Showing posts with label IT security. Show all posts
Showing posts with label IT security. Show all posts

How Healthcare IT will Migrate to Cloud Services

According to the findings from a global market study, the healthcare sector has a highly complex IT environment that's supporting a very diversified professional user population (i.e., clinicians) -- along with their patients in life-critical situations. The industry is currently facing growing economic and regulatory pressures that make its IT infrastructure primed for change.

Therefore, all organizations will likely consider the potential benefits of migrating to cloud computing. Improvement in the quality of healthcare services is a key driver for managed cloud service adoption.

Billions of dollars of federal incentives are provided for the delivery of quality healthcare services, and expanding the use of electronic health record (EHRs) systems -- as well as providing the basis for the exchange of information and data across and between the providers. These EHR systems are expected to be used extensively by 2014.

Another significant opportunity is the consumer-oriented cloud application -- offering the potential of improving healthcare communications and enabling patients to manage their own medical records. The cloud platform fits well with new business models, which often require uninterrupted access from multiple providers to a single patient, such as a Patient Centered Medical Home (PCMH) model or Accountable Care Organization (ACO).

Cost Reduction Potential Across the Ecosystem

Reducing costs in the healthcare industry ecosystem is a key motivation for cloud service adoption. This is true for all healthcare organizations, irrespective of their size and area of specialization. In making future IT investment decisions, health organizations will likely measure the return on investment closely. For many new Health Information Exchange (HIE) models, the infrastructure is already in place.

In today’s healthcare system, access to good facilities often depends on the physical location. As more health data moves into the cloud and telehealth technologies become popular, everyone will be able to access health information in real-time from anywhere. The result will be better access to healthcare and relevant data, especially in the remote areas. However, risks around data privacy, security and safety, and state specific policy rules are among the top concerns raised for the adoption of cloud computing.

As a result, these issues currently are the greatest barriers for embracing cloud computing. However, according to the MarketsandMarkets assessment, the data security issue has the potential to increase cloud service adoption. By centralizing and standardizing handling of patient data across the healthcare ecosystem, the cloud could enable stronger security and authentication measures to be imposed by SaaS (software as a service) providers, thereby actually improving protection and integrity of data.

According to MarketsandMarkets latest research, globally 32 percent of healthcare facilities are already using some form of cloud application. Moreover, close to 75 percent of the organizations not using any cloud applications are already considering adopting them in the next three to five years.

In summary, the top priorities for the healthcare industry are:
  • Improvement in the quality of healthcare services.
  • Reduction of costs.
  • Increasing access to the healthcare systems.
  • Data privacy and security.
You have read this article cost reduction / government / healthcare / IT infrastructure / IT security / medical / privacy / saas with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2011/07/how-healthcare-it-will-migrate-to-cloud.html. Thanks!

Public and Private Clouds for the Enterprise

Telecommunication service providers will likely consume their own cloud services. After all, every organization can gain something from the proven benefits of infrastructure and application out-tasking. However, their primary role will be to implement and deliver the services that their end-customers will seek from public, virtual private, and hybrid clouds.

Service providers have the opportunity to extend their current offerings, which may already include hosting, communications, media, and software application services. Moreover, cloud offerings enable service providers to extend their reach beyond their traditional areas of operation.

That said, service providers must be prepared to address customer concerns ranging from policy compliance, to end-to-end security, to quality of service management, and to technical customization. They must be able to deliver a flexible range of functionality, service levels, and payment models.

Enterprise Cloud Use-Case Scenario
  • Many enterprise-focused service providers (SPs) have an opportunity to create higher-value, differentiated service offerings. They have unique capabilities they can leverage, including customer relationships, physical assets, and extensive operations experience.
  • At the same time, over-the-top services (such as Skype VoIP) threaten traditional SP revenue streams (e.g., wireline and mobile voice services). So, SPs have an incentive to evolve their value-add capabilities.

Role for Cloud Technologies
  • Cloud is unlocking huge growth potential through new service offerings (e.g., infrastructure as a service, collaboration as a service).
  • SPs offering cloud services have several avenues of differentiation in terms of deployment models (e.g., public cloud, virtual private cloud, hybrid cloud) and service types (e.g., infrastructure, collaboration).
  • A cloud-ready architecture can also reduce an SP’s overall cost of delivery through more efficient and sustainable infrastructure platforms.

Application Considerations
  • As table-stakes, SPs offering cloud services must ensure security and isolation of customer data in a multi-tenant environment. They must also offer a comprehensive suite of basic services (e.g., voice, collaboration).
  • Initial customer acquisition will be driven by distinctive solutions with differentiated services and end-to-end service level agreements (SLAs).
  • Over the long term, SPs must be able to deliver cost-effective services with viable margins.

While large enterprises also see tangible benefits in using public clouds, we expect private and hybrid cloud models to be very common. Large enterprises may use public clouds for burst or peak capacity and for select services that are difficult to scale themselves.

However, these organizations often require a higher degree of control over their data, applications, and systems than current public clouds allow. At scale, a private cloud offers the efficiency and agility of a public cloud -- without the loss of control.

Still, the IT services that a pure private cloud can offer are often limited to what internal IT can develop or deploy. This is where managed cloud service providers can add value.
You have read this article Enterprise / hybrid cloud / IT security / managed cloud services / public cloud / virtualization with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2011/02/public-and-private-clouds-for-enterprise.html. Thanks!

Managed Security Services Gaining Adoption


Enterprise leaders say that it's becoming difficult to find the highly qualified IT and network security talent they need that's affordable, and so they look to service providers for a solution. According to the latest market study by Forrester Research, demand has been growing.

That said, Forrester believes that using a managed security services provider (MSSP) is more than just a lower-cost alternative to doing the same work in-house. MSSPs are not just managing devices, they also provide insightful analysis that can help with business decisions.

CIOs and other business technology leaders used to resist out-tasking their IT and network security requirements. The talent scarcity issue has helped to change that mindset.

Now, one in four out-task their email filtering, and another 12 percent are very interested in doing so in the next 12 months. Another 13 percent already out-task their vulnerability management and an additional 19 percent say they are very interested in doing so within the next 12 months.

CIOs Budgeting for Managed Security
Although security-related spending didn't grow during most of 2009, Forrester estimates that the managed services market actually grew by approximately 8 percent.

Managed security services (MSS) has evolved considerably. Service offerings exist in various forms -- from pure system management to more sophisticated log analysis using a number of delivery mechanisms, from software-as-a-service (SaaS) and cloud services to on-premises device monitoring and management.

According to Forrester's assessment, while many MSSPs have started to respond to the human resource challenge by offering consulting services, not all providers are equally capable. However, CIOs should expect more MSSPs to further invest in qualified professional services capabilities to provide appropriate integration and consulting guidance.

Managing Security within the Cloud
Forrester said they've received inquiries about providers offering cloud services -- such as distributed denial of service (DDoS) protection and clean-pipe services. Broadband network service providers that own the access circuit have an inherent advantage, because they typically detect and prevent potential attacks sooner than others.

Again, lower cost was the primary driver for moving to a managed services provider, but now cost only ranks fourth in decision criteria. Today there are a number of other incentives to use MSSP services. They include improving the quality of protection; gaining 24x7 support; getting better skill sets and competencies; a reduction is the cost of protection; and decreasing complexity.

Internal security managers are now expected to provide value-added services in support of business objectives -- such as enhancing privacy, achieving compliance, and protecting intellectual property. Therefore, they are demanding additional services from MSSPs, which in return are responding by broadening their traditional service portfolio.

In summary, Forrester offers a key procurement recommendation. They suggest selecting a provider that excels in the specific area you're looking to out-task. They believe that it's extremely important to assess organization culture. It's considered the most important factor that determines whether a relationship is going to succeed. So, start the process by talking to some of the provider's customer references.
You have read this article adoption / complexity / cost reduction / human capital development / IT security / managed cloud services / saas with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2010/04/managed-security-services-gaining.html. Thanks!

In-the-Cloud Approach to Cyber Security


Security breaches or other unexpected interruptions can happen anytime to anyone -- whether you are a large enterprise or a small business. Fully maintaining communication network security is a demanding responsibility -- and typically not the best use of your limited IT resources, that would be better applied to delivering incremental new business technology benefits to your organization.

Fortunately, there are alternatives to a do-it-yourself comprehensive security solution. Skilled managed service providers continue to enhance their network security offerings.

AT&T announced the availability of Security Event and Threat Analysis and Security Device Management, two new managed security services available for businesses of all sizes.

Customized to Your Unique Business Needs

The services enable you to engage AT&T security professionals selectively and simply to provide customized security support. Services range from security event analysis and threat management analysis to targeted security device management including firewalls, intrusion detection sensors and VPN servers.

These new services use AT&T’s expertise in security analysis to evaluate, correlate, and report on information from multiple devices and device types, both on your premises and embedded in the AT&T network.

AT&T Managed Service Benefits Include:
  • Prioritizing security events based on threat and risk management methodologies using AT&T and customer-defined standards.
  • Rapid notification when security events are detected and identified as critical by the AT&T Security Network Operations Center.
  • Event mitigation and security analyst counseling during critical security incidents.
  • Global Security Operation Centers and 24X7 T1-T4 Analyst Coverage with portal access through AT&T’s BusinessDirect Portal.
With Security Device Management, AT&T provides complete, customizable monitoring and management of your security hardware and software, with a range of services including managing your organization’s current security capabilities up to assessing, designing and implementing a custom security infrastructure.

Full Suite of Professional Services
These new services are a natural complement to AT&T’s existing Security Consulting services, which include independent assessments of vulnerabilities inherent in customers’ networks, as well as the policy and procedures surrounding them. Security Consulting services include Log Management, Security Policy Management, Vulnerability Analysis, Application Security, Trusted Advisor services and Payment Card Industry Solutions.

AT&T delivers a suite of security and business continuity services to help assess vulnerabilities, protect infrastructure, detect attacks, and respond to suspicious activities and events. The upcoming AT&T Cyber Security Conference is an annual day-long conference offered by the AT&T Chief Security Office.
You have read this article att / attack / cloud services / IT security / managed security services / network management / out-task / protection / safety with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2009/10/in-cloud-approach-to-cyber-security.html. Thanks!

Next-Generation Managed Security Services


Reports of network attacks and stolen data are commonplace. Consumers routinely undergo the stress of fraudulent charges or compromised credit cards. Computer hacker terms like "botnet" are becoming a part of our everyday vocabulary.

As a result, enterprise security and risk professionals find themselves on a never-ending quest to maintain the integrity of their communication networks, according to the latest study by Forrester Research. Fortunately, managed service providers offer solutions to help relieve the burden.

In its latest initiative to help businesses protect their vital assets from cyber threats and other online attacks, Verizon Business is now offering its next-generation managed security services (MSS) platform, complete with new options.

This enhanced platform is designed to safeguard corporate networks by proactively identifying vulnerabilities and prioritizing threats across the extended enterprise -- resulting in better visibility, enhanced security and reduced risk.

Businesses can now identify the threats that could do the most damage, and then respond quickly. The Verizon Business platform is available immediately to customers throughout the U.S., Europe and Asia-Pacific.

Risk-Based Approach to Network Security
Going beyond first-generation threat and vulnerability strategies to address underlying risk, Verizon’s new platform enables the management of multiple security platforms, changing business requirements and increased security compliance requirements.

It also enables enterprises that lack in-house security expertise and have limited resources to effectively secure their networks while obtaining a consistent quality of service at an affordable, predictable cost.

"The Verizon Business risk-based approach to network security gives enterprise customers a better understanding of the threats to their businesses so they can plan accordingly," said Amy DeCarlo, principal analyst - Managed IT Services at Current Analysis. "This pragmatic approach, coupled with the global availability of this service platform, makes this a compelling managed security offering for the enterprise."

Benefits of Flexible Service Levels
Verizon customers can choose from one of the following three new service tiers to address individual requirements -- including providing effective security solutions across multiple networks in different parts of the world, each with country-specific requirements.
  • Basic Monitoring: Allows customers to outsource only the monitoring of security devices to while leveraging in-house staffing and retaining management control.
  • Premium Monitoring: Provides continuous monitoring of security devices with analytical support. Security logs and alerts generated by security devices are analyzed and interpreted by security analysts located in one of the company's global security operations centers.
  • Premium Monitoring and Management: Incorporates the Premium Monitoring service, and also proactive management of all devices. This includes installing security patches, managing security policies and restoring devices.
You have read this article attack / denial of service / Enterprise / hackers / IT security / managed security services / risk / threats / Verizon Business with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2009/08/next-generation-managed-security.html. Thanks!

Eight Options for Managed Security Services


In the online network connected business environment, security is more critical -- and also more complex. Today, network security requires constant monitoring and management. All businesses now experience vulnerability on an infrastructure that often extends to many locations.

Managed service providers can create a comprehensive security offering that enables you to maintain the level of protection and control you require. They can manage some or all of your network security functions -- giving you access to their dedicated manpower, 24-hour safeguarding, as well as routine maintenance and management of disaster recovery.

Finding the right security solution for your organization begins with establishing your priorities and becoming informed about alternatives. The following describes typical managed security service offerings, and how you can apply them.

Managed Firewall
Firewalls protect internal and external networks by restricting the types of network protocols and traffic allowed on your network. Firewall appliances, which the service provider manages remotely, include dedicated hardware and software platforms located on your premises.

Managed Distributed Denial-of-Service Protection
This service involves protecting the network infrastructure and network-based resources from distributed denial-of-service (DDoS) attacks -- so that your business can operate without interruption. It also helps prevent worm propagation that can cause DDoS attacks. DDoS mitigation provides protection against emerging threats.

Managed Intrusion Prevention Systems
Intrusion prevention systems (IPSs) identify and stop inappropriate attempts to access your network, systems, services, applications, or data. Intrusion detection services (IDSs) rely on network-based or host-based monitors, and often match monitored traffic or activity against profiles of known attacks.

Managed Antivirus Protection
This service most often involves checking for viruses at the gateway or firewall as well as in your e-mail messages, attachments, and file transfers. The service often includes automatic updates to antivirus definition files.

Managed Endpoint Protection
This service detects and stops unusual behavior on your endpoint devices, such as desktops and servers. In this way, you can prevent damage from Day-Zero security threats whose signature has not yet been identified.

Managed Authentication
Authentication refers to a group of processes and technologies used to verify the identity of a user attempting to gain access to your systems or applications.

Managed Content Filtering
Filtering is used to isolate and block content deemed inappropriate according to your internal policies or regulatory policies.

Vulnerability Assessment
The service includes security risk assessments, network scanning, and probing to reveal vulnerabilities in your network, operating system, or applications that can be accessed from the public Internet.

Contact a managed service provider, to learn more about these security capabilities, and the associated cost savings or productivity benefits. Most providers will have customer case studies for your consideration.
You have read this article cost reduction / Data backup / IT / IT security / managed network services / out-task / protection / remote monitor / risk with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2009/01/eight-options-for-managed-security.html. Thanks!

Four Must-Have Managed Services: In Any Economy


I spent Thursday afternoon moderating a Webcast about the managed services industry. The discussion drove home the fact that small businesses will continue to embrace certain managed services regardless of the economy around them.

My guests included:
  • Gary Pica, general manager of mindSHIFT Technologies, one of North America’s top managed service providers
  • William MacLeod, CIO, Accu-Sort Systems, a mid-size business that focuses on automatic data capture solutions
  • Jim Alves, executive VP, product marketing, Kaseya
Full disclosure: Kaseya sponsored the event but the Webcast did not involve any product pitches. Rather, we were exploring how small and mid-size businesses will depend on managed service providers regardless of the economy.

MacLeod conceded that his company is "rethinking everything" -- nearly all IT projects and expenses -- during the current economic turmoil. But here's the interesting part: MacLeod mentioned several managed services that his company will continue to embrace, no matter what:
  1. Internal customer (i.e., end user) support: Here, MacLeod depends on a mix of outsourced help-desk and on-site services from mindSHIFT, his managed service provider.
  2. Enterprise business systems maintenance and support: In other words, MacLeod is not going to cut any IT costs that could harm the reliability and scalability of his applications.
  3. Data Backup/Retention: Information is the lifeblood of Accu-Sort's business. Here again, MacLeod depends on his MSP for managed services.
  4. IT Security: Rudimentary tasks -- such as patch management and network monitoring -- can be outsourced to ensure businesses can focus on more innovative projects.
I don't want to paint managed services as a cure-all IT solution for small and mid-size businesses.

But, MacLeod's strategy at Accu-Sort reinforces the fact that progressive businesses are embracing reliable, predictable, cost-effective managed services -- regardless of the economy around them.
You have read this article Accu-Sort / Data backup / IT security / Kaseya / managed services / mindSHIFT / small business managed services / strategy with the title IT security. You can bookmark this page URL https://apfurtado.blogspot.com/2008/11/four-must-have-managed-services-in-any.html. Thanks!