Skip to content

The Future of Network Security: Identity, Segmentation & Securing the Edge

What it takes to properly secure corporate networks in the world of remote work, BYOD & IoT

The workplace has changed thanks to COVID-19. Many of us continue to spend most, if not all, of our workdays at home, juggling Zoom meetings, kids, pets, relationships, cooking, cleaning…you name it. Since at least February 2020, organizations around the world have altered the way they operate – encouraging their employees to stay home, stay safe, but stay available.

On top of the immediate operational challenges that companies faced when shifting to full or hybrid work environments, the rise of remote work in response to COVID-19 has pushed a number of network security shortcomings to the surface. In response, cybersecurity vendors and IT professionals have accelerated the development of and search for solutions to fill these network security gaps.

As we return to the office and arrive in a post-COVID-19 world, these areas will dominate the evolutionary direction of corporate network security…

The Role of Identity

As people, we represent the weakest link in the network security armor. While we may wish we were infallible, we’re really full of bad cybersecurity habits, like weak passwords, forgetting to back up data, or clicking on hyperlinks in emails from strangers. Our identities, however, can also be our strongest means of securing networks. The rise of multi-factor authentication (MFA) identity and access management (IAM) tools is allowing organizations to verify employee identity and authenticate their access to the network in real-time, no matter the employee’s location or whether they’re attempting to connect with a managed or personal (BYOD) device.

Network Segmentation

Segmenting the network is a cybersecurity best practice. Period. For any companies, this practice is even a regulatory requirement (e.g., the Payment Card Industry data security standard (PCI)). Network segmentation is simply a means of dividing up a network into smaller parts, ensuring the right people only have access to the parts of the network that are relevant to them. It is a measure that improves the effectiveness of an organization’s investments in other security tools, and can help to prevent significant damage to critical data across the network after a company has experienced a breach.

Securing the Edge

Gartner introduced SASE a few years ago. It represents a new enterprise networking technology category that converges the functions of network and security solutions into a single, unified cloud service. This marks an architectural transformation, as it allows IT teams to leverage a holistic and flexible service to their businesses. Critical to this budding area is NAC. Specifically, the movement of NAC to the cloud eliminates expensive on-site hardware and hidden maintenance costs. With cloud NAC, like Portnox CLEAR, all that’s needed to control network access across a geographically dispersed network is an internet connection.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Portnox
Portnox provides simple-to-deploy, operate and maintain network access control, security and visibility solutions. Portnox software can be deployed on-premises, as a cloud-delivered service, or in hybrid mode. It is agentless and vendor-agnostic, allowing organizations to maximize their existing network and cybersecurity investments. Hundreds of enterprises around the world rely on Portnox for network visibility, cybersecurity policy enforcement and regulatory compliance. The company has been recognized for its innovations by Info Security Products Guide, Cyber Security Excellence Awards, IoT Innovator Awards, Computing Security Awards, Best of Interop ITX and Cyber Defense Magazine. Portnox has offices in the U.S., Europe and Asia. For information visit http://www.portnox.com, and follow us on Twitter and LinkedIn.。

訊連科技將於「2021智慧城市展 Smart City Expo」登場 展示FaceMe®人臉辨識於安控、防疫、金融等解決方案

【2021年03月16日,台北訊】 世界級AI臉部辨識技術開發商訊連科技(5203.TW)將於2021年3月23日至26日於台北南港展覽館舉辦之「2021智慧城市展Smart City Expo」登場,展示最新的FaceMe® Security,可提供身分辨識、門禁管理、出勤、口罩偵測及體溫量測之一站式智慧安控及防疫解決方案。此外,亦於本展中展示專為金融保險業設計的FaceMe® eKYC & Fintech智慧金融解決方案,提供金融或保險業者,利用人臉辨識進行eKYC電子化的身分辨識服務。

訊連科技將於「2021智慧城市展 Smart City Expo」登場 展示FaceMe®人臉辨識於安控、防疫、金融等解決方案

近年來,人臉辨識技術快速進入智慧安控領域。FaceMe® Security解決方案可於現行安控系統中,快速導入人臉辨識功能,除可用作門禁或紀錄員工出缺勤紀錄外,更可辨別VIP或黑名單等特定人士。支援Milestone、Network Optix Nx Witness及VIVOTEK VAST2等VMS影像管理軟體,於偵測到特定人士時,可同步發送事件通知至VMS軟體,方便保全人員監控及管理。

FaceMe® Security於智慧安控場景中提供端對端的解決方案。於邊緣端運行的FaceMe® Security Workstation可運作於工作站、工業電腦及物聯網裝置上,進行即時的人臉偵測及特徵擷取,用作身分比對。以人流來說,於工廠或科技園區等每小時上萬人流的大型場域,可選擇於單一Windows工作站上安裝至多四張的NVIDIA Quadro RTX 5000加速卡。而以數千人的中小型場域,如辦公大樓、零售商場及倉儲,則可運行於NVIDIA Jetson (AGX Xavier或Xavier NX)或採用Intel® Core 處理器或Movidius™ VPU的工業電腦或NUC等設備,降低建置成本及功耗。針對門禁及防疫需求,FaceMe® Security可透過Health Add-On及Check-In Add-On兩款套件,於場域入口建置體溫、口罩偵測站及出勤打卡機。

金融保險業近年來積極布局的Fintech數位轉型,透過生物辨識進行的「eKYC電子化認識客戶」(Electronic Know Your Customer)成為Fintech熱門應用,其中人臉辨識有其相容性高、辨識準確度高及非接觸性等優勢,成為eKYC最主流技術。訊連科技推出的FaceMe® eKYC & Fintech 智慧金融解決方案 ,提供1:1人員核身(人證比對)與1:N身分辨識等功能,可應用於行動網銀、ATM無卡交易、行動投保與人員進出管理等,透過人臉辨識可更快速、安全的核實用戶身分,並將臉部特徵建檔供作後續服務應用。透過人臉辨識簡化身分認證流程,有效提升客戶體驗。

訊連科技FaceMe®人臉辨識引擎,在全球知名NIST人臉辨識評比中,準確度為扣除中、俄廠商後,全球排名第一的人臉辨識開發商。訊連科技將於於2021年3月23日至26日登場之「2021智慧城市展Smart City Expo」中,針對智慧金融、智慧安控和防疫需求,展示多項最新AI科技與應用解決方案。

2021智慧城市展 Smart City Expo
活動期間:110年 3 月 23 日(星期二)至 3 月 26 日(星期五),共四日。
展出時間:上午10時至下午6時 (最後一日參觀至下午5:00)
活動地點:台北南港展覽館2館1樓 (115台北市南港區經貿二路2號)
訊連科技攤位編號:Q701

About Version 2

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products. Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

關於CyberLink
訊連科技創立於1996年,擁有頂尖視訊與音訊技術的影音軟體公司,專精於數位影音軟體及多媒體串流應用解決方案產品研發,並以「抓準技術板塊,擴大全球行銷布局」的策略,深根台灣、佈局全球,展現亮麗的成績。訊連科技以先進的技術提供完美的高解析影音播放效果、以尖端的科技提供完整的高解析度擷取、編輯、製片及燒錄功能且完整支援各種高解析度影片及音訊格式。產品包括:「威力導演」、「PowerDVD」、「威力製片」、「威力酷燒」等。

Scale Computing Delivers High-Performing, Efficient, and Scalable IT Infrastructure to Transportation Services Industry

INDIANAPOLIS – March 17, 2021 – Scale Computing, a market leader in edge computing, virtualization, and hyperconverged solutions, today announced continued momentum within the transportation industry, thanks to Scale Computing’s HC3, which allows transportation organizations — whether they are over-the-road, rail, marine, or air — to optimize operations with self-healing, automated infrastructure for all applications.

“The transportation industry has a lot of moving parts, from new CO2 emission rules to a fast-growing number of cyber-attacks. Transportation vehicles, vessels, and crew are vulnerable and require onboard computer infrastructure technology that is simple, secure, and resilient,” said Jeff Ready, CEO and co-founder of Scale Computing. “Our HC3 Edge Computing solutions optimize transportation operations with self-healing, automated infrastructure, ensuring application availability, simplified management and secure applications on all fleets, whether it is air, marine, over-the-road, or rail transportation.”

With the proper platform in place, transportation entities, regardless of sector, can deliver improved fleet management, monitoring, contactless-delivery technology, increased productivity, and lower TCO, while keeping critical data and crew safe. Scale Computing HC3 is highly available, keeping critical applications and data always on and available, and provides the simplicity and scalability needed to meet the IT infrastructure demands of transportation.

Boughey Distribution Ltd was searching for the right solution to replace aging hardware and execute an infrastructure refresh. By selecting HC3, Boughey Distribution was able to decrease the time spent recovering from a hardware failure running a critical workload from 1-8 hours to less than 10 minutes, an 83-percent to 97-percent reduction in recovery time.

“Having a single point of contact is huge as most issues can and have been resolved with a 10 minute phone call. With my last providers I had to play phone tennis where one would pass me to the other. Cost is another bonus because the combined total was cheaper than the upgrade to another VMware and server provider,” said Paul Brough, Network Administrator, Boughey Distribution Ltd.

Challenger Motor Freight, Inc. was searching for the right solution to replace aging hardware and execute an infrastructure refresh to support growth and new business initiatives. By selecting HC3, Challenger was able to decrease the time spent recovering from a hardware failure running a critical workload from 1-8 hours to less than 10 minutes, an 83-percent to 97-percent reduction in recovery time.

“We are now able to just use the system. We can deploy VMs in seconds, which makes test/dev so much easier. High availability and replication come out of the box. We do not have to worry about patches for switch, san, server, and hypervisor. When needed, Scale Computing support is the best support I have received from any vendor ever in my 25 years of experience,” noted Scott Benninger, IT Manager, Challenger Motor Freight, Inc.

As the mass transit agency that provides bus transportation within State College, Pennsylvania, and the surrounding areas, as well as Pennsylvania State University, Centre Area Transportation Authority (CATA) requires highly-available IT infrastructure to deliver uninterrupted service to its customers. By implementing HC3, CATA was able to improve its disaster recovery, reduced its IT complexity with a single vendor to support its infrastructure, and reduced IT operating costs.

Donny Lynch, IT specialist at Centre Area Transportation Authority, states, “Scale Computing HC3 handles our server needs across the organization for our ERP systems, SQL servers, and remote access. Their technology has been critical in consolidating older legacy server hardware and server OS into one easy-to-manage-and-monitor system.”

Empire Airlines in Hayden, Idaho, flies 50 aircraft for FedEx, as well as passenger and cargo aircraft for Hawaiian Airlines. In addition to its air carriers, Empire Airlines has a maintenance repair overhaul facility in Idaho.

According to Melanie Ellingson, director of IT at Empire Airlines, the company was looking to upgrade its legacy IT infrastructure with a virtualization solution. Ease of use was a priority for Ellingson, who said she wanted a simple solution that did not require additional training or specialized personnel to maintain the IT infrastructure. After researching competitors, Ellingson selected Scale Computing, stating, “With Scale Computing, you plug it in, turn it on, and you’re running. That’s all there is to it.”

Scale Computing is currently offering transportation organizations a free trial for Scale Computing HC3 Edge. Learn more.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Scale Computing 
Scale Computing is a leader in edge computing, virtualization, and hyperconverged solutions. Scale Computing HC3 software eliminates the need for traditional virtualization software, disaster recovery software, servers, and shared storage, replacing these with a fully integrated, highly available system for running applications. Using patented HyperCore™ technology, the HC3 self-healing platform automatically identifies, mitigates, and corrects infrastructure problems in real-time, enabling applications to achieve maximum uptime. When ease-of-use, high availability, and TCO matter, Scale Computing HC3 is the ideal infrastructure platform. Read what our customers have to say on Gartner Peer Insights, Spiceworks, TechValidate and TrustRadius.

How PAM can help against insider threats

 

Insider threats take many forms. Some are malicious agents looking for financial gain. Others are simply careless or unaware employees who click on suspicious links.

An insider threat can be defined as someone close to an organization, with authorized access, improperly using that access to negatively impact the organization’s critical information or systems.

Insider threats have the potential to do major damage to a company’s cybersecurity. One way to defend it against insider threats is by focusing on controlling privileged access.

In this article, we talk about some ways that PAM (Privileged Access Management) assists companies against cyber risks associated with insider threats.

Keep reading and learn about the possibilities of reducing the impacts of insider threats with Privileged Access Management.

Cyber risks associated with insider threats

Insider threats are not always exclusively people who work directly for your organization. We can include consultants, outsourced contractors, suppliers, and anyone who has legitimate access to some of your resources.

To understand more about the subject, we have selected five possible scenarios in which insider threats can arise.

  • An employee or third party who performs inappropriate actions that are not intentionally malicious, they are just careless. Often, these people look for ways to do their jobs, but they misuse the assets, do not follow acceptable usage policies, and install unauthorized or dubious applications.
  • A partner or third party that compromises security through negligence, misuse, or malicious access or use of an asset. For example, a system administrator may incorrectly configure a server or database, making it open to the public instead of private and with controlled access, inadvertently exposing confidential information.
  • An agent bribed or requested by a third party to extract information and data. People under financial stress are often the main targets.
  • A rejected or dissatisfied employee is motivated to bring down an organization from the inside, disrupting business and destroying or altering data.
  • A person with legitimate privileged access to corporate assets, who seeks to exploit them for personal gain, usually stealing and redirecting information.

Whether the damage is caused intentionally or accidentally, the consequences of insider attacks are very real.

One of the ways to mitigate the risks of the scenarios above is to implement monitoring tools to track who accessed which files and alert administrators about unusual activities.

In addition to these actions, the management of privileged accounts also helps to reduce damage caused by insider threats and contributes to proactive cybersecurity behavior.

PAM and Privileged Accounts

Privileged accounts are those with elevated access permission that allow account holders to access critical systems and perform administrative or privileged tasks. Like ordinary user accounts, privileged accounts also require a password to access systems and perform tasks.

Privileged accounts can be used by people or be non-human when used by applications or systems. The latter are also called service accounts. Privileged accounts, such as administrative accounts, are often used by system administrators to manage applications and hardware, such as network assets, and databases.

The problem with these accounts is that they are often shared, used on many systems, and can use weak or standard passwords, making it easier for insider agents to work.

Thus, when these accounts are not properly managed, they give insider agents the ability to access and download the organization’s most sensitive data, distribute malicious software, bypass existing security controls, and delete trails to hide their activities in audits.

One of the most secure ways to manage privileged accounts is through PAM (Privileged Access Management) solutions. This solution consists of cybersecurity strategies and technologies to exercise control over privileged access and permissions for users, accounts, processes, and systems in a corporate environment.

Check below how PAM solutions are important allies to reduce cyber risks associated with insider threats.

PAM and Insider Threats

As mentioned, privileged accounts represent high-value targets for insider agents.

Organizations need to adopt a Privileged Access Management (PAM) solution and also provide data on access to privileged accounts for this solution in their monitoring systems.

Therefore, we selected 7 resources present in the PAM solutions that are strategic for those companies that seek to reduce the possibilities of insider threats.

  • Use of effective policies for all employees, whether remote, service providers or third parties.
  • Protection for the credentials of your most confidential assets (confidential applications, databases, privileged accounts, and other critical systems) in a central and secure repository.
  • Limitation of privileged access to confidential information, such as customer data, personally identifiable information, trade secrets, intellectual property, and confidential financial data.
  • Least privilege procedures and resources to provide employees with just the access they need. This is what we call need-to-know.
  • Limitation of local administrator rights for all employees’ workstations; and implementation of permission, restriction, and denial policies to block malicious applications.
  • Implementation of workflows for the creation and governance of privileged accounts.
  • Monitoring and recording of privileged access to confidential information, data, and systems.

That is, the first steps to better protect yourself and your customers from insider threats consist of applying at least some privileged access management best practices.

Start by learning more about how the principle of least privilege works, then it is important to establish and apply the best password management practices and, finally, invest in a comprehensive PAM solution that has all these resources at your disposal.

senhasegura is a PAM solution that has granular access controls, credential management, detailed logging and session recording, and the ability to analyze user behavior.

Request a demo now and discover hands-on the benefits of senhasegura to limit the damage caused by insider threats.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Segura®
Segura® strive to ensure the sovereignty of companies over actions and privileged information. To this end, we work against data theft through traceability of administrator actions on networks, servers, databases and a multitude of devices. In addition, we pursue compliance with auditing requirements and the most demanding standards, including PCI DSS, Sarbanes-Oxley, ISO 27001 and HIPAA.

World Consumer Rights Day: Protecting consumers’ rights online

On March 15, 1962, President John F. Kennedy called on Congress to enact legislation to protect consumer rights – he was the first world leader to formally address the issue. Since 1983 this date has been marked as World Consumer Rights Day. The consumer movement uses this day every year to mobilize action on important issues and campaigns, including digital marketplaces, plastic pollution, and fair mobile phone services. Simply put, celebrating World Consumer Rights Day is an opportunity to demand that the rights of all consumers be respected and protected, and to protest against market abuse and social injustice that undermine those rights.

As the world becomes increasingly digitalized and consumption moves online – with 61% of consumers worldwide shopping online, more often now than they were before the pandemic – the digital aspect of consumer rights is more important than ever. Tech development, from IoT devices to financial technology (FinTech) to new online marketplaces, has a huge impact on consumer rights. As Consumers International notes, digital has become the default way of working for the majority of businesses – and with it comes consumer rights issues, including data protection, privacy, and online scams.

When consumers are online, businesses collect and store data about their purchases and behaviors. This can be convenient, with companies recommending what you’re interested in, sharing discounts, and even reminding you when you need to buy a birthday present. Unfortunately, the downsides can be far more troubling. Organizations may have access to information that helps to influence your decisions, removing some of your free choice without you even realizing. Also, big caches of data – including personally identifiable information (PII) – are attractive to cybercriminals. If breached by hackers, the information stored by online outlets can put you at risk of identity theft, phishing attacks, and scams. This may to contribute to the fact that less than one-third of global consumers (29%) feel very secure when shopping online.

Knowing who has access to information about you is an important step in protecting your data. Mark this World Consumer Rights Day by checking where your information is stored – and what you can do to limit it. According to ESET’s new research into data security and financial technology, consumers around the world are not always aware of how their data is treated. Of those consumers who use free FinTech apps around the world, 50% do not know if these apps sell their data. Seemingly, consumers in different countries have vastly different attitudes to this. Brazil and the UK have the lowest levels of awareness, with over 60% of consumers in both countries not knowing if FinTech apps are selling their data (Brazil 62%, UK 63%). In contrast, far more FinTech users in the US are in the know about how free apps use their data – less than a third (31%) do not know if their data is being sold.

Knowing who has access to your data and how it is being used is a key aspect of protecting your consumer rights online. In President Kennedy’s words, consumers – both online and in store – deserve “the right to safety, the right to be informed, the right to choose, and the right to be heard.” To find out more about World Consumer Rights Day, visit the Consumers International website. For more information on ESET, how to keep your data safe online, and our global FinTech research, click here.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About ESET
For 30 years, ESET® has been developing industry-leading IT security software and services for businesses and consumers worldwide. With solutions ranging from endpoint security to encryption and two-factor authentication, ESET’s high-performing, easy-to-use products give individuals and businesses the peace of mind to enjoy the full potential of their technology. ESET unobtrusively protects and monitors 24/7, updating defenses in real time to keep users safe and businesses running without interruption. Evolving threats require an evolving IT security company. Backed by R&D facilities worldwide, ESET became the first IT security company to earn 100 Virus Bulletin VB100 awards, identifying every single “in-the-wild” malware without interruption since 2003.