.0 Impacts Mobility & Digital Convergence
- Ringback Tones
- Microsoft and Sprint Collaborate on Mobile Search
- Mobile Music Gets Boost From New W600 "Walkman Phone"
- i-Technology Blog: Zero-Cost Telephony, the 6-Ton Elephant in the Telco Room
- Dolphin Announces Open API With Over 50 Add-ons Including Dropbox and Wikipedia
- Java Edition of Windows Live Messenger for Mobile Launched
- Alcatel + Microsoft = Internet TV Over IP, a.k.a. "IPTV," Coming Soon To a PC or TV Near You



















