IBM logo

IBM aims for security risk management

IBM has announced new security services and products for enterprises

Written by Phil Muncaster

IBM today launched a raft of new technologies and services designed to help senior IT decision makers support the business by managing risk more effectively. The firm also reaffirmed its commitment to security by earmarking $1.5 billion for security-related efforts in 2008.

The new releases include data loss prevention and endpoint data protection services, as well as database activity and vulnerability monitoring and alerting technology, according to the firm.

The IT giant also announced web application security and compliance management software from its recent acquisition of Watchfire. IBM Rational AppScan and Rational Policy Tester enable firms to identify vulnerabilities and thus reduce the risk of data breaches, the firm said.

New security features were announced for the System z mainframe, including capabilities on the z/OS to restrict access to sensitive information like customer credit card details, and a Tivoli zSecure suite which automates security administration and auditing processes.

As part of the announcements, IBM also launched a new program designed to enable full compliance with all 12 requirements of the Payment Card Industry Data Security Standard (PCI DSS).

The strategy is IBM's response to the increasing pressures being placed on CIOs and CISOs to strategically manage their IT assets and inherent risks, in order to support business operations, explained IBM's security strategy manager Eric McNeil.

"We're aiming to fix the IT security model, which is fundamentally broken – we have to move away from securing this or that to securing the business processes," he added. "It has to be managed centrally across all domains: people, technology, information, applications and facilities."

Another central element to IBM's strategy is its Security Risk Management (SRM) initiative, which includes capabilities such as risk quantification and event risk calculation, he added.

"This is meant to be the 'steering wheel' that allows business executives to quantify risk in business terms and help them to optimise investment in security technologies," said McNeil.

Andrew Kellett of analyst Butler Group said that IBM is trying to draw together all its disparate technology products and services – many made from the recent acquisitions of ISS, Watchfire and others – in a coherent and marketable strategy.

"IBM had to come out with something because it had the components but it all looked a bit fragmented and others like CA and Symantec had already gone down the road of repositioning and representing [their offerings]," he argued. " Security vendors are now positioning themselves as solutions providers working alongside your business requirements."

Tags:

reader comments

related articles

New CA tools help businesses manage risk

New offerings could improve firms' compliance efforts 12 Oct 2007

 

Managing IT risk in unchartered waters of "Security 3.0"

Firms need to think about reducing spending, not throwing money at the problem, advises analyst Gartner 20 Sep 2007

IT security teams must cooperate to defeat threats

Symantec report highlights the convergence of attack methods 17 Sep 2007

Integration the key to data leak prevention

Firms need to shore up defences, but many products are still immature, argue security experts 03 Sep 2007

Imprivata ups transaction security

Vendor says ProveID feature will help users with compliance requirements 21 Aug 2007

IBM targets mid-market with AppScan tools

Security software detects web application vulnerabilities 02 Oct 2008

Security chiefs urged to embrace risk

Chief information officers should be more strategic when shoring up enterprise systems 03 Apr 2008

IBM Bluehouse arrives in beta

Firm announces a mixture of new web-based offerings 06 Oct 2008

related whitepapers

today's top stories

Solid as a rock - business continuity in a global manufacturer

From power supply problems in Nigeria to email availability in Stockport, PZ Cussons is prepared for anything 02 Dec 2008

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

IT staff desperate to keep their jobs

Most would work longer hours for less pay 02 Dec 2008

VMware View 3 enhances virtual desktops

Virtual clients now take up less storage space and can be 'checked out' to a laptop 02 Dec 2008

Technology and privacy

Watch part one of a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 01 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Parcel being packedFeatures

Case study: eSpares and business continuity

Online electricals business has managed to decrease its downtime 02 Dec 2008

Royal Blackburn HospitalFeatures

NHS trust recovers from server overdose

Virtualisation technology breathed new life into East Lancashire's cost-intensive system 02 Dec 2008

Advertisement

Primary Navigation