IT Security Budgets Return Focus to Complex Projects

執筆者
Brian Prince
Brian Prince
Published: Jun 10, 2010
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Enterprises are getting back to business-driven security initiatives after putting off some large-scale projects last year, according to the Gartner analyst firm.

While security spending tied to “keeping the bad guys out” was not heavily affected by the economy, many IT security organizations scaled back on capital-intensive projects in 2009, Gartner found. This year, however, security spending tied to efforts such as complex identity and access management (IAM) and data loss prevention (DLP) projects are beginning to reappear as many businesses unfreeze budgets.

In its 2010 CIO Survey, Gartner found 20 percent of organizations declared IAM the top security priority. More than 40 percent of organizations named intrusion prevention systems, patch management, DLP, antivirus and identity management among the top five security priorities for 2010. Spending is also set to continue for priorities such as supporting guest networking, secure wireless LANs and employee teleworking.

Interestingly, this change is actually coinciding with a drop off in security’s share of the IT budget from six to five percent of the total, and Gartner believes efficient enterprises will be able to safely cut security’s piece of their overall IT budget by 3 to 6 percent of their overall IT budgets through 2011.

“What we say in the presentation is that organizations that have matured their security programs are likely to move towards operationalization or re-operationalization of some of their security functions,” Gartner analyst Victor Wheatman told eWEEK. “That is, the chunka-chunka types of things like monitoring firewalls, updating patches and signature files and the like can be moved from the security area into infrastructure operations, networking or even outsourced to a managed security services provider who takes over those functions at lower operational and capital expenditure costs and ideally providing higher levels of security.”

“Not only does this reduce the official security budget,” he continued, “but it can cut overhead because one console and one operator may replace several…other efficiencies including the consolidation of functions: what were separate firewalls and intrusion detection systems are now next-generation firewalls which do those two things and more…and we’ve seen some organizations save money using open source or commercialized products based on open-source technologies.”

Advertisement

“Finally, in order to save money, organizations start to wake up to the fact that some platforms and operating systems contain security elements that are -in the box’ but are not deployed,” he added. “They may not have been deemed -good enough’ but they may be OK, particularly in a pinch. A simple example off the top would be using password-protected zip files rather than buying a separate encryption product for occasional use.”

North American companies led security spending in 2009, averaging 5.5 percent of IT budgets, compared to five percent in Asia/Pacific and slightly more than four percent in Europe, Gartner found.

Brian Prince

Brian Prince

Content Writer
eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。