{"id":32903,"date":"2019-08-15T08:16:17","date_gmt":"2019-08-15T07:16:17","guid":{"rendered":"https:\/\/www.intelligentcio.com\/eu\/?p=32903"},"modified":"2019-08-15T08:20:40","modified_gmt":"2019-08-15T07:20:40","slug":"60-of-security-professionals-spend-over-three-hours-per-day-validating-false-positives","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/eu\/2019\/08\/15\/60-of-security-professionals-spend-over-three-hours-per-day-validating-false-positives\/","title":{"rendered":"edgescan research reveals time spent validating false positives"},"content":{"rendered":"\n<p>edgescan, a leading provider of fullstack vulnerability management, has discovered that more than 60% of security professionals estimate their security function spends over three hours per day validating false positives.<strong> <\/strong><\/p>\n\n\n\n<p>The recent survey of IT security experts also revealed that nearly 30% of respondents are in fact spending more than six hours per day on that task. <\/p>\n\n\n\n<p>The majority of respondents indicated validating false positives as the part of their job they enjoyed the least (30%) and admitted that the time spent on that task is  disproportionate and should be reduced. <\/p>\n\n\n\n<p>Furthermore, 44% of respondents also recalled\nleaving an important life event to deal with a security alert which \u2013 when\nverified \u2013 was determined to be a false positive. <\/p>\n\n\n\n<p>This seems to be at the expense of visibility \u2013\nas many as 64% of respondents admitted that their organisation does not have a\ncomplete picture of all its web applications and endpoints. <\/p>\n\n\n\n<p>\u201cCybersecurity is about protecting a company\u2019s digital assets in an efficient and cost-effective manner,\u201d says Eoin Keary, CEO and co-founder of edgescan. <\/p>\n\n\n\n<p>\u201cWith IT security functions typically understaffed \u2013 and with this, many organisations acknowledging that they lack visibility on their endpoints and web applications \u2013 having cybersecurity professionals work on mundane tasks such as validating false positives for such amounts of time everyday isn\u2019t optimal. Rather, it can be a counterproductive choice.\u201d<\/p>\n\n\n\n<p>He added: \u201cSince it\u2019s impossible to protect what we didn\u2019t know was there, the problem of visibility needs to be addressed as a priority, either by increasing the accuracy of automation tools, or by outsourcing certain tasks to a specialised SOC. <\/p>\n\n\n\n<p>\u201cThis would free up the security staff\u2019s time to perform other functions, such as threat intelligence and analysis, rather than have them validating false positives, and would also allow them to place more focus on asset discovery and securing vulnerable endpoints.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>edgescan, a leading provider of fullstack vulnerability management, has discovered that more than 60% of security professionals estimate their security function spends over three hours per day validating false positives. The recent survey of IT security experts also revealed that nearly 30% of respondents are in fact spending more than six hours per day on [&hellip;]<\/p>\n","protected":false},"author":28,"featured_media":32908,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[57,6617,93],"tags":[13139,13140,13141,54,4209,10849],"class_list":["post-32903","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-research","category-top-stories","tag-ceo-and-co-founder-of-edgescan","tag-edgescan","tag-eoin-keary","tag-security","tag-soc","tag-vulnerability-management"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/32903","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/users\/28"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/comments?post=32903"}],"version-history":[{"count":2,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/32903\/revisions"}],"predecessor-version":[{"id":32907,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/32903\/revisions\/32907"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media\/32908"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media?parent=32903"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/categories?post=32903"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/tags?post=32903"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}