Technology is continually evolving, growing to meet the new needs, wants and desires of the marketplace. Throughout the history of technology there has been one constant – the need for security. Too often, security is an afterthought at the end of the life cycle of solution creation. HP has a comprehensive security strategy designed to offer end-to-end information security plans and execution roadmaps.
- HP Security Information and Event Management (SIEM) Services leverage HP ArcSight, to rapidly collect, log, sort and filter relevant security events, enabling clients to identify and protect systems against threats.
- HP Comprehensive Applications Threat Analysis (CATA) Service is an industry thought-leading service to architect and design security into applications. It includes a Security Requirements Gap Analysis and an Architectural Threat Analysis.
- HP Application Security Testing-as-a-Service leverages HP Fortify and HP Webinspect technologies to identify and fix security vulnerabilities in the application layer.
- HP Enterprise Cloud Service (ECS) – End Point Threat Management is a new service delivering anti-virus and anti-malware capabilities to secure desktops, laptops and servers. The service requires no software or hardware investments and can be easily tailored to a client’s existing security policy for rapid return on investment.
- HP Secure Boardroom - This online, “at-a-glance” portal lets an enterprise security executive combine existing sources of security data into one central and easy-to-read dashboard to help mitigate enterprise risk.
- HP Discovery Workshop takes you on a journey to the secure enterprise. It helps your organization assess your environment and identify your biggest challenges, how you’re addressing them, your risk tolerance, where you are in the security maturity model, and how that stacks up against best-in-class procedures.
The marketplace is aware of the need for security and in most cases significant investments in security solutions have already been made. According to many experts, those investments often come too late in the life cycle.
“Security requirements analysis is doing the right thing. Threat analysis is doing the thing right,” says Diamant. “Adding these to security testing, application security becomes more proactive, less expensive, and more effective. Becoming more proactive about Application Security is a strategy change for clients.”