Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Why network-based security doesn’t cut it anymore

One venture capitalist’s argument for investing heavily in client-side security
By Bob Brown , Network World , 06/14/2007

Ted Schlein has been in the thick of the IT security industry for more than 20 years. He started off building Symantec’s original antivirus software and went on to run all the enterprise product lines there. For the past 10-plus years, he has been investing in security companies for venture capital firm Kleiner Perkins Caufield & Byers, where his first investment was in ISS (now part of IBM). One place Schlein has been putting his money of late is into companies that secure networks at the client. He spoke this week with Online Executive News Editor Bob Brown.

Why the focus on client-side security?

The “aha” to me was about five years ago when we were doing all this network-based security prevention -- [intrusion-detection systems], antivirus gateways, etc. -- and the number of threats just kept going up, the number of exploits that were successful kept going up, and the number of dollars lost kept going up. To me that’s complete failure.

The report card I give the security world over the last 20 years is that it has done some things to slow things down but has really not prevented anything. It really got me thinking about what would I do and why. It’s no secret that networks are more porous, people come in and out of networks all the time, it’s very different than when we did the original antivirus stuff or even with the first IDSes or even when Check Point got started and you built the wall around your kingdom, which you can’t do anymore.

So the weakest points end up being the end points, and you have to start securing the actual assets themselves. Trying to block the roads won’t ever work. My focus really shifted about five years ago to: “How do we protect the actual assets?”

Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask to prospective vendors to get the right endpoint solution.

Download the white paper.

Unauthorized applications: Taking back control

Employees installing and using unauthorized applications like IM, VoIP, games and peer-to-peer file-sharing applications cause many businesses serious concern. How do you control these applications?

Download the white paper.

Comments (10)
Login
Forgot your account info?

Buyers of bulk lot network computer equipment.By Holly Wild on July 3, 2007, 11:32 amsome other companies that buy bulk computer, network and electroni gear are: http://www.goldensurplus.com , http://www.auctionbidmart.com, http://www.selltestequipment.com....

Reply | Read entire comment

Buy cisco and never get fired?By Schratboy on June 19, 2007, 12:37 pmThe end-to-end solution mantra is so much crap. Sure, you can mortgage the house and sell the children and fork-lift Cisco into your network and be reasonably assured...

Reply | Read entire comment

Network World wrote about this beforeBy Greg on June 19, 2007, 8:55 am This radical idea was written about in 2002. Network World covered John Taylor when he proposed the same ideas. http://www.networkworld.com/research/2002/0930featside.html

Reply | Read entire comment

Client Security- The Next Pipe DreamBy Anonymous on June 18, 2007, 12:43 pmMoving outward from the network to try to secure every client is a lost cause fraught with head fakes, traps and user antagonism. It makes more sense to first move...

Reply | Read entire comment

Client side security?By Schratboy on June 18, 2007, 10:27 amWhat a revelation: clients are where the problems are? Every user represents a multi-pronged threat whether inside or outside the network. Administrators have too...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed
Save The Date!
What They Are Saying

14 years ago, I dealt with somebody like Childs. I was the new manager and the veteran techie knew it...- Anonymous

Join the Discussion