enterprisesecuritymag

| | Jan-Feb 2017ENTERPRISE SECURITY6Copyright © 2017 ValleyMedia, Inc. All rights reserved. Reproduction in whole or part of any text, photography or illustrations without written permission from the publisher is prohibited. The publisher assumes no responsibility for unsolicited manuscripts, photographs or illustrations. Views and opinions expressed in this publication are not necessarily those of the magazine and accordingly, no liability is assumed by the publisher thereof.JAN-FEB - 2017Mailing AddressValleyMedia, Inc.44790 S. Grimmer Blvd Suite 202, Fremont, CA 94538Jan-Feb - 2017, Volume 03 - 01 Published by ValleyMedia, Inc. To subscribe to ENTERPRISE SECURITYVisit www.enterprisesecuritymag.com Manganing EditorMichael BrownEditorial StaffSalesAaron PierceAlex D'SouzaAva GarciaKyle SummersSarah FernandesSyeda Tina TabinT:510.565.7628VisualizersJohn GouthamVULNERABILITY MANAGEMENT SPECIALLawrence Tselawrence@enterprisesecuritymag.comSoftware vulnerabilities, or simply the "bugs in the software code" are increasingly becoming the softer targets for cyber attacks. If we go with the current scenario, virtually anyone, anywhere can create a software, internet enable it, and network it with any other software in the cyber space. This growth in software and connectedness is in turn expanding the number of vulnerabilities that cyber criminals can use to break in. Making matters worse, a cyber attack may affect tens of thousands of users using same software that has vulnerabilities--a reason why companies from Google to Facebook and others are spending millions on `bug bounties' to detect in advance any vulnerabilities that can put their platforms and the users under risk. Recently Facebook awarded Andrew Leonov, a Russian security researcher, its biggest ever bounty $40,000 for reporting a severe vulnerability that affected the company's servers. The bug would have allowed the hackers to hide malicious codes in the image files that users upload. However, such vulnerabilities are also sought out by the underground market to gain remote access to both stored and real-time information of an organization, which can be used for commercial gains, or to sabotage the business. Vulnerability research has matured right along with the growth of cyber security incidents, turning it from a hobby of computer geeks into an industry on its own. The landscape is replete with hundreds of providers who promise to find vulnerabilities in the software codes and help detect, diagnose and prevent cyber threats. These providers are trying to consolidate their ground in a highly competitive market place by building feature-rich solutions and attain better market visibility. Meanwhile, the requirements for vulnerability management vary across organizations. Having a powerful vulnerability management solution that doesn't suit an organization's specific need is like equipping your house with a sophisticated alarm system, without locking the doors. In this scenario, our goal with this special edition is to help organizations find best-fit and best-of-breed vulnerability management solutions providers. This edition blends thought-leadership from subject matter experts with real stories on what selected vendors are doing for their clients, including exclusive insights from CIOs and CXOs. Let us know what you think.Powering a Secure SoftwareEditorialMichael Brown Managing Editor michael@enterprisesecuritymag.com*Some of the Insights are based on the interviews with respective CIOs and CXOs to our editorial staff
< Page 5 | Page 7 >