February 07, 2008

VCs still hot on security

Due to increasingly sophisticated attacks and stringent compliance demands, companies are boosting spending on IT security, making the segment attractive to VCs

Venture capitalists continue to pour money into the IT security segment as emerging attacks and compliance demands pave the road for future spending among customers.

Market watchers, including the Computing Technology Industry Association (CompTIA), have predicted significant growth in corporate IT security budgets for 2008.

In a recent survey of just over 1,000 companies conducted by the industry group, more than 50 percent of respondents said they plan to spend an average of roughly 20 percent more on security technologies and services in 2008 than they did in 2007.

Based on that opportunity and the wealth of new security companies coming into the market backed by strong technologies and qualified management teams, VC experts say that they will channel more funds into the sector this year in the hopes of getting behind the industry's next big thing.

Among the leading areas for investment, they say, are companies building technologies aimed at addressing issues of data protection and applications security.

"We believe that companies looking at protecting applications and data is a fertile area, there are a lot of VC-backed companies that have been funded that have attacked different elements of the problem, but there's still a huge corporate need and plenty of room for innovative companies to succeed," said Justin Perreault, a general partner with Commonwealth Capital Ventures.

"I think we'll continue to see consolidation in the space because ultimately, companies don't want to deal with 20 different vendors, but there are still a lot of opportunities for companies to get to market with IPO or acquisition exits available to them long-term," he said.

One of the companies that Commonwealth has put its money behind to that end is Ounce Labs, a maker of applications source code analysis tools. Perreault said that his firm believes that customers are already buying into the concept of using code-scanning technologies to address the issue of data leakage and that companies such as Ounce that can automate the process without placing an additional burden on software developers stand to benefit from the trend.

At the same time, areas of the security market such as the NAC (network access control) and DLP (data leakage prevention) segments may have already worn out their chances to garner new investment from the VC community. "The truth is that so many security sectors are already wildly overfunded with too many companies, they may even have great ideas and technologies, but there are just too many," Perreault said. "With NAC and DLP, there are probably more people than the market can support or than there are large companies to buy them all up."

At the same time, VCs need to remain mindful of the idea that there are always opportunities for companies to enter an already crowded space and revolutionize things in some way. The most common example of that scenario is the rise of a company such as Google in the search market, but issues, such as managing spam, that have been addressed by vendors for years clearly still have a chance for innovation, said Paul Maeder, co-founder at VC firm Highland Capital Partners.

Close

On Twitter now

Security

Powered by Twitter

On Twitter now

White Paper

D2D Virtual Tape Library Replication Primer

This whitepaper explains the terminology and concepts behind Data Replication technologies and establishes some sizing rules through worked examples. Learn the new paradigm in disaster tolerance—protect data anywhere.

Download now »

White Paper

An Alternative to Virtualization for Datacenter Cost Savings

Server virtualization is a popular option for dealing with mounting datacenter costs. Another equally promising approach is the use of an Application Delivery Controller. Citrix NetScaler provides a low-cost way for organizations to reduce their server count and accrue cost savings from a reduction in space, cooling, power and personnel.

Download now »

White Paper

Why Your Firewall, VPN, and IEEE 802.11i Aren't Enough to Protect Your Network

The emergence of WLANs has created a new breed of security threats to enterprise networks.

Included in HP ProCurve WLAN solutions is security technology that alleviates threats from WLANs through:
* Monitoring wireless activity inside and out of the enterprise
* Classifying WLAN transmissions into harmful and harmless
* Preventing transmissions that pose a security threat to the enterprise network
* Locating participating devices for physical remediation

Download now »

White Paper

Bringing the Edge to the Data Center

Effectively address data protection challenges, implementing solutions that help store and protect business–critical data while cutting costs and improving efficiency and reliability.

Download now »

Sign up to receive Security Resource Alerts

Subscribe to the Security Central Newsletter

Stay informed of the latest security threats and fixes.

White paper

Log Management: How to Develop the Right Strategy for Business and Compliance

This white paper provides guidance on how to develop a strategic approach to managing and monitoring logs, a key function required for compliance with many regulatory mandates and a critical defense against security threats.

Download now! »

White paper

The Essential Series: Security Information Management

Learn about the processes and technologies that support security information management (SIM) operations, as well as the business case for SIM. The series examines different options for implementing SIM and gives you evaluation criteria for selecting the best option for your organization.

Download now! »

White paper

Aberdeen: Choosing and Consuming Managed Security Services

Learn the strategies, actions, and capabilities that Best-in-Class organizations employ and technologies they choose to obtain superior performance against various security performance metrics. This report provides guidelines for identifying which security solutions to consume as a MSS and defines best practices for choosing and managing MSSPs.

Download now! »
©1994-2009 Infoworld, Inc.