Security data swamps firms

Security data swamps firms


More automated systems could help firms spot threats sooner, says Micromuse

Security systems such as firewalls and antivirus software are producing more data than some firms can cope with, according to new research released today by infrastructure management specialist Micromuse.

Nearly a third of IT managers questioned across Europe said they generate more security data than they can properly examine for potential threats, and 45 percent said they experienced more than 4,000 security "events" a second.

Kelly Schupp, director of Security Market Solutions at Micromuse, said that firms run greater risks if they rely on a single security officer to manage these issues - as security managers are in high demand and may leave, taking their knowledge with them.

"You can't ever replace an individual who truly understands his or her infrastructure, and the problem is that [if there is only one security manager] and they can't work 24/7, networks and attackers don't stop," said Schupp.

Part of the solution is for firms to automate the sifting of security data and prioritise that data according to business goals, Schupp added. "But you must make sure individuals are involved at the right points in the process," she said. "You need a human element but not on the painstaking, low-level activities."