

As information-technology environments disperse and hybridize, visibility is becoming a greater challenge. Monitoring different cloud environments across vast networks requires sophisticated data-analyzing tools. In the security space, the situation is even hairier; companies keep piling on point solutions to monitor diverse environments while gaining little or nothing in threat detection and prevention.
The problem is that visibility in security operations tends to be rather limited, according to Sanjay Munshi (pictured), vice president of product management at Netscout Systems Inc.
Mushi spoke with Peter Burris (@plburris), host of theCUBE, SiliconANGLE Media’s livestreaming studio, at theCUBE’s studio in Palo Alto, California. They discussed Netscout’s “visibility-without-borders” approach to improving security operations (see the full interview with transcript here). (* Disclosure below.)
In the typical Fortune 500 enterprise, IT will rely on just one monitoring tool for network operations and cloud operations, according to Munshi. Meanwhile, in the same company, SecOps toils with a whole arm full of monitoring tools.
“Analysts are saying today that a typical Fortune 500 in the U.S. has 70 disparate security tools,” Munshi said. “Why is it that on the NetOps and CloudOps side they need one tool — Netscout for example — but on the SecOps side, there are 70 different products? The reason is not only smart data, but also smart architecture.”
There is usually a border that prevents SecOps from seeing what NetOps and CloudOps can see. That border holds SecOps at the device level and keeps it from reaching wire and packet data, Munshi explained. This means they must wait longer, take more steps, and use more tools to figure out what’s happening beyond the border.
Netscout has built a two-tier architecture with distributed instrumentation. Its distributed sensor framework generates smart data from the wire and from packets. Then, its centralized analytics layer correlates data across hybrid cloud infrastructure and provides customers complete visibility across the portfolio of their data centers. Netscout provides consolidated visibility across NetOps, CloudOps and SecOps that is unparalleled in the market, according to Munshi.
Analyzing data directly from the wire and from packets expedites threat detection and forensics from “day zero” to “day minus,” according to Munshi. “You can detect these phases much earlier than if you rely on device data, NetFlow or Syslog,” he concluded.
Watch the complete video interview below, and be sure to check out more of SiliconANGLE’s and theCUBE’s CUBE Conversations. (* Disclosure: Netscout Systems Inc. sponsored this segment of theCUBE. Neither Netscout nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)
Support our open free content by sharing and engaging with our content and community.
Where Technology Leaders Connect, Share Intelligence & Create Opportunities
SiliconANGLE Media is a recognized leader in digital media innovation serving innovative audiences and brands, bringing together cutting-edge technology, influential content, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — such as those established in Silicon Valley and the New York Stock Exchange (NYSE) — SiliconANGLE Media operates at the intersection of media, technology, and AI. .
Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a powerful ecosystem of industry-leading digital media brands, with a reach of 15+ million elite tech professionals. The company’s new, proprietary theCUBE AI Video cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.