Survey Looks At Gaps In Web Security

Purewire Inc., a Web security SaaS vendor, recently announced end-user survey results illustrating severe vulnerabilities to corporate networks due to malware-infected Web applications, remote workers and shrinking IT budgets.

The full results of the survey are available from Purewire at http://www.purewire.com/lp/osterman.

The survey, prepared by Osterman Research, includes key findings such as:

  • IT security professionals rate the Web as the number one entry point for malware into their networks.
  • Even so, nearly 40 percent of companies cannot successfully prevent users from installing Web applications, leaving them vulnerable to all sorts of attacks.
  • Web attacks are a clear and present danger: 20 percent of survey respondents work remotely at least part of the time. Of those remote workers infected with malware, nearly half of the infections came from the Web.
  • A user visiting infected Web sites is the most significant single threat vector.
  • More than 90 percent of those surveyed report that they will not see a budget increase for 2009, despite the increase in threats and vulnerabilities.
  • More than 70 percent of survey respondents use SaaS-based solutions for anti-virus and anti-spam, and 25 percent have implemented Web security as a service, indicating a clear shift toward SaaS-based security solutions.

“Current economic conditions underscore the need for organizations to reallocate budgets in a way to save money and still ensure their assets are safe,” said Mike Van Bruinisse, co-founder, president and chief operating officer at Purewire. “This survey shows significant gaps in overall network security, yet an overwhelming majority of IT security professionals report that they will not see a budget increase for 2009. We believe SaaS offerings address this concern by keeping threats out of the network, providing instant access to security updates, having low maintenance requirements, and offering predictable pricing with cost savings of up to 40 percent. That is important for businesses in today’s economy.”

Osterman Research conducted the survey of Web and messaging security professionals, eliciting 139 responses. The sample represents a strong cross-section of companies ranging in sizes and vertical markets, with an average of more than 15,000 employees accessing the Internet.

“URL filtering is an important component of any Web security platform, but with a new domain name created every second, IT security professionals should look beyond traditional filters,” said Mike Osterman, president of Osterman Research. “Malware-infected Web applications pose a serious threat to the corporate network since streaming applications bypass anti-virus engines and URL filters cannot scan and classify browser-based objects. Additionally, SaaS-based Web security solutions offer double the benefits of being highly effective against the latest generation of Web threats, while offering low up-front costs and predictable pricing.”

Featured

  • Securing the Future

    Two security experts sit down with Security Today’s editor in chief Ralph C. Jensen to discuss what they see emerging and changing over the next several years along with how security stakeholders can harness these innovations into opportunities. Read Now

  • Collaboration Made Easy Using a Work Management Platform

    Effective collaboration between security operators, teams and other departments is critical to the smooth functioning of organizations. Yet, as organizations grow in complexity, it becomes more difficult for teams to coordinate with each other. This is compounded by staffing shortages, turnover and ineffective collaboration tools. Read Now

  • Creating a Safer World

    Managing and supporting locks and door hardware within a facility is a big responsibility. A building’s security needs to change over time as occupancy and use demands evolve, which can make it even more challenging. Read Now

  • Report: 78 Percent of CISOs Seeing Significant Impact from AI-Powered Cyber Threats

    Darktrace recently unveiled its 2025 State of AI Cybersecurity report. The findings reveal that 78% of Chief Information Security Officers (CISOs) surveyed say that AI-powered threats are having a significant impact on their organizations, a 5% increase1 from 2024. While an increasing number of CISOs report feeling a significant impact from AI threats, more than 60% now say that they are adequately prepared to defend against these threats, an increase of nearly 15% year-over-year. However, insufficient AI knowledge and skills and a shortage of personnel and talent continue to be listed as the two top inhibitors to a successful defense. Read Now

New Products

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.