THE CYBER-SECURITY PLAYBOOK
|
|
|
- Gwenda Sutton
- 9 years ago
- Views:
Transcription
1 THE CYBER-SECURITY PLAYBOOK Selling Into the Global Defense Market The federal cyber-security space is becoming a hotbed of incubation, acquisition and opportunity, but how to sell into this complicated market has remained a mystery to many vendors. Analyzing the Business of Enterprise IT Innovation ESP ENTERPRISE SECURITY PRACTICE 4 FINDINGS Defense contractors and SIs are beginning to reach into the enterprise market to acquire complementary security product vendors for the enhancement of their cyber-security portfolios. PAGE 22 There are multiple paths to sell to government agencies, many of which are supported by assistance programs that enterprise vendors can use. PAGE 14 Vulnerability management is an early leader in cyber-security-market adoption, but ESIM, forensics and several other classic enterprise technologies are hot on its heels. PAGE 25 Due to threat severity, government buyers are more inclined to buy best-in-breed technologies than allencompassing portfolios as long as the technology is extensible and malleable. PAGE 20 5 IMPLICATIONS Established vendors with a strong enterprise presence looking to further exploit the cyber-security market will likely need to follow traditional certification and partnership strategies. PAGE 11 Startups need to gain a firm understanding of governmentbacked opportunities and the procurement vehicles employed by government agencies. PAGE 11 End users of enterprise security products from a vendor that has recently adopted a federal sales strategy may find themselves a less important factor in product roadmap decisions going forward. PAGE 38 Investment in a federal-focused company shouldn t be seen as an arduous long-term deal with limited ROI potential. Government agencies will likely help incubate products and fund their development. PAGE 14 Between 2002 and 2009, there were only four acquisitions in the cyber-security space driven by product or technology portfolio inclusion, compared to four in 2010 and one so far in PAGE 22 1 BOTTOM LINE The cyber-security market has always been perceived as a tough nut to crack. However, with government-backed R&D programs, increased defense contractor and SI security acquisitions, and growing cyber-security concerns and mandates, this space may be one of the last greenfield opportunities left in the security-product market. APRIL 2011
2 REPORT SNAPSHOT TITLE The Cyber-Security Playbook ANALYST RELEASE DATE April 2011 LENGTH Andrew Hay, Senior Security Analyst, Enterprise Security Practice 40 pages ABOUT THIS REPORT The primary purpose of this report is to open the eyes of security technology vendors to the slew of cyber-security opportunities and related monies made available by the cyber-security concerns of the government, military and intelligence communities. If you are a security vendor looking to make money in this lucrative sector, this report explains some of the lesser-known government programs that could help you gain entry into the market, as well as the natural technology affinities within the realm of cyber security that will succeed. From an opportunity standpoint, we also explain the potential exits for technology companies and show investors how they can make more money (while taking fewer risks) than ever before. Although this report is primarily US-centric due to the US having the majority of government funding and R&D-backed initiatives in this space, in addition to the largest defense industrial base in the world, many of the recommendations still apply across geographic boundaries.
3 TABLE OF CONTENTS SECTION 1: EXECUTIVE SUMMARY INTRODUCTION KEY FINDINGS METHODOLOGY SECTION 2: THE CYBER-SECURITY BATTLEFIELD 4 Figure 1: Evolution of Targets by Industry SECTION 3: GETTING A SEAT AT THE TABLE INTERNAL SALES INFRASTRUCTURE TESTING AND CERTIFICATION GETTING ONTO A GSA SCHEDULE Figure 2: Traditional Path for Cyber-Security Market Entry OTHER PATHS TO THE GOVERNMENT CYBER-SECURITY MARKET Figure 3: Paths for Cyber-Security Market Entrance Figure 4: DoD ASD(R&E) SBIR Topics Figure 5: BAA Technical Topic Areas GOVERNMENT PROCUREMENT SECTION 4: CYBER-SECURITY PRODUCT PACKAGING SUCCESS 20 SECTION 5: CYBER-SECURITY M&A 22 Figure 6: Non-Product Cyber-Security M&A in Figure 7: Product-Centric Cyber-Security M&A (January 2002 January 2010) SECTION 6: NATURAL CYBER-SECURITY AFFINITIES VULNERABILITY MANAGEMENT AND PENETRATION TESTING Figure 8: Pending US Congressional Legislation Pertinent to Penetration Testing THE CYBER-SECURITY PLAYBOOK
4 6.2 FORENSICS AND IR NETWORK BEHAVIOR ANOMALY DETECTION AND DEEP-PACKET INSPECTION ENTERPRISE SECURITY INFORMATION MANAGEMENT IT GOVERNANCE, RISK AND COMPLIANCE CHANGE AND CONFIGURATION MANAGEMENT INTRUSION DETECTION AND PREVENTION SECTION 7: CYBER-SECURITY IMPLICATIONS 38 INDEX OF COMPANIES 41
5 ABOUT THE 451 GROUP The 451 Group is a technology analyst company. We publish market analysis focused on innovation in enterprise IT, and support our clients through a range of syndicated research and advisory services. Clients of the company at vendor, investor, service-provider and end-user organizations rely on 451 insights to do business better. ABOUT TIER1 RESEARCH Tier1 Research covers consumer, enterprise and carrier IT services, particularly hosting, colocation, content delivery, Internet services, software-as-a-service and enterprise services. Tier1 s focus is on the movement of services to the Internet what they are, how they are delivered and where they are going The 451 Group, Tier1 Research and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication, in whole or in part, in any form without prior written permission is forbidden. The terms of use regarding distribution, both internally and externally, shall be governed by the terms laid out in your Service Agreement with The 451 Group, Tier1 Research and/or its Affiliates. The information contained herein has been obtained from sources believed to be reliable. The 451 Group and Tier1 Research disclaim all warranties as to the accuracy, completeness or adequacy of such information. Although The 451 Group and Tier1 Research may discuss legal issues related to the information technology business, The 451 Group and Tier1 Research do not provide legal advice or services and their research should not be construed or used as such. The 451 Group and Tier1 Research shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The reader assumes sole responsibility for the selection of these materials to achieve its intended results. The opinions expressed herein are subject to change without notice. Analyzing the Business Better perspective from the top in independent tech research of Enterprise IT Innovation THE CYBER-SECURITY PLAYBOOK
TOTAL DATA WAREHOUSING: 2013-2018
TOTAL DATA WAREHOUSING: 2013-2018 Analytic Database and Hadoop Market Sizing and Forecasts This report examines the marketplace for Total Data Warehousing including competing players, revenue generation
DATACENTER INFRASTRUCTURE MANAGEMENT SOFTWARE. Monitoring, Managing and Optimizing the Datacenter
Analyzing the Business of Enterprise IT Innovation DATACENTER INFRASTRUCTURE MANAGEMENT SOFTWARE Monitoring, Managing and Optimizing the Datacenter As datacenters become bigger, denser and more complex,
MOBILE APP LIFECYCLE
MOBILE APP LIFECYCLE Design and Development As enterprises invest in developing or externally sourcing mobile apps, they are finding the need to integrate this process into the overall software development
The Data Management of Things
The Data Management of Things THE IMPLICATIONS OF IOT FOR DATA ANALYTICS The Internet of Things (IoT) is placing new demands on data storage, networking, processing and analytics. For end users, vendors
OF THE CLOUD, FOR THE CLOUD
EXECUTIVE OVERVIEW OF THE CLOUD, FOR THE CLOUD The State of the Art in IT Performance Management IT performance management tools are following application and infrastructure workloads to the cloud, giving
Social Intranets and the Supply Chain
THOUGHT LEADERSHIP Social Intranets and the Supply Chain EXECUTIVE OVERVIEW SEP 2015 Alan Pelz-Sharpe, Research Director, Business Applications Matt Mullen, Senior Analyst, Business Applications In one
Cloud Management Platform Market Map 2016
MARKET MAP Cloud Management Platform Market Map 2016 MAY 2016 William Fellows, Research Vice President A cloud management platform should operate like a cloud Uber app for IT consumption and delivery that
CLOUDSCAPE. IT SERVICES Tooling up for ITaaS KEY FINDINGS
IT SERVICES Tooling up for ITaaS IT as a service (ITaaS) is an operational model where the enterprise IT department acts and operates as a distinct business entity, creating services for the other lines
Data Platforms and Analytics Market Map 2016
MARKET MAP Data Platforms and Analytics Market Map 2016 APRIL 2016 Matt Aslett, Research Director, Data Management & Analytics Krishna Roy, Senior Analyst, Data Platforms & Analytics James Curtis, Senior
Cloud Brokers EXECUTIVE OVERVIEW MAKING ITAAS A PRACTICAL REALITY?
Cloud Brokers MAKING ITAAS A PRACTICAL REALITY? This report examines what a cloud broker is, its components and functions, its role(s), its audience and how it supports the delivery of ITaaS by turning
Mexico EXECUTIVE OVERVIEW MULTI-TENANT DATACENTER MARKET
Mexico MULTI-TENANT DATACENTER MARKET This report provides an overview of the competitive dynamics in the Mexico market, a 451 Research Market Map of the competitors in the area, market share of the dominant
DATACENTER BRAZIL MTDC MARKET ASSESSMENT EXECUTIVE OVERVIEW. Supply and Providers MARCH 2013
BRAZIL MTDC MARKET ASSESSMENT Supply and Providers DATACENTER MARCH 2013 REPORT SNAPSHOT TITLE Brazil MTDC Market Assessment Supply and Providers ANALYST RELEASE DATE March 2013 LENGTH Jeff Paschke, Research
2016 Trends in Datacenter Technologies
PREVIEW 2016 Trends in Datacenter Technologies OCT 2015 Rhonda Ascierto, Research Director Andy Lawrence, Research Vice President Andrew Donoghue, European Research Manager Daniel Bizo, Senior Analyst
Web and Application Hosting 2015
MARKET FORECAST Web and Application Hosting 2015 SEP 2015 Liam Eagle, Senior Analyst, Service Providers Web and application hosting, a mature IT market, is facing changes to the variety of services on
DATACENTER CANADA MTDC MARKET ASSESSMENT REPORT EXCERPT SUPPLY AND PROVIDERS MICHAEL LEVY WRITTEN BY DECEMBER 2012
CANADA MTDC MARKET ASSESSMENT SUPPLY AND PROVIDERS DATACENTER WRITTEN BY MICHAEL LEVY DECEMBER 2012 451 RESEARCH: DATACENTER COGECO DATA SERVICES COGECO DATA SERVICES Headquarters: Toronto, ON President:
Telco Multi-Play and Content Strategies
THOUGHT LEADERSHIP Telco Multi-Play and Content Strategies APR 2016 Declan Lonergan, VP, Research As telecom operators extend their convergence strategies and launch multi-play landline/mobile/tv services,
Seattle EXECUTIVE OVERVIEW MULTI-TENANT DATACENTER MARKET
Seattle MULTI-TENANT DATACENTER MARKET This report provides an overview of the competitive dynamics in the Seattle market, a 451 Research Market Map of the competitors in the area, market share of the
DATACENTER MULTI-TENANT DATACENTER NORTH AMERICAN PROVIDERS 2013 EXECUTIVE OVERVIEW KEY FINDINGS
MULTI-TENANT DATACENTER NORTH AMERICAN PROVIDERS 2013 DATACENTER KEY FINDINGS MTDCs remained a strong sector in North America during 2012 and this strong growth has continued during the first three quarters
WEB AND APPLICATION HOSTING
WEB AND APPLICATION HOSTING Summer 2013 KEY FINDINGS Although the Internet infrastructure services business continues to grow in every segment, that growth is slowing in some of the traditional infrastructure
Decision Framework, DF-19-1071 J. Holincheck. Application Service Provider Traditional Payroll/Benefits Outsourcing Business Process Outsourcing
Decision Framework, J. Holincheck Research Note 28 February 2003 Deciding to Insource or Outsource for Human Resources Enterprises making new technology decisions are often considering various types of
2016 Trends in Storage
PREVIEW 2016 Trends in Storage DEC 2015 Henry Baltazar, Research Director Though storage is far from dead, change is coming in the shape of new form factors such as hyperconverged infrastructures and disruptive
The Magic Quadrant Framework
Markets, B. Eisenfeld, F. Karamouzis Research Note 14 November 2002 Americas CRM ESPs: 2003 Magic Quadrant Criteria Gartner has developed high-level evaluation criteria for the 2003 Americas customer relationship
Predicts 2004: Supplier Relationship Management
Strategic Planning, D. Hope-Ross Research Note 17 November 2003 Predicts 2004: Supplier Relationship Management Enterprises using technology to improve supplier relationships should pay attention to changes
Defining the PLM Magic Quadrant by Criteria and Use. We provide the methodology used in developing our product life cycle management Magic Quadrant.
Markets, M. Halpern Research Note 18 March 2003 Defining the PLM Magic Quadrant by Criteria and Use We provide the methodology used in developing our product life cycle management Magic Quadrant. Core
Small and Midsize Business IT Outsourcing Vendor Market Trends, 2003 (Executive Summary) Executive Summary
Small and Midsize Business IT Outsourcing Vendor Market Trends, 2003 (Executive Summary) Executive Summary Publication Date: 15 January 2004 Author Robert H. Brown This document has been published to the
Business Intelligence: The European Perspective
Markets, F. Buytendijk Research Note 5 November 2002 Business Intelligence: The European Perspective When choosing business intelligence products, European users are not that different from North American
Lead architect. Business architect. Technical architect. Lead Architect
Tactical Guidelines, G. James Research Note 20 September 2002 Best Practices for Selecting Enterprise Architects A good enterprise architect needs not only excellent technical skills, but business and
This white paper was written by Csilla Zsigri, The 451 Group, based on the work done by the SmartLM Consortium in business modeling.
THE BUSINESS SIDE OF SOFTWARE LICENSING Although licensing models have evolved with technology innovations, they do not fully satisfy the business issues faced by today s enterprises. The focus of successful
Magic Quadrant for Data Center Outsourcing, 4Q03
Markets, R. Matlus, W. Maurer, L. Scardino, B. Caldwell Research Note 12 November 2003 Magic Quadrant for Data Center Outsourcing, 4Q03 Gartner's positioning of the 14 external service providers in the
DATACENTER NORTH AMERICAN MULTI-TENANT DATACENTER SUPPLY EXECUTIVE OVERVIEW. Emerging Major Markets 2013 DECEMBER 2013
NORTH AMERICAN MULTI-TENANT DATACENTER SUPPLY Emerging Major Markets 2013 DATACENTER DECEMBER 2013 REPORT SNAPSHOT TITLE ANALYSTS North American Multi-Tenant Datacenter Supply: Emerging Major Markets 2013
2010 Gartner FEI Technology Study: Planned Shared Services and Outsourcing to Increase
Research Publication Date: 20 April 2010 ID Number: G00176029 2010 Gartner FEI Technology Study: Planned Shared Services and Outsourcing to Increase John E. Van Decker, Cathy Tornbohm This Gartner Financial
RBC Insurance Fetes Online Auto/Home Insurance Growth
Case Studies, K. Harris Research Note 29 October 2002 RBC Insurance Fetes Online Auto/Home Insurance Growth RBC Insurance's e-business successes are generating greater than $3 million in premiums per month.
EMEA CRM Analytics Suite Magic Quadrant Criteria 3Q02
Decision Framework, J. Radcliffe Research Note 26 September 2002 EMEA CRM Analytics Suite Magic Quadrant Criteria 3Q02 Europe, the Middle East and Africa Customer Relationship Management Analytics Suite
Research Agenda and Key Issues for Converged Infrastructure, 2006
Research Publication Date: 20 July 2006 ID Number: G00141507 Research Agenda and Key Issues for Converged Infrastructure, 2006 Sylvain Fabre Gartner's research will cover fixed-mobile convergence, the
CIO Update: Gartner s IT Security Management Magic Quadrant Lacks a Leader
IGG-04092003-04 M. Nicolett Article 9 April 2003 CIO Update: Gartner s IT Security Management Magic Quadrant Lacks a Leader Vendors in the Gartner IT Security Management Magic Quadrant for 1H03 are driven
How Deal Size Matters in IT Infrastructure Outsourcing (Executive Summary) Executive Summary
How Deal Size Matters in IT Infrastructure Outsourcing (Executive Summary) Executive Summary Publication Date: 2 January 2004 Author Bruce M. Caldwell This document has been published to the following
Management Update: Gartner s Updated Help Desk Outsourcing Magic Quadrant
IGG-02192003-03 R. Matlus Article 19 February 2003 Management Update: Gartner s Updated Help Desk Outsourcing Magic Quadrant The North American help desk outsourcing market is growing despite a down economy.
Management Update: Gartner s Large-Enterprise HRMS Magic Quadrant for 2002
IGG-10232002-03 J. Holincheck Article 23 October 2002 Management Update: Gartner s Large-Enterprise HRMS Magic Quadrant for 2002 The market for large-enterprise human resources management system (HRMS)
Outlook for the CRM Software Market: Trends and Forecast (Executive Summary) Executive Summary
Outlook for the CRM Software Market: Trends and Forecast (Executive Summary) Executive Summary Publication Date: October 30, 2002 Authors Thomas Topolinski Chad Eschinger Pranav Kumar This document has
PLM Eclipses CPC as a Software Market
Markets, M. Halpern, K. Brant Research Note 20 March 2003 PLM Eclipses CPC as a Software Market Gartner is retiring the Collaborative Product Commerce Magic Quadrant and introducing the Product Life Cycle
Magic Quadrant for Global Enterprise Desktops and Notebooks
Magic Quadrant for Global Enterprise Desktops and Notebooks Gartner RAS Core Research Note G00207470, Stephen Kleynhans, 10 November 2010, R3553 11302011 In the general PC market, price is often the main
Like all football clubs, PSG suffered from unsold seats for the less-popular games. Even when it was able to sell tickets for
Case Studies, E. Thompson Research Note 2 January 2004 Paris Saint-Germain Football Club Scores With CRM Strategy French soccer club Paris Saint-Germain switched from mass marketing to more targeted customer
Don't Pay to Support CRM 'Shelfware'
Tactical Guidelines, J. Disbrow Research Note 3 May 2003 Don't Pay to Support CRM 'Shelfware' Enterprises license customer relationship management solutions that are often never totally deployed. Software
IT Services Opportunities in IP Telephony (Executive Summary) Executive Summary
IT Services Opportunities in IP Telephony (Executive Summary) Executive Summary Publication Date: 12 January 2004 Author Eric Goodness This document has been published to the following Marketplace codes:
Achieving Enterprise Software Success
Achieving Enterprise Software Success A study of buyer and seller perspectives on the drivers of enterprise software success 2008 Table of Contents Executive Summary... 2 What is Success?... 3 A New Study
CARRIER-NEUTRAL COLOCATION 2009 DATACENTER REPORT BY JASON SCHAFER APRIL 2009 2009 TIER1 RESEARCH & THE 451 GROUP DATACENTER
CARRIER-NEUTRAL COLOCATION 2009 DATACENTER REPORT BY JASON SCHAFER APRIL 2009 2009 TIER1 RESEARCH & THE 451 GROUP DATACENTER REPORT SNAPSHOT TITLE Carrier-Neutral Colocation 2009 ANALYST Jason Schafer,
Estimating the Costs of an ERP/Business Application Initiative
Estimating the Costs of an ERP/Business Application Initiative Gartner RAS Core Research Note G00167162, Denise Ganly, 30 April 2009, RA4 09122009 Using a cost-estimation process will help to ensure that
DATACENTER NORTH AMERICAN MULTI- TENANT DATACENTER SUPPLY EMERGING MAJOR MARKETS 2011 JEFF PASCHKE, RICK KURTZBEIN & MICHAEL LEVY REPORT BY JULY 2011
NORTH AMERICAN MULTI- TENANT DATACENTER SUPPLY EMERGING MAJOR MARKETS 2011 DATACENTER REPORT BY JEFF PASCHKE, RICK KURTZBEIN & MICHAEL LEVY JULY 2011 2011 TIER1 RESEARCH & THE 451 GROUP DATACENTER Tier1Research
Management Update: How to Implement a Successful ERP II Project
IGG-09252002-02 B. Zrimsek, P. Phelan Article 25 September 2002 Management Update: How to Implement a Successful ERP II Project Gartner provides insights and recommendations on how enterprises can make
Global Case Studies in Highly Efficient Datacenters 2014
Global Case Studies in Highly Efficient Datacenters 2014 For datacenters, efficiency and operational excellence are achievable in any location, despite regional differences in datacenter markets across
Management Update: The Eight Building Blocks of CRM
IGG-06252003-01 S. Nelson Article 25 June 2003 Management Update: The Eight Building Blocks of CRM Customer relationship management (CRM) represents the key business strategy that will determine successful
Vendor Classification
Markets, L. Geishecker, F. Buytendijk Research Note 2 October 2002 Introducing the CPM Suites Magic Quadrant Vendors are developing a wide range of new functionality for corporate performance management.
IP Centrex and IP Telephony Offer Different Capabilities
Competitive Analysis IP Centrex and IP Telephony Offer Different Capabilities Abstract: As IP Centrex and hosted IP telephony services become more mainstream, organizations must assess which solution is
This document has been provided by the International Center for Not-for-Profit Law (ICNL).
This document has been provided by the International Center for Not-for-Profit Law (ICNL). ICNL is the leading source for information on the legal environment for civil society and public participation.
