How FireEye Provides 'Source of Truth' About Security | eWeek

How FireEye Provides ‘Source of Truth’ About Security

How FireEye Provides ‘Source of Truth’ About Security
Sep 25, 2015
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

More often than not, whenever there is a major breach, the company that is called in to do incident response is FireEye’s Mandiant division. Among the organizations that FireEye has helped deal with high-profile breaches are Sony Pictures and health insurance provider Anthem. Incident response isn’t the only thing that FireEye does, but it does help to inform the company’s other services and its products too.

In a video interview with eWEEK, Grady Summers, chief technology officer (CTO) of FireEye, details how his company’s product direction is influenced by its incident response expertise and provides insight into best practices to improve security.

Most modern IT organizations use multiple sets of tools and technologies to provide security. In Summers’ view, for his clients, it is the FireEye technology that provides the proverbial “source of truth” about security. That doesn’t mean that FireEye is the only source of security information though. Summers emphasized that FireEye’s goal is to be able to integrate and partner well with other security vendors.

From a product and services perspective, Summers sees a cycle where there is learning from one segment of the business, helping the other.

“We see this really neat flow where we take what we learn in the field with services and drive that information right into our products,” Summers said. “Then we take what our products tell us and let that educate our consulting.”

In addition to security products and incident response services, FireEye has proactive services that help prepare organizations to withstand attacks in the first place. From those engagements, Summers said that FireEye sees a number of common trends and weaknesses.

One key weakness that FireEye often sees is a lack of proper network and data segmentation, with organizations running flat networks. In a flat network, there is no proper segmentation, and once an attacker is able to breach one area of the network, the attacker can pivot to reach any other corner of the enterprise.

There is also a problem with a lack of two-factor authentication for both email and VPN access.

Advertisement

“I’m still shocked by big, leading companies–brand names that we all know–still only having a single-factor VPN, and it’s a real thorn in their side,” Summers said.

Watch the full video interview with Grady Summers below:


Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.