Consultants: Cant Live With Em, Cant ...

Consultants: Cant Live With Em, Cant …

Written By
Shammi Gill
Shammi Gill
Feb 19, 2001
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

In the future, only ignorant companies will keep their IT security teams completely in-house. And those ignorant companies will become the first to collapse under a variety of malicious computer attacks. I cant blame them, though. The alternative is to go with consultants, and they bring their own problems to the table. Heres whats wrong with consultants. First, most security consulting organizations are less than 2 years old and, therefore, cant be trusted completely. There is no guarantee that any of these consultants will last through a downturn in the economy, which, by all indications, is happening now.

Then, theres the employee problem. There is so much demand for security consultants yet so few actual experts that the quality level of experts is being diluted. This means a consultancys top expert might be a 20-year-old former hacker who only escaped from his bedroom last year.

Organizations must also be aware that some companies are linked with vendors, so their recommendations may be based on the architecture used in a certain companys infrastructure of routers, switches and servers.

Finally, as with any IT field, there is employee turnover among consultants, which means that companies placing their secure assets into a consulting companys hands might find those hands have gone over to a competitors outfit.

These warnings sound severe, but they are mainly scary things being said by scary people trying to spread fear, uncertainty and doubt. Security consulting companies can be the best bet for securing and protecting corporate assets—when they work in tandem with employees of the organization.

Combining a security consulting companys expertise with a permanent staff members commitment to an organization makes it more likely that the security plan will succeed for two reasons. First, the fresh eyes and focused experience of a security auditor are sure to uncover nearly all the common exposures in a network. Second, the in-depth knowledge and insider experience of a permanent staff member will probably be enough to ensure that changes recommended by a consultant meet the business priorities and requirements of the organization.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.