<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Buying best of breed versus bundled services</title>
	<atom:link href="http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/</link>
	<description>top secret/secure computing information</description>
	<lastBuildDate>Sun, 27 Mar 2011 12:47:22 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: dre</title>
		<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/comment-page-1/#comment-1648</link>
		<dc:creator>dre</dc:creator>
		<pubDate>Wed, 12 Sep 2007 15:20:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1648</guid>
		<description>You setup two Windows domains: one for servers and one for clients.  Your server Windows domain gets BigFix. The client domain gets Symantec.  Then you follow the Matasano &lt;a href=&quot;http://www.matasano.com/log/646/matasano-security-recommendation-001-avoid-agents/&quot; rel=&quot;nofollow&quot;&gt;advice&lt;/a&gt;.

Marcin, I know that you and I have talked about DLP &quot;soft&quot; measures such as honeytokens, digital watermarking, and clipping services.  My primary &quot;hard&quot; answer to the DLP problem will continue to be &quot;thin clients&quot; (see: http://safebook.net for a laptoppy thin client), but other possible answers include &quot;whole disk encryption&quot; and &quot;epoxy USB ports&quot;.

Make sure you tell your agent vendors that you are giving them the whole piece of the pie.  Make it look like you&#039;re bundling.  Consider other incentives as alternatives to bundling.

I describe a lot of how this works on the SecurityIncite blog &lt;a href=&quot;http://securityincite.com/blog/mike-rothman/2007-doi-day-1-get-with-the-program#comments&quot; rel=&quot;nofollow&quot;&gt;here&lt;/a&gt;.</description>
		<content:encoded><![CDATA[<p>You setup two Windows domains: one for servers and one for clients.  Your server Windows domain gets BigFix. The client domain gets Symantec.  Then you follow the Matasano <a href="http://www.matasano.com/log/646/matasano-security-recommendation-001-avoid-agents/" rel="nofollow">advice</a>.</p>
<p>Marcin, I know that you and I have talked about DLP &#8220;soft&#8221; measures such as honeytokens, digital watermarking, and clipping services.  My primary &#8220;hard&#8221; answer to the DLP problem will continue to be &#8220;thin clients&#8221; (see: <a href="http://safebook.net" rel="nofollow">http://safebook.net</a> for a laptoppy thin client), but other possible answers include &#8220;whole disk encryption&#8221; and &#8220;epoxy USB ports&#8221;.</p>
<p>Make sure you tell your agent vendors that you are giving them the whole piece of the pie.  Make it look like you&#8217;re bundling.  Consider other incentives as alternatives to bundling.</p>
<p>I describe a lot of how this works on the SecurityIncite blog <a href="http://securityincite.com/blog/mike-rothman/2007-doi-day-1-get-with-the-program#comments" rel="nofollow">here</a>.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LonerVamp</title>
		<link>http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/comment-page-1/#comment-1643</link>
		<dc:creator>LonerVamp</dc:creator>
		<pubDate>Mon, 10 Sep 2007 20:01:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.tssci-security.com/archives/2007/09/10/buying-best-of-breed-versus-bundled-services/#comment-1643</guid>
		<description>Probably want to rank those three items. I&#039;d rank anti-spyware below the other two. I&#039;d then say absence of one is cause for concern, and I&#039;d still make AV a hair more important than PF. So I&#039;d lean towards whatever does AV the best and PF second.

In more general terms, get the best for the most important tasks. I&#039;d rather get a product that does AV/PF well and get something else for AS, as opposed to getting something that is pitiful with AS...

I dunno how to generalize that further without looking at the business in question, the risks, the current environment, and their budget. :(</description>
		<content:encoded><![CDATA[<p>Probably want to rank those three items. I&#8217;d rank anti-spyware below the other two. I&#8217;d then say absence of one is cause for concern, and I&#8217;d still make AV a hair more important than PF. So I&#8217;d lean towards whatever does AV the best and PF second.</p>
<p>In more general terms, get the best for the most important tasks. I&#8217;d rather get a product that does AV/PF well and get something else for AS, as opposed to getting something that is pitiful with AS&#8230;</p>
<p>I dunno how to generalize that further without looking at the business in question, the risks, the current environment, and their budget. :(</p>
]]></content:encoded>
	</item>
</channel>
</rss>

