July 28, 2009

Symantec: Why bigger is better but less is more

Symantec likes to point out how much bigger it is than competitors like McAfee, which at $1.6 billion in annual revenue is about a quarter of Symantec's size. But it also has come to recognize that bigness has its downsides, such as confusion that can stem from having too many products.

"The big change for us is that if you talked to me 6 or 9 months ago I'd have talked about literally over 100 products we have at Symantec from a security perspective, but going forward we'll just talk about four as we focus our investment," says Francis deSouza, senior vice president of Symantec's Enterprise Security Group (smaller than Symantec's $2 billion consumer security group, but close to $2 billion, while the rest of Symantec's revenue comes from more storage/archiving/information management-related business).

[ Learn how to secure your systems with Roger Grimes' Security Adviser blog and newsletter, both from InfoWorld. ]

Those four product areas: protection suites that include endpoint security; data loss prevention; compliance and policies; and systems management (Altiris products).

7 Burning Security Questions

Symantec's deSouza says the company is simplifying its approach as customers face a more complex mix of threats, including viruses, botnets and insider threats, across a broader surface area that includes mobile devices and cloud environments. To emphasize how scary things are out there,  he pointed out that Symantec issued more antivirus signatures last year than in its 17 previous years combined and that organized crime  is behind 90% of data breaches now.

"The criminals are brazen," deSouza said. "They're not hiding which countries the threats are coming from yet."

Symantec has even identified a common anatomy of organized attacks, which largely take place via targeted emails/spam, poorly protected Web-facing infrastructure and poorly written Web-facing applications. The attackers break in, perform a discovery of networked assets, put a value on the data available and then take what they want.

"Most companies have no idea they're even under attack," said deSouza, who joined the company in 2006 when it bought IMLogic, a company he founded and led.

One reason for this shortcoming is that companies have various security systems in place that don't necessarily talk to each other well enough to give security teams a big picture view of what's going on. Symantec will be pushing security information management technology to address this, deSouza said. New on this front is the ability to feed into a SIM system from a global intelligence network, he said.

While SIM offerings have been around for years now, deSouza says there is evidence that customers are buying into the technology in a big way and noted that its 2007 Vontu acquisition has exceeded expectations. He also pointed to the financial performance of ArcSight, a publicly-traded security management specialist that saw 34% year-over-year growth for its fiscal year ended in April. 

DeSouza also singled out DLP as a growth opportunity. Though he once thought DLP might be relegated to a feature of other security products, he said it has emerged as its own entity. One reason for this is that the people who tend to deal with compliance and data leakage issues within companies tend to be separate from those handling antivirus and other more traditional security detail.

One area Symantec does not plan to attack is pure network security, even though rival McAfee does. With Cisco, Juniper and Check Point already controlling the market, deSouza says Symantec's prospects wouldn't be good. "Our corporate strategy is to be #1 in the categories we compete in," he said, noting that Symantec has chosen to limit its participation in this market segment to partnering with HP, Microsoft and others.

Follow Bob Brown on Twitter.

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

additional resources
White Paper - How to Improve Delivery of Advanced Web Applications

White Paper

Virtual Workforce: The Key to Expanding The Business While Cutting Costs

Get the independent advice and expertise you need to support a virtual workforce.

Go inside:
The three-step approach to making a virtual workforce a reality.
The four flavors of client virtualization technologies.
The three key initiatives that solve IT challenges.
Download now »
White Paper: Successfully Secure Your Wireless LAN With Wi-Fi firewalls.

White Paper

Addressing Linux Threats Leveraging Fewer Resources

The increase in Linux popularity has increased the frequency and sophistication of malware attacks. Read this 2 page white paper now to learn how you can protect your Linux environment with real-time protection that is certified by all major Linux vendors.

Download now »
White Paper - The 2009 Handbook of Application Delivery

White Paper

The 2009 Handbook of Application Delivery

Ensuring acceptable application delivery will become even more difficult over the next few years. As a result, IT organizations need to ensure that the approach that they take to resolving the current application delivery challenges can scale to support the emerging challenges. This handbook elaborates on the key tasks associated with planning, optimization, management and control and provides decision criteria to help IT organizations choose appropriate solutions.

Download now »
White Paper - Is Your Backup System Outdated?

White Paper

Mid-range Storage Considerations

A common misconception is that mid-range storage requirements are dramatically different than that of a larger enterprise. Mid-range storage users may require less capacity, but they have similar functionality and management requirements. This ESG paper examines mid-range storage needs and reviews a new solution that adjusts size while retaining value, performance and functionality.

Download now »

Sign up to receive Security Resource Alerts

Subscribe to the Security Central Newsletter

Stay informed of the latest security threats and fixes.

White paper

Log Management: How to Develop the Right Strategy for Business and Compliance

This white paper provides guidance on how to develop a strategic approach to managing and monitoring logs, a key function required for compliance with many regulatory mandates and a critical defense against security threats.

Download now! »

White paper

The Essential Series: Security Information Management

Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM. The series examines different options for implementing SIM and gives you evaluation criteria for selecting the best option for your organization.

Download now! »

White paper

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics. This report provides guidelines for identifying which security solutions to consume as a MSS and defines best practices for choosing and managing MSSPs.

Download now! »
©1994-2010 Infoworld, Inc.