How FireEye Provides ‘Source of Truth’ About Security

Published: Sep 25, 2015
Updated: Feb 2, 2021
2 minute read
How FireEye Provides ‘Source of Truth’ About Security
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

More often than not, whenever there is a major breach, the company that is called in to do incident response is FireEye’s Mandiant division. Among the organizations that FireEye has helped deal with high-profile breaches are Sony Pictures and health insurance provider Anthem. Incident response isn’t the only thing that FireEye does, but it does help to inform the company’s other services and its products too.

In a video interview with eWEEK, Grady Summers, chief technology officer (CTO) of FireEye, details how his company’s product direction is influenced by its incident response expertise and provides insight into best practices to improve security.

Most modern IT organizations use multiple sets of tools and technologies to provide security. In Summers’ view, for his clients, it is the FireEye technology that provides the proverbial “source of truth” about security. That doesn’t mean that FireEye is the only source of security information though. Summers emphasized that FireEye’s goal is to be able to integrate and partner well with other security vendors.

From a product and services perspective, Summers sees a cycle where there is learning from one segment of the business, helping the other.

“We see this really neat flow where we take what we learn in the field with services and drive that information right into our products,” Summers said. “Then we take what our products tell us and let that educate our consulting.”

In addition to security products and incident response services, FireEye has proactive services that help prepare organizations to withstand attacks in the first place. From those engagements, Summers said that FireEye sees a number of common trends and weaknesses.

One key weakness that FireEye often sees is a lack of proper network and data segmentation, with organizations running flat networks. In a flat network, there is no proper segmentation, and once an attacker is able to breach one area of the network, the attacker can pivot to reach any other corner of the enterprise.

There is also a problem with a lack of two-factor authentication for both email and VPN access.

Advertisement

“I’m still shocked by big, leading companies–brand names that we all know–still only having a single-factor VPN, and it’s a real thorn in their side,” Summers said.

Watch the full video interview with Grady Summers below:


Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist

Sean Michael Kerner

Sean Michael Kerner is an Internet consultant, strategist, and writer for several leading IT business web sites.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。