Monday, March 13, 2017

SEA ? Security Exposure Analysis

a post from 4.5 years.
"
Every time I go to one of the dozens of Security conference I like to go to vendors booth and ask them the following  questions:

1.       Which attack vector your product detects and or mitigate?
2.       What is the amount (ratio/ percentage) of you false positive and false negative? 
3.       How much performance impact your product adds to the existing web application/ environment / system / network in terms of latency?
4.       How much time and human work it takes to deploy your product?
5.       How much human work needed to maintain your product?
6.       How many customer using your product ?

7.       What is your road map ?

    why asking ? 
    
  few  years ago I spoke to a guy who introduce himself as a security expert. and he told me about a concept called Security Exposure Analysis. when I asked him what it means he told me the above questions.  then he told me, if you are talking to a vendor ask him those questions, then you will know if you need to buy their product or not. ever since i'm asking it and it does help. 
   
    which  question you ask before you buy a security product ? "


   


Thursday, March 2, 2017

Cyber , yes !


Cyber, I remember very clearly that few years ago the term cyber was mostly related sex. When someone said cyber you immediately understood that he talks about cyber sex which was something very new to the world. Cyber then become a name to people who don't do real sex, they do cyber. That wasn't very long time ago however times are changing and familiar words get new meaning. Today when you say cyber most of the people understand your talking about cyber security unless they still do the other cyber which btw is known for a fact that sex made the internet so big.

It is even more crazy because everyone that I talk to lately is in cyber.  A sales guy whom I know and who know nothing about computers and used to sell mobile just told me he decide to go to cyber, he didn't even say cyber security , just cyber. A girl who used to work in my regular bar told me a week ago that she wants to go to cyber as a product manager, re he he ly ??  yes ! Cyber, scary word that means money ! and security is great cuz we Israeli knows all about security, we live and breathe  security from childhood.

And ! we are also a startup nation which means that If you combine the natural security orientation we have with the startup nation fact, you will get a cyber security startup nation which means lots of Cyber startups. Cyber security not cyber sex startups.

LR