Intelligent SME.tech Issue 07 | Page 36

// EXPERT PROFILE //

A GOOD MSP WILL COMBINE
CLOUD SECURITY BEST PRACTICE WITH AUTOMATION TO PROVIDE A WRAP-AROUND SERVICE FOR THE WHOLE
NETWORK ENVIRONMENT . environment . This means you get a bespoke security solution with appropriate MDR . An MSP should initially assess and monitor a customer ’ s environment for incidents or security-related bad practice and make recommendations on how to fix them . It should score the current security performance to draw a line in the sand as to how the organisation is doing . And this isn ’ t for traditional servers alone , it should assess all the other components that the cloud uses – something that traditional security services don ’ t cover .
The next step is to configure an EDR or AV / Next Gen AV solution and centralise all logging into one dashboard that can be easily accessed by the organisation and provider . The dashboard is indispensable for in-house security teams , especially if they are used to manual methods of identifying what is happening across the estate . It ’ s time intensive and difficult to see what data is coming in and going out , including key destinations and any malicious activity detected in the last 24 hours – all the detail a CISO would want to know about at a high level . The dashboard centralises all the information so they can see what is happening in a simplified format across the board .
Patching , patching , patching
Often de-prioritised in favour of more pressing activities , patch management as a discipline plays a crucial role in an organisation ’ s ability to fend off threats , while improving stability and functionality . A good MSP will be able to provide a detailed Managed Patch and Compliance Service . It will provide critical updates to security hot fixes , and will keep all your servers , applications and endpoints patched in accordance with a pre-defined schedule and ruleset ; allowing you to focus on other areas of your business .
Reduce cloud management time weighed down by irrelevant alerts . This can amount to hundreds of hours saved across the whole organisation .
Leverage the latest technology
With the threat landscape constantly evolving , it ’ s important to ensure that detection capabilities keep pace . MDR leverages the latest security tools and threat intelligence to ensure that an organisation is prepared to respond to current and emerging cyberthreats . It uses the best-of-breed network and endpoint monitoring technologies to provide extensive threat visibility across on-premises and cloud environments and to identify any known and unknown threats .
Unfortunately , our research shows more than 60 % of companies don ’ t have endpoint detection and response ( EDR ) or next-gen anti-virus on their end devices . For some , they don ’ t know they need it , for others they are tied into long licences with companies that don ’ t offer EDR yet .
The next-generation of EDR software focuses on tactics , procedures and behaviour-based detection with inbuilt Machine Learning on machines and in the cloud which is based on signatureless detection – this is necessary to detect and stop most threats we are now seeing .
How to choose the right MSP
Outsourcing to an MSP with MDR , EDR and patching solutions is much more cost effective when bringing together a suite of products that service a variety of elements . The cybersecurity sector is very dynamic with lots of changes and acquisitions happening . Best practice would be to choose an MSP who understands the market and uses best-inbreed solutions . �
Not only does a good managed service reduce the threat footprint facing the organisation , it also reduces the time it takes to manage a cloud environment . Patches , checks and incident reporting is automatically taken care of and in-house teams are constantly kept up-to-date .
A key benefit of an MDR solution is that members of an in-house security team are not
36 intelligent
. tech
Intelligent SME . tech