« Where does Tipping Point fit in the post-3Com ProCurve? | Main | Cloud computing officially enters pop culture »

November 16, 2009

80% of security products fail

Larry Walsh over on the Secure Channel blog has a post up on a report coming out of ICSA Labs on its 20th anniversary.  According to the report over the past 20 years about 80% of the products they have tested failed to do what they say they do the first time they tested! Even more startling, 40% were themselves security Swiss cheese and inherently unsecure.

Now, you have to take all of this with a grain of salt because of where the report is coming from. Obviously ICSA admittedly has a vested interest in seeing more products get tested and users demanding that products are tested prior to buying.  But from my experience with far too many security tools, without some expert implementation getting this stuff to work as intended is worse then putting together one of those do it yourself pieces of furniture that you get from Staples or Office Depot.  As an industry we have to do better to making our solutions easier to install, easier to use and easier to see the value.

Reblog this post [with Zemanta]

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d83451e4d369e2012875a9440a970c

Listed below are links to weblogs that reference 80% of security products fail:

Comments

My Photo

Subscribe to my blog

Enter your email address:

Delivered by FeedBurner

Lijit Search

Blog Networks

Creative Commons License
This work is licensed under a Creative Commons Attribution-Share Alike 2.5 License.

Search

Lijit Search

Attend a Computer Forensics Boot Camp to better your skills and become a better worker
Blog powered by TypePad
Member since 10/2005