Hacker News new | ask | show | jobs
by 9g3890fj2 994 days ago
Pentester/red teamer here, this point from the article is the key:

"Properly trained, staffed, and funded network security teams can implement the known mitigations for these weaknesses."

You need someone who actually understands networking tech at a deep level to accomplish anything beyond what expensive tooling/devices will offer you. Otherwise, you're always going to be limited by whatever vendor you're using and the capabilities they build in, assuming you're using the solutions to their full capability.

2 comments

> "Properly trained, staffed, and funded network security teams can implement the known mitigations for these weaknesses."

A lot of companies struggle to have property trained, staff and funded IT, let alone their security team.

Yeah, I feel that. Anyone can have a good password, but it's hard to do all that networking stuff. Small teams really suffer on this one more than the other 9, at least in my experience.