Monday, November 12, 2007

Assessing, managing enterprise risk

Network World

Network/Systems Management




Network World's Network/Systems Management Newsletter, 11/12/07

Assessing, managing enterprise risk

By Denise Dubie

Managing enterprise risk requires IT executives to perpetually perform a juggling act of sorts.

IT executives must provide technologies and services to enable the business to thrive and grow, but at the same time they need to maintain tight controls on resources, access rights and the environment to prevent the risk of technology to the business from outweighing the reward.

"Organizations have always had to manage risk. Business survival requires an organization to successfully manage risk," reads a Forrester Report released last week entitled "Demystifying Enterprise Risk Management." "The challenge is that there are multiple definitions, approaches to and reporting of risk that are managed in silos across the organization. Risk managers must understand the varying views of risk across the organization and decide on a common framework of risk that the entire organization can work within."

Find out why WAN Optimization is Right for You

Discover how you can realize a three to four month return on investment with WAN optimization tools in this informative Webcast. Learn how all WAN optimization products are not the same and how to find the right box for your organization.

To find out more click here.

That means IT is charged with making certain individuals are equipped to do their jobs without putting the company or its intellectual property in harm's way. For instance, risk management includes ensuring unauthorized individuals are not accessing certain data or working on systems not within their privileges, but it reaches much further than that.

According to Forrester Research, companies must first define risk and apply the comprehensive definition of risk across the entire organization. The research firm narrows it down to: "Risk is the effect of uncertainty on organizational objectives" and "Risk management is the coordinated activities to direct and control an organization to realize the opportunities while mitigating the negative consequences of events." Today several vendors are working to help customers ease the burden of first identifying and then managing risk with technologies falling into the broad governance, risk and compliance (GRC) market

For instance, IBM earlier this year detailed its plans to address customer pain points around GRC and Symantec followed suit by offering IT-risk assessment services this past summer. And more start-ups are emerging to tackle this problem as well: PricewaterhouseCoopers' spinoff Brabeion Software updated its software this year, and newcomer Securityworks this week launched itself as a enterprise risk management software provider, after offering services in that market for the past few years

For its part, Securityworks this week released VisibleSecurity 3.0, which includes updated features to address risk and compliance management in larger enterprise environments. The Dallas company, headed up by company President Bryan Fish, offers the software to help companies collect data from distributed systems and create a scorecard of sorts for risk. Customers use a Web-based interface to assess the information collected and apply centralized controls to the distributed systems.

"Companies need to stop working silos and address risk strategically rather than tactically in pieces," Fish says. "Our software enables them to put a centralized control framework in place and have one set of strong access controls."

Editor's note: Starting the week of Nov. 19, you will notice a number of enhancements to Network World newsletters that will provide you with more resources and more news links relevant to the newsletter's subject. The Network/Systems Management newsletter written by Network World Senior Editor Denise Dubie will be merged with the Network/Systems News Alert and will be named the Network/Systems Alert. You'll get Denise's analysis of the network/systems management market, which you will be able to read in full at NetworkWorld.com, plus links to the day's network/systems management news and other relevant resources. This Alert will be mailed on Mondays and Wednesdays. We hope you will enjoy the enhancements and we thank you for reading Network World newsletters.


  What do you think?
Post a comment on this newsletter

MOST-READ STORIES:
1. MIT's amazing, foldable, stackable car
2. 5 cool wireless research projects
3. Networking's 50 greatest arguments
4. IPv6: Will matter to enterprises in five years
5. Antispam group targets transactions
6. 10 career killers to avoid
7. Major Russian crime hub suddenly dies
8. 10 questions about Microsoft Office 2007
9. Sprint, Clearwire kill joint WiMAX project
10. Hackers target Alicia Keys MySpace page

FEATURED BUYER'S GUIDE:
Unified Threat Management


Contact the author:

Senior Editor Denise Dubie covers the technologies, products and services that address network, systems, application and IT service management for Network World. E-mail Denise.



ARCHIVE

Archive of the Network/Systems Management Newsletter.


BONUS FEATURE

90% of IT Managers are leaving their company at risk for a DNS ATTACK. Get the tools and resources you need to keep your DNS healthy and secure. Run a DNSreport on your domain today - 56 critical tests run in 8 seconds.

Visit www.dnsreport.com to learn more. (apply coupon NWW2007NLA for a 25% membership discount)


PRINT SUBSCRIPTIONS AVAILABLE
You've got the technology snapshot of your choice delivered to your inbox each day. Extend your knowledge with a print subscription to the Network World newsweekly, Apply here today.

International subscribers, click here.


SUBSCRIPTION SERVICES

To subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here.

This message was sent to: networking.world@gmail.com. Please use this address when modifying your subscription.


Advertising information: Write to Associate Publisher Online Susan Cardoza

Network World, Inc., 118 Turnpike Road, Southborough, MA 01772

Copyright Network World, Inc., 2007

No comments:

Post a Comment