Friday Tech News

9/15/2023

Good morning and Happy Friday team!

This week I’m back at home and had more time to really dive into the news of the week. We’ve got major announcements on things like:

  • Vulnerability Management

  • Incident Response

  • Data Security

  • Cloud Security

  • AI Security

If there’s anything you’d like me to be reporting on that you don’t see, please let me know. I’ll be happy to start including new items in the newsletter!

Thank you so much for making this a part of your Friday morning coffee time. I'm Phil Moroni, and I'm an Account Executive in the Information Technology Services Industry here with another edition of Friday Tech News!

What is this? This is a newsletter that provides updates and insights on the latest trends and developments in the technology industry. I am a professional who specializes in supporting IT leaders in evaluating, investing, and managing people, processes, and technology tools that support their businesses.

Each week, I summarize relevant industry updates from popular Original Equipment Manufacturers (OEM's), software publishers, and managed providers. The goal of my research and newsletter is to keep you informed about current trends and events that may impact your business from a trusted and reputable source. It's just information I'm sharing, and, I follow and work with hundreds of partners in the industry, keeping track of their growth, changes, and evolution so that you don't have to.

Bottom Line: As you focus on improving your business through digital initiatives, my commitment is to keep you informed of the fast-paced changes and trends taking place so that you can plan ahead and stay ahead of the game.

Key areas of focus for me are:

  1. Cloud Computing, Security, Trends

  2. Developer & Security Tools

  3. Networking & Infrastructure Tools

  4. End User Tools & Workspace Tech

  5. Emerging Technologies and Future Concepts

If you have any questions, would like information about any specific vendors I follow, or would like to have a conversation about any topic that is challenging you, I invite you to engage with me! I value feedback immensely and would love to know what you find valuable about this newsletter so feel free to reach out!

Thank you for reading, and stay digitally and physically safe!

Phil

OEM News & Updates 📰

  • Increased collaboration between new vendors and traditional players is important. Cloud environments are complex and dynamic and no single vendor can provide a complete security solution. Specific benefits include improved visibility and context, more effective security enforcement, and reduced risk of data breaches.

  • Should be a significant improvement over v1. It offers improved security, support for new features, and enhanced performance and reliability.

  • K8s is appearing more and more as the defacto standard for container orchestration. This new platform improves security, performance, and overall simplifies management.

  • I like what N2WS is doing. I have many conversations around disaster recovery and backup of native cloud environments, and there are only a few players trying to tackle this problem outside of the traditional backup and recovery data protection players.

  • Improves several things, and I can’t stop following how Datadog is expanding their portfolio. Expect improved visibility into data pipelines, reduced risk of data outages, and improved performance for data pipelines. Observability in the cloud is super important and hard to justify from a cost perspective, but, this new integration should make monitoring of data pipelines a lot easier.

  • Patch immediately, enable MFA, and monitor your systems for suspicious activity.

  • Easily and securely share data between Salesforce and Databricks environments. Expect improved data sharing and collaboration capabilities, enhanced AI capabilities, and overall improvements to Data and Analytics capabilities.

  • Improvements in performance and reliability coupled with reduced costs are why people are investing in SDWAN services. Fortinet is creeping up against the likes of Cisco in the Enterprise and I expect we’ll see more from them in the next year at large scale companies.

  • The partnership will give organizations the ability capture, store, and analyze all of their network traffic in real time and quickly analzye and investigate security incidents and network performance issues.

  • Big fan of the content Proofpoint produces for Cyber Awareness Education. They’ve got new security awareness features in phishing simulations and security awareness campaign training.

  • Copado has a new platform and is the first turnkey end-to-end DevOps solution for enterprise SaaS. Copado 1 will provide enterprise SaaS companies with everything they need to implement and manage a DevOps pipeline from planning and development to testing and deployment.

  • I like what SCYTHE is doing and in their new platform they have improved overall security posture to help reduce risk and improve the user experience when dealing with threats and attackers.

  • New enhancements including expanded threat intelligence, improved attack surface discovery and analysis, enhanced risk assessment and prioritization and overall improvements against the remediation capabilities included in the product.

  • This will give orgs a one stop shop for SaaS compliance with solutions that can help companies to identify and remediate security risks and to automate their compliance reporting and audits.

  • The new generation of Dremio’s Reflections include a number of features and enhancements including Automatic reflection generation, improved performance, support for new data types (JSON, Parquet, ORC) and enhanced security protocols.

  • More data sharing and partnerships from Snowflake. Data sharing here allows businesses to share data between their SFDC and Snowflake environments without having to ETL the data.

  • Armis Centrix will now have Passive network monitoring, asset fingerprinting, vulnerability scanning, and threat intelligence in the platform to help companies mitigate risks against IT, OT, IoT, and ICS devices.

  • Cool announcement here. It’s a new digital forensics product that offers IR readiness to companies of all sizes. It helps optimize resources and accelerate MTTR, perform ad-hoc and conditional trigger based evidence collections, and automate the collection of evidence across the environment.

  • Great announcement from JFrog. Big fan of what they’re doing. The new platform includes:

    • JFrog Artifactory - Universal artifact rep that can store all types of things including binaries, packages, and container images.

    • JFrog Pipelines - CI/CD platform that automates the Software delivery process

    • JFrog Xray - security scanning to identify and remediate vulns in software

    • JFrog Connect - cloud platform that provides a unified view of all JFrog products and services

  • Observability is huge right now. But how do you calculate it’s ROI? This partnership will help organizations to speed up data issue detection and resolution by providing them with a unified platform for monitoring data pipelines and data quality.

  • This will help organizations to proactively identify and resolve remote connectivity issues before they impact employee production.

  • Variety of features including Flexible billing, automated billing, financial reporting, etc. Expect improved efficiency, visibility, and profitability as well.

  • New capabilities here include a granular risk scoring framework, features that enable vuln prioritization and workflow prioritization, and support for evolving SBOM landscape.

  • Cool stuff here. Qlik Staige is making AI more accessible and manageable for businesses of all sizes. Staige is a holistic set of solutions that helps organizations build a trusted data foundation for AI and deploy AI for advanced use cases in business.

  • This partnership enables organizations to combine Lacework’s security data with Snowflake’s data warehousing capabilities. This allows orgs to gain a more comprehensive view of their security posture and to identify and remediate security risks more quickly and effectively.

  • Key insight here is that CloudBees Jenkins can help organizations improve performance and scalability of their Jenkins pipelines (which are freakin everywhere). This can lead to a number of benefits including faster deployments and improved developer productivity.

  • Make it easier to migrate Oracle workloads to Azure. This is a fully managed Oracle Database service that allows organizations to run Oracle DB’s directly in Azure.

  • The partnership here enables organizations to use SecurityScorecard’s insight ratings to prove cyber insurance posture. Pretty neat integration and I’m sure super useful.

Articles I Liked This Week 💡

  • I talked with a prominent Security leader I know in the industry who’s biggest question was, “were they shut down, or did THEY shut it down?” in reference to gaming, betting, and other activities that transpire at casinos in digital format. It seems that they were out of control completely.

  • I see this ALL THE TIME. What is your strategy and migration plan for moving workloads to the cloud? Have you documented the strategy? Built yourself a CCOE for governance, and started moving workloads to the cloud? If you are in charge of migrating applications to the cloud and DON’T know the overall strategy, something is definitely wrong.

Tech Funding & M&A 💸

  • Zenity is an Israel based security and governance platform that provides solutions such as anomaly detection, risk mitigation, and work optimization for no-code applications.

  • Prot is an Israel based SaaS platform that offers solutions such as cloud resource and data engineering for developers.

  • Husprey is a France based digital platform that enables data analysts to create SQL notebooks and collaborate across teams.

  • Veza is a California based identity security platform that offers solutions such as cloud data authorization, access management, and threat detection for businesses.

  • Databricks is a California based cloud-enabled platform that offers solutions such as data warehouse management and analytics for businesses.

  • Spectro Cloud is a California based cloud infrastructure platform that allows enterprises to run k8s infrastructure stacks in data centers.

Meme of the week 🤣

There’s a special place in my heart for this meme as I posted it over 10 years ago on Facebook. I’m sad the iPhone mini is gone from announcements this week, but seriously people - use a turn signal out there (especially if you’re in NC & SC).

Bonus meme for the Casino operators out there:

Recommendations 👉🏻

This is a section that I intend to build out more! Know fantastic newsletter resources for information? Please let me know so I can start linking appropriate reads here!

Return on SecuritySave hours of market research with a weekly review of cybersecurity funding and industry news in 5 minutes, with the occasional deep-drive blog post.