Upcoming Events

Where the Cloud Touches Down: Simplifying Data Center Infrastructure Management

Thursday, July 25, 2013
10:00 AM PT/1:00 PM ET

In most data centers, DCIM rests on a shaky foundation of manual record keeping and scattered documentation. OpManager replaces data center documentation with a single repository for data, QRCodes for asset tracking, accurate 3D mapping of asset locations, and a configuration management database (CMDB). In this webcast, sponsored by ManageEngine, you will see how a real-world datacenter mapping stored in racktables gets imported into OpManager, which then provides a 3D visualization of where assets actually are. You'll also see how the QR Code generator helps you make the link between real assets and the monitoring world, and how the layered CMDB provides a single point of view for all your configuration data.

Register Now!

A Network Computing Webinar:
SDN First Steps

Thursday, August 8, 2013
11:00 AM PT / 2:00 PM ET

This webinar will help attendees understand the overall concept of SDN and its benefits, describe the different conceptual approaches to SDN, and examine the various technologies, both proprietary and open source, that are emerging. It will also help users decide whether SDN makes sense in their environment, and outline the first steps IT can take for testing SDN technologies.

Register Now!

More Events »

Subscribe to Newsletter

  • Keep up with all of the latest news and analysis on the fast-moving IT industry with Network Computing newsletters.
Sign Up

IBM Adds Vulnerability Manager To SIEM Platform

IBM has expanded its security information and event management (SIEM) platform with new software designed to help organizations find and prioritize network security risks.

QRadar Vulnerability Manager (QVM) is integrated into IBM's QRadar Security Intelligence Platform and draws analysis from a range of sources, including IBM's X-Force research team and BugTraq.

More Insights

Webcasts

More >>

White Papers

More >>

Reports

More >>

According to IBM, vulnerability information is aggregated into a single view, and security teams can see the results from multiple network, endpoint, database or application scanners alongside the latest X-Force Threat Intelligence alerts and incident reports from the National Vulnerability Database.

QRadar Vulnerability Manager also includes its own embedded, PCI-certified scanner that can be scheduled to run or triggered based on network events.

Alea Fairchild, director of The Constantia Institute, said the integration of QVM with IBM's SIEM gives the company an edge. The Constantia Institute is an independent technology think tank based in Belgium.

"By adding intelligence to the vulnerability management process, it helps in the resource allocation process of what has to be taken care of first, which still has human components to it," Fairchild said.

[A recent study found that most enterprises run outdated, vulnerable versions of Java. Get the details in "Java Vulnerabilities Pervasive In The Enterprise."]

Vulnerability scanners by and large are all pretty good and pretty much a commodity, said Javvad Malik, senior analyst for the enterprise security practice at 451 Research.

"You can take any scanner from the market both commercial and non-commercial, point it and click and they will give you a similar set of results listing out vulnerabilities," he said. "For large organizations, these can be enormously long lists. What we have seen in the market is the need for 'context' to be added to vulnerabilities -- i.e., how important is this vulnerability, or does it really impact systems. So the approach that IBM has taken is very much in line with how we see the vulnerability management space evolving."

"The fact that it is integrated with QRadar gives it a lot of contextual data [and] it can feed off many data streams which enriches the data," he added. "So it will make other vendors take notice. When you look at the broader offering as a whole, it makes an attractive proposition to companies and could lead to IBM displacing other vendors by providing a single unified offering."

Along with QVM, IBM also introduced IBM Security Network Protection XGS 5100, an IPS product that also is integrated with the QRadar platform. XGS 5100 works by inspecting SSL traffic to detect threats masked in encrypted traffic.


Related Reading


Network Computing encourages readers to engage in spirited, healthy debate, including taking us to task. However, Network Computing moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. Network Computing further reserves the right to disable the profile of any commenter participating in said activities.

 
Disqus Tips To upload an avatar photo, first complete your Disqus profile. | Please read our commenting policy.
 
Vendor Comparisons
Network Computing’s Vendor Comparisons provide extensive details on products and services, including downloadable feature matrices. Our categories include:

Research and Reports

August 2013
Network Computing: August 2013



TechWeb Careers