Introducing the Network Security and
Management Challenges Blog Series

Original Entry by : Endace

Recent research provides insight into overcoming the challenges of managing and securing the network

Network Security and Performance Management Research

A Big Thank-You

We’d like to take this opportunity to thank all of the companies and individuals that participated in both studies. Without your participation, it would not have been possible to produce these reports and the valuable insight they contain.

For those who didn’t get a chance to participate, please click here to register your interest in participating in our 2020 research projects.

Last year, Endace participated in two global research studies focusing on the challenges of protecting enterprise networks. The results of both provide powerful insights into the state of network security today, and what organizations can do to improve the security and reliability of their networks. In this series of blog posts, we’re going to take a deep dive into the results and their implications. 

We commissioned an independent, US-based research company, Virtual Intelligence Briefing (VIB) to conduct the research underpinning the Challenges of Managing and Securing the Network 2019 report. VIB surveyed senior executives and technical staff at more than 250 large, global enterprises to understand the challenges they face in protecting against cyberattacks threats and preventing network and application performance issues. 

Organizations from a range of industry verticals including Finance, Healthcare, Insurance and Retail participated. Annual revenues of participating companies were between $250M and $5B+, and respondents included senior executives such as CIOs and CISO, as well as technical management and technical roles. 

Our second research project was with Enterprise Management Associates (EMA) and was focused on looking at what leading organizations are doing to improve their cybersecurity and what tactical choices are making the biggest difference. This research was based on responses to a detailed survey of more than 250 large enterprises across a wide range of industries .

You can download a summary of EMA’s report here: “Unlocking High Fidelity Security 2019“.

So what did we find out? 

When it comes to securing their networks from cyberattacks, organizations find it hard to ‘see’ all the threats, making detection and resolution of security and performance issues cumbersome and often inconclusive. They lack sufficient visibility into network activity, with too few tools in too few places to be confident they can quickly and effectively respond to cyber threats and performance issues.

The need for greater agility was also a common challenge, with alert fatigue, tool fatigue and lack of integration between tools making the investigation and resolution process slow and resource-intensive. 

Organizations also face significant economic challenges in the way they are currently forced to purchase and deploy solutions. This leaves them unable to evolve quickly enough to meet the demands imposed by today’s fast-moving threat landscape and 24×7 network and application uptime requirements. 

In this series, we’ll explore each of these three challenges – Visibility, Agility and Economics – while also looking at how they are intrinsically inter-related. Understanding and addressing all of these challenges together revolutionizes network security and management, and enables organizations to realize greater efficiency while saving money.

Our next post will look at why organizations lack visibility into network activity and how they can overcome this challenge.


Watch Endace on Cisco ThreatWise TV from RSA 2019

Original Entry by : Endace

It was a privilege to attend this year’s RSA cybersecurity event in San Francisco, and one of our top highlights was certainly the opportunity to speak to Cisco’s ThreatWise TV host Jason Wright. Watch the video on Cisco’s ThreatWise TV (or below) as Jason interviews our very own Michael Morris to learn more about how Cisco and Endace integrate to accelerate and improve cyber incident investigations.

In this short 4 minute video, Michael demonstrates how Cisco Firepower and Stealthwatch can be used together to investigate intrusion events, using Cisco dashboards and EndaceVision to drill down into events by priority and classification to show where threats come from, who has been affected and whether any lateral movement occurred, as well as conversation history and traffic profiles. Michael also explains how Cisco and Endace work together to ‘find a needle in a haystack’ across petabytes of network traffic.

A big thanks to Cisco and to Jason for giving us this spotlight opportunity. If you have any questions about how Cisco and Endace integrations can accelerate and improve cyber incident investigation, visit our Cisco partner page.


Meet the Endace team at Infosecurity 2018

Original Entry by : Endace

From the 5-7th June 2018, the Endace team will be exhibiting at Infosecurity Europe at Olympia, London. Infosecurity, Europe’s largest conference programme, offers more than 400 exhibitors (and 19,500 information security professionals) the chance to showcase market-leading information security solutions.

“The UK team will be demonstrating Endace’s range of products and how they can be integrated with security tools from partners like Cisco, Splunk, Plixer and Palo Alto Networks,” says James Barrett, Senior Director EMEA. “We’re looking forward to hearing some great keynotes, as well as participating in the tech and strategy talks, while sharing our expertise with attendees and other exhibitors.”

Infosecurity brings more than 240 free conference sessions, with attendees ranging from industry veterans to promising start-ups. Alongside the conference sessions and exhibition hall, the event provides networking opportunities for attendees to share knowledge and experience.

You can read more about Endace and our products on the Endace website or on Infosecurity’s exhibitor page. To meet the Endace team and receive a demo at Infosecurity, visit stand R100 or contact us here.


Endace Interns Tackle the Industry’s Biggest Challenges

Original Entry by : Endace

Our Summer Internship Programme is back and this year we are pleased to welcome three new interns to the Endace team.

Induction

New Endace Interns Puzzle Over Designing a Self-Propelled Vehicle from Found Objects
New Endace Interns Puzzle Over Designing a Self-Propelled Vehicle from Found Objects

Interns are paired with a mentor and on day one have a team-building exercise (with a little friendly competition). Using only what they can find in the office and their wits and ingenuity, they need to build a race-worthy vehicle that can propel itself across the lunchroom of our Hamilton R&D center.

Endace’s Engineering Managers will judge the event for creativity, innovation and artistic merit. There are two rules: it can’t cause harm to people or property (so no mini tanks, sorry guys) and it can’t use fire in any form (such as for a propellant).

The interns and their mentors have been challenged by the Auckland-team for a rematch at the end of their internship. So, let the games begin!

The Intern Programme

Throughout the next 12 weeks, our interns will be heavily involved with R&D projects that are designed to give them an edge in the technology industry and help shape the future of packet-capture and network monitoring technologies.

They will complete 1,500 hours of project-based R&D work, receive up to 100 dedicated mentoring hours and have the opportunity to prepare formal professional and career development plans.

They’re also given 64 hours of structured training which will give them an overview of running a technology business across different areas – including finance, supply chain, sales and quality control.

The culmination of the 12-week programme is a presentation and shared learning session between the interns and members of the senior leadership team, project managers and their mentors.

Endace is excited to welcome our new team of interns and looking forward to working with them on a number of projects. We are committed to ensuring their internship is a robust experience that supports their innovation, drive and talent development and that it is an experience that they’ll remember fondly. Endace is a committed member of the NZ Tech community.

We are proud of the Endace Internship Programme and see it as a great way to help computer science students and graduates build talent and experience and grow the industry. And it helps demonstrate why Endace is an employer of choice for IT and engineering graduates in New Zealand.


Cool Runnings with Endace

Original Entry by : Endace

bobsleigh-2-1000Back in 2015 Emma Garner was looking for a fresh challenge to push her both physically and mentally. Taking inspiration from 90s comedy Cool Runnings she decided to try out for the Royal Air Force Bobsleigh Team. The RAF compete in two-person bobsleighs crewed by a driver and brakeman. Invited to attend novice training as a brakeman at Igls in Austria, she soon found herself careening down the course on her first ever week on ice.

“I remember the anticipation the first time I was nudged off the start and the exhilaration at making it down the track first time without my novice driver crashing. Some people weren’t so lucky.”

Continue reading “Cool Runnings with Endace”


Sold out Suricon demonstrates strong interest in Suricata

Original Entry by : Endace

Suricata

Having been one of the original sponsors of the OISF, we were thrilled to be involved again as a community partner sponsor at Suricon 2016.  The conference ran Nov 9-10 and with an international contingent of attendees and sponsors, Washington DC on election night was a very unique way to kick off the conference! 

It was great to reacquaint with old friends at the OSIF. Kelley Misata and the Core team did a fantastic job of organizing the conference.  There were some really interesting presentations from Core team presenters and the Suricata community. Check out the conference highlights here for links to some of the presentation slides.

suricon_booth

We had a lot of interest from attendees interested in using Endace DAG cards to improve the performance and fidelity of Suricata. For anyone wanting to find out how to use Suricata with DAG, we put together a technical brief which you can download here.

To celebrate Endace’s return as a sponsor, we offered attendees a special 2-for-1 deal on our DAG 10X2-S cards.  We think this card really hits the price/performance mark, providing a professional capture card at a very attractive price. And judging by level of the interest we saw at the conference, attendees agreed (a reminder to conference attendees, the offer closes Dec 15th, so don’t forget to return your claim form!)

Suricon 2016 was completely sold out and it’s great to see the attendance and interest growing so strongly.  Endace is looking forward to sponsoring Suricon 2017 in Prague which promises to be even bigger and better again!


Inaugural Sharkfest Europe a great success

Original Entry by : Endace

endace-sharkfest-standEurope got its own Sharkfest in October and the inaugural Wireshark Developer and User Conference was a great success with strong attendance from the user and developer community across Europe. Congratulations to Sharkfest Europe for a great launch to what is sure to be a fantastic annual event.

There was a great program of speakers over the three days. Kicking things off with the pre-conference course was Wireshark University’s Laura Chappell. Her Troubleshooting with Wireshark tutorial was well attended and included invaluable tips for working with Wireshark using workflows which make optimal use of Wireshark to quickly highlight potential issues.

Continue reading “Inaugural Sharkfest Europe a great success”


NEW: EndaceProbe 114 Branch Office Network Recorders

Original Entry by : Endace

Launching at Black Hat this week, the EndaceProbe 114 is purpose-built for deployment in remote locations or branch offices. It offers the same 100% accurate recording, centralized management data mining and retrieval and application hosting as the rest of the EndaceProbe family but comes in a compact, short-depth format that makes it ideal for deployment in branch offices.

The EndaceProbe 114 allows organizations to cost-effectively extend their network visibility right out to the network edge and eradicate the blind spots that can make branch office locations an attractive target for attackers.