Home > Enterprise Desktop Tips > > Questions to ask your security vendor
Enterprise Desktop Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 


Questions to ask your security vendor


Kevin Beaver, CISSP
01.11.2007
Rating: -3.33- (out of 5)


Advice for securing Windows
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


It's spending season for many organizations and that means it's time to unload some of your IT budget on network security products. Maybe it's time to replace that outdated intrusion detection system (IDS), upgrade to a full-blown patch management system or implement a configuration management solution to help you with your compliance initiatives.

Don't go into this unarmed, though. The marketing fluff and sales speak is easy to fall for and there's too much money and skin to lose in the process. Once you develop your requirements (a critical step that's often overlooked), it's time to start compiling some key questions to ask prospective vendors. I'm not talking about technical questions about bytes and encryption strength – most vendors can handle the technical aspects of what needs to be done. Instead, I'm referring to operational and administrative questions that will help you determine if the vendor's solutions will fill your business needs (where it really counts) and keep you from pulling your hair out in the process.

Here are some questions to ask prospective network security vendors. You may make them squirm and stumble a bit when you put them on the spot, but asking the hard questions is the only way to find a good technology fit and to protect your organization from making bad spending decisions.

It's important to remember that your vendors' responses will vary depending on the type of technology you're considering and the type of industry you're in. If you've fou


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


nd one or more vendors whose answers sound reasonable and you have a good gut feeling about them, it's almost time to take the plunge. But, there's one more thing left to do. You've got to make sure you and your business are ready to move forward with your purchase by ensuring a good foundation is in place.

I've outlined 10 reasons not to buy information security products here. These 10 reasons are just as important for making a good purchase as the answers you receive from your vendors on the questions above.

If you do your homework up front and ask the right questions but still end up making a bad purchase because of something that wasn't revealed during the pre-sales or trial process, at least you'll know you did what's right. Odds are that you'll make much more informed business decisions and buy prudently for a good long-term solution.

About the author: Kevin Beaver is an independent information security consultant, speaker and expert witness with Atlanta-based Principle Logic LLC. He has more than 19 years of experience in IT and specializes in performing information security assessments revolving around compliance and IT governance. Kevin has authored/co-authored six books on information security including Hacking For Dummies and Hacking Wireless Networks For Dummies (Wiley) as well asThe Practical Guide to HIPAA Privacy and Security Compliance (Auerbach). He's also the creator of the Security On Wheels audiobook series. You can reach Kevin at kbeaver@principlelogic.com>.

Rate this Tip
To rate tips, you must be a member of SearchEnterpriseDesktop.com.
Register now to start rating these tips. Log in if you are already a member.




DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Enterprise Desktop Security - Virus Protection, Malware Protection, Intrusion Detection
HomeTopicsITKnowledge ExchangeTipsMultimediaWhite PapersBlogs
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2008 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts