Neil MacDonald

A Member of the Gartner Blog Network

Neil MacDonald header image 4

Windows 7 Ultimate… Sort of.

October 28th, 2009 · 1 Comment

In my previous post, I stated this:
One important note: Because many of the more popular security features such as BitLocker, BitLocker To Go, AppLocker, DirectAccess and so on require EA/SA, the cost of EA/SA must be factored into any cost-benefit analysis of migration. If you don’t already have EA/SA, this can be a significant expense.
Since [...]

[Read more →]

Tags: Endpoint Protection Platform · Microsoft Security

Windows 7 Launches With lots of Security Features

October 23rd, 2009 · 1 Comment

I haven’t posted in a while – I was preparing for and attending Gartner’s US Fall Symposium conference in Orlando which wrapped up yesterday. Coincidentally, yesterday was also the official launch of Windows 7.
As I talked about here, there are things that organizations can do today to improve the security of their endpoints that don’t [...]

[Read more →]

Tags: Endpoint Protection Platform · Microsoft Security

We Have a Quorum: Blacklists Aren’t Cutting it.

September 14th, 2009 · 7 Comments

Symantec recently announced the latest release of its consumer protection technology which includes a new malware technology code-named “Quorum”. Essentially the technology uses visibility (or lack thereof) of behavior of executable code across a community to aid in the determination if a given piece of code is “good” or “bad”. We are working on our [...]

[Read more →]

Tags: Beyond Anti-Virus · Endpoint Protection Platform · Next-generation Security Infrastructure

Security Thought for Thursday: DLP Should be a Process, not a Product

September 10th, 2009 · 2 Comments

When someone talks undertaking a “Data Loss Prevention” (DLP) initiative, they are usually talking about deploying a product from one of the DLP vendors such as McAfee, Symantec, EMC/RSA and so on. Much like I talked about in this post on application security, a product cannot solve what first and foremost is a process problem. [...]

[Read more →]

Tags: Information Security

Oops, I Spoke Too Soon.

June 25th, 2009 · No Comments

In my previous post, I talked about the need to encrypt all desktop and server direct attached storage for protection of the data over the lifecycle of the machine, including retirement. In this post, I made this statement in passing:
Most of us know by now that encryption of mobile laptops should be considered mandatory.

The same [...]

[Read more →]

Tags: Endpoint Protection Platform · Information Security

Security No-Brainer #6: Encryption Needs to be Extended to All PCs and Servers

June 24th, 2009 · 2 Comments

Most of us know by now that encryption of mobile laptops should be considered mandatory. However, encryption of the direct attached storage used in fixed desktops and servers hasn’t been a priority because of their relative lack of mobility.
However, this overlooks the significant issue of data leakage when devices are retired. This point was [...]

[Read more →]

Tags: Information Security · Next-generation Security Infrastructure

Should AV be Free?

June 23rd, 2009 · 5 Comments

I saw today on this website that Microsoft has released the beta offering of its free consumer-oriented antivirus/antispyware protection solution called Microsoft Security Essentials (MSE – previously code-named “Morro”). The offering is available to the first 75,000 visitors to the site starting today. Gartner’s full analysis and advice for clients will be available shortly, but [...]

[Read more →]

Tags: Beyond Anti-Virus · Endpoint Protection Platform · Microsoft Security

Stop Paying for Anti-Spyware

May 18th, 2009 · 1 Comment

I had a conversation with a client last week where their incumbent antivirus provider was trying to charge them separately for antispyware capabilities in addition to their antivirus solution.
Sigh. I thought we put this issue to rest years ago.
In 2005, I wrote ”How to Get Free Anti-spyware (or Antivirus) Protection” so I was a [...]

[Read more →]

Tags: Beyond Anti-Virus · Endpoint Protection Platform

Security No-Brainer #5: Security and Management Tools Need to Work Off of the Enterprise Network

May 11th, 2009 · No Comments

In my last post, I talked about several impending inflection points for information security.
One of them was:
More than half of our employees spend the majority of their working hours connected to networks we don’t own and don’t control (airports, hotels, home, wireless, 3G and so on)

This brings me to my fifth security no-brainer (for [...]

[Read more →]

Tags: Endpoint Protection Platform · Next-generation Security Infrastructure

Will Whitelisting Eliminate the need for AntiVirus?

March 31st, 2009 · 17 Comments

You know the saying “everything old is new again”? That’s exactly comes to mind when I listen to some of the hype around whitelisting and the use of a ‘positive model’ for information security.
The Application Control vendors would have you believe that application whitelisting is the latest (and only) answer to the increasing ineffectiveness of [...]

[Read more →]

Tags: Beyond Anti-Virus · Endpoint Protection Platform