Preprečevanje ima prednost pred odzivom

Izvorno vozlišče: 1577401

While few cybersecurity professionals are putting all of their eggs into the intrusion prevention basket, one-third are favoring intrusion prevention over incident response (IR) at a proportion of 80/20 or more.

That's according to a May 2022 Dark Reading report, titled "Breaches Prompt Changes to Enterprise IR Plans and Processes." The 2022 Incident Response Survey polled 188 IT and cybersecurity professionals about their IR capabilities.

A total of 34% of respondents said they prefer to put 80% (21% of respondents), 90% (10% of respondents), or 100% (3% of respondents) of their resources into intrusion prevention over IR. Another 34% also prioritized prevention, with 21% preferring a 70/30 split and 13% dropping to 60/40. Less than a quarter (24% in total) weighted the two approaches evenly or favored IR over prevention, with 13% of that total backing an even split of resources. Eight percent didn't have an opinion.

The numbers from 2021 were very similar, with only a slight shift toward a more even distribution of resources. For example, the 80/20 split was only 18% in 2021, whereas 60/40 and 50/50 both sat three points higher at 16% apiece versus 2022's 13%.

These results back up the overall perception that organizations still put more effort into preventing intrusions than remediating them. For example, a 2021 survey by Wakefield Research, on behalf of Red Canary, Kroll, and VMware, showed that 36% of companies didn't have a detailed incident response plan na mestu. in last year's Strategic Security Survey by Dark Reading revealed high levels of interest in perimeter defense techniques, with 72% saying that intrusion prevention and detection measures were effective or highly effective.

Pritisk iz Ameriška vlada in kibernetske zavarovalnice vendarle lahko zaniha nihalo proti IR. Dejansko je marca 2022 ameriški predsednik Joe Biden podpisal zakon o Zakon o poročanju o kibernetskih incidentih, ki zahteva, da industrije kritične infrastrukture hitro prijavite vdore and act to remediate them. While that law will apply only to the 16 sectors considered critical, it points the way for other organizations looking to izdelajte načrt IR.

Za več, prenesite celotno poročilo.

Spremljajte najnovejše grožnje kibernetske varnosti, na novo odkrite ranljivosti, informacije o kršitvah podatkov in nastajajoče trende. Dostavljeno dnevno ali tedensko neposredno v vaš e-poštni nabiralnik.

Časovni žig:

Več od Temno branje