Published on May 24th, 2021 📆 | 7040 Views ⚑
0Chaos testing and other automation tools could help cybersecurity move forward
Rohit Ghai was named president of RSA Inc. in January 2017. His keynote address as part of the firmās annual cybersecurity conference this month was his fifth, but it may well have been the first time that the words āchaos monkeyā were part of his remarks.
Chaos Monkey, originally designed by Netflix Inc. over a decade ago, is an automated enterprise tool that tests the resiliency of computer systems by deliberately forcing failures. Ghaiās reference in his keynote was designed to make the point that the security industry needed to embrace new tools at the risk of getting left in the dust by its well-equipped adversaries.
āThe thing that baffles me as a security guy is that cybercriminals have been automated for years,ā said Mark Nunnikhoven (pictured), distinguished cloud strategist at Lacework Inc. āThatās how they scale; thatās how they make their money. Yet we still primarily defend manually. We donāt tend to win well when weāre fighting automation.ā
Nunnikhoven spoke with John Furrier, host of SiliconANGLE Mediaās livestreaming video studio theCUBE. They discussed the importance of adopting automation and other advanced tools to combat threats and the need to find and train the next generation of cybersecurity professionals. (* Disclosure below.)
Behind the times
Ghaiās point and Nunnikhovenās concern highlight a conundrum in the security community. The threats are getting even more serious, yet cybersecurity researchers have been slow to embrace tools of the modern enterprise in their work.
Itās one reason why Nunnikhoven cringes when he hears reference to DevSecOps.
āThe reason I cringe is because security should be built into everything, but the challenge we have is security teams are still stuck in in the past,ā Nunnikhoven said. āWeāre a little behind the times compared to the rest of the businesses who are taking advantage of cloud services, taking advantage of data being everywhere. Security professionals should recognize there are tools that can make us better at our jobs and keeping pace with the business is absolutely critical.ā
One of the issues facing the cybersecurity community is a lack of trained talent to fill an explosion of open positions. Cybersecurity Ventures projects 3.5 million cybersecurity jobs will go unfilled in 2021.
āHow do we train the next generation of security professionals?ā Nunnikhoven asked. āWe really need to adjust and look for people with automation capability, with development, better business skills and better communication skills. As we leave our little protected cave of security, we need to be better business people and better team players.ā
Watch the complete video interview below, and be sure to check out more of SiliconANGLEās and theCUBEās CUBE Conversations. (* Disclosure: Lacework Inc. sponsored this segment of theCUBE. Neither Lacework nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)
https://www.youtube.com/watch?v=ZmZAS89Nj0I
Photo: SiliconANGLE
Since youāre here ā¦
Show your support for our mission with our one-click subscription to our YouTube channel (below). The more subscribers we have, the more YouTube will suggest relevant enterprise and emerging technology content to you. Thanks!
Support our mission:Ā Ā Ā >>>>>>Ā SUBSCRIBE NOW >>>>>>Ā to our YouTube channel.
ā¦ Weād also like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.ās business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we donāt have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary onĀ SiliconANGLEĀ ā along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams atĀ theCUBEĀ ā take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.
If you like the reporting, video interviews and other ad-free content here,Ā please take a moment to check out a sample of the video content supported by our sponsors,Ā tweet your support, and keep coming back toĀ SiliconANGLE.
Gloss