{"id":13380,"date":"2016-11-28T07:06:26","date_gmt":"2016-11-28T07:06:26","guid":{"rendered":"http:\/\/www.intelligentcio.com\/me\/?p=13380"},"modified":"2016-11-28T07:06:26","modified_gmt":"2016-11-28T07:06:26","slug":"adaptive-trust-needed-to-secure-mobile-first-wireless-enterprise","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2016\/11\/28\/adaptive-trust-needed-to-secure-mobile-first-wireless-enterprise\/","title":{"rendered":"Adaptive trust needed to secure mobile-first wireless enterprise"},"content":{"rendered":"<p class=\"p1\"><span class=\"s1\">The first priority of defence used to be to secure the perimeter. But changes are shifting the old concept of a fixed boundary in mobile-first wireless enterprises at a particularly dangerous time, writes\u00a0<em>Gamal Emara, Country Manager \u2013 UAE at Aruba, a Hewlett Packard Enterprise company,<\/em><\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">A few years ago, organisations only needed to contend with lone hackers seeking no more than bragging rights for breaching a system. Now, the threat vectors range from global criminals seeking financial gain to nation-states trying to steal trade secrets or blackmail their victims.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">And the threats are escalating with attackers increasingly targeting the proliferating number of IoT devices that are coming online. Market researcher Gartner expects that some 6.4 billion \u201cthings\u201d will be connected to the IoT this year, up 30% from 2015. That rapid increase also has implications for enterprise security.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">Consider, for example, the much-publicised breach of a national retailer a few years back. The attackers gained entry through the systems of an HVAC contractor, which they compromised after an employee of the contractor opened a phishing email. Welcome to the enterprise world\u2019s new security nightmare reality: your perimeter now extends to everyone (and everything) who works for your company\u2019s third party contractors. If that doesn\u2019t wake you up like an ice cold shower, nothing will.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">Back in the era of fixed perimeters, it was relatively easy to identify what to trust and what not to trust. Anything inside the perimeter was OK; anything outside was treated with suspicion. But when people and devices are mobile, they move fluidly and freely across the perimeter. Instead of focusing on the perimeter, we have to focus on the user and the user\u2019s apps and devices &#8212; in context.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">Contextual understanding means assigning access policies according to the context in which specific users, apps\u00a0and devices access data resources. You\u2019ll also need to be prepared to address a myriad of new challenges. What kind of device is being used? What applications are on the device? Who is using the device? What time of day is it? From where is the access taking place?<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">Every one of us can appear quite different to our network depending on the context. For example, if you are a doctor in an operating room accessing medical records, you must be given instant, high priority access. But if you are that same doctor seeking medical data from the Wi-Fi network of a coffee shop down the street, your access privileges could be assigned a lower priority level.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">When trust is weighed and adapted to contextual factors, you have what we call <a href=\"http:\/\/media.ne.cision.com\/l\/hivrrflv\/hpe.to\/600786AHW\"><span class=\"s2\">Adaptive Trust<\/span><\/a>. We have implemented the principles of Adaptive Trust in <a href=\"http:\/\/media.ne.cision.com\/l\/hivrrflv\/hpe.to\/600486AOn\"><span class=\"s2\">ClearPass<\/span><\/a>, Aruba\u2019s policy manager and in <a href=\"http:\/\/media.ne.cision.com\/l\/hivrrflv\/hpe.to\/600086ASK\"><span class=\"s2\">ClearPass Exchange<\/span><\/a>, a central policy engine that enables layers of security thanks to its set of open APIs. A number of partners, including Palo Alto Networks, MobileIron, Intel and Microsoft are part of the ClearPass Exchange ecosystem.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">How does this approach work? Recently, one of our partners found one of its firewalls detecting suspicious activity within a network. The cause: an e-cigarette that had been plugged into a USB port for charging. It turned out the device, unbeknownst to its owner, contained malware. When it comes to potential IoT threats, that\u2019s just a hint of what\u2019s over the horizon. Some experts believe that a massive IoT breach is inevitable. However, using a new ClearPass capability called <a href=\"http:\/\/media.ne.cision.com\/l\/hivrrflv\/hpe.to\/600486As0\"><span class=\"s2\">OnConnect<\/span><\/a>, you can now secure IoT devices like sensors that, unlike typical intelligent network devices, do not run 802.1x authentication protocols.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">There is a very different perimeter out there. Don\u2019t sit back and wait for the next breach. Get to know that new perimeter &#8212; and adapt your trust accordingly.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The first priority of defence used to be to secure the perimeter. But changes are shifting the old concept of a fixed boundary in mobile-first wireless enterprises at a particularly dangerous time, writes\u00a0Gamal Emara, Country Manager \u2013 UAE at Aruba, a Hewlett Packard Enterprise company, A few years ago, organisations only needed to contend with [&hellip;]<\/p>\n","protected":false},"author":20,"featured_media":13385,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[6,106],"tags":[114,1354,284,285,1115],"class_list":["post-13380","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-insights","category-mobile","tag-aruba","tag-hpe","tag-iot","tag-mobile","tag-mobile-devices"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/13380","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/20"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=13380"}],"version-history":[{"count":0,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/13380\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/13385"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=13380"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=13380"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=13380"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}