Comment You're not out of touch, the model is inadequate ! (Score 1) 261
Although there are some excellent points raised here by some extremely knowledgeable people, I think the status quo is too complex. The average sysadmin/security tech today is dealing with: numerous security applications, which may or may not be compatible with each other and ultimately may compromise the actual business model of the enterprise in the name of security; careless and reckless human behavior; and what I call the patching polka and the intrusion detection dance, just to keep their heads above water in an imperfect system that can't be guaranteed 100% foolproof. No wonder security people/admins are overwhelmed!
I'm helping a small startup that has come up with a new approach to Security. The developer has found a way to convert any stock Linux system into a manageable trusted operating system, complete with mandatory access controls and fine-grain auditing of all system users, in literally minutes. This advanced security system, called Praetor, protects against external and internal threats, and uses pre loaded templates and an interactive GUI, so is a real time saver.
It seems to me that this system could act as a last line of defense, as it protects the core of the system, and augment any other security system. The more I learn, the more I am thinking of getting even more involved.
Can anyone tell me if there is potential in a product like this? Check it out at www.googgun.com. (Warning, the system is commercial and only works with Linux)