Thursday, March 08, 2012

IT financing is not a deal saver

But it is a great sales tool if introduced early enough

The idea of IT financing is anything but new. Leases and loans for IT equipment have been around for years. The financing game has moved on considerably in recent times, however. The options available to customers today are more comprehensive and flexible. Want to finance your whole project - hardware, software, services and all? No problem. And it often doesn’t matter which brands of hardware and software are in the mix.

The biggest problem with financing is that it is too often overlooked as an option. While it’s not right for everyone in every situation, many who could benefit from it are unaware of what’s on offer. Even if they think of it, financing is frequently perceived as complex, limited and costly.

I was discussing this state of affairs recently with Bill Harmer, Marketing Manager for IBM Global Financing (IGF) in the UK and Ireland. IGF runs as a discrete business within the IBM group, and has access to a huge chunk of capital to support leasing, loan and other financing arrangements.

IBM is not the only vendor offering financing services - Microsoft, HP, Cisco, EMC and others do too, to name but a few. Harmer’s perspective on how the financing business has developed is particularly interesting though as IBM has been in the game longer than most, from the early days when computers were hard to buy outright because they were so expensive.

Asked about the scope of what’s possible, Harmer confirmed what we have heard from other vendor financing arms, i.e. that deals have become very inclusive: “While we expect a reasonable amount of IBM product or service in the mix, it’s not a problem if other branded products or third party services make up the bulk of the investment. IGF regularly finances projects that include an element of software from other vendors, ISV applications, and even bespoke development and integration services from partners”.

But why would anyone be interested in financing anyway?

For the customer, a common motivation is cash flow management. This doesn’t take much getting your brain around; rather than pay for everything up front, you spread the cost out over a number of years. This has broad relevance in the current economic environment, but is particularly attractive to growing or more dynamic organisations, who would rather put cash to work elsewhere than lock it in IT assets. Whether it’s a lease, loan or combination of the two (e.g. lease the equipment, and put a loan in place to spread payment for software and services), the basic motivation is the same.

Financing also has the advantage of allowing investment and business benefits to be better aligned over time. A typical IT project is ‘front end loaded’ in terms of cost, and ‘back end loaded’ with respect to delivering anything useful to the business. By smoothing out the cost curve, you minimise the commercial overhead on the business during the development and implementation phase, thereby removing what can often be a significant financial burden.

Financing can also make securing funds for more ambitious projects easier, though it’s important to acknowledge that the organisation is still committed to the contract, and that the ultimate amount to be paid becomes a binding commitment. Financing is therefore not suitable if your business is not inherently sound.

So what’s in it for the partner, i.e. the VAR, reseller, integrator or ISV?

The most obvious benefit for a partner is that you get paid immediately, once the customer accepts the solution, thus avoiding the normal 30,60 or 90 day terms - this can include future committed services. You might even get a commission on the finance deal itself.

Financing then helps with the selling process. The focus is switched from the funds available in this year’s budget, to the budget that needs to be allocated per year over a 3-5 year period. This can broaden the scope of deals and assist when articulating the business case. Expressing savings or contribution versus costs on a quarterly or annual basis can often be appreciated more easily by business stakeholders than assumptive lifetime ROI calculations.

Leasing in particular also helps create a ‘stickier’ and more profitable ongoing relationship with the customer. Options often exist to upgrade during the contract term, and older kit can obviously be replaced for the modern up to date equivalent at renewal time. This allows upgrades and replacements to be sold without relying on the customer finding huge chunks of capital. And when the contract comes to an end, there is an automatic ‘compelling event’ for the customer to do something rather than ‘sweat their assets’.

It’s also worth saying a few words about fees. As Harmer explains, “We reclaim old equipment at the end of the contract, and it’s refurbished and reused through our Global Asset Recovery programme. Lease rates can therefore reflect the cost of asset depreciation more than the inherent capital value of the equipment per se.” This principle translates directly to an upsell opportunity for partners as higher end equipment often keeps its value better than low-end commodity kit.

Coming back to the question of financing being complex, rigid and hard to understand, Harmer dispelled this myth pretty convincingly by demonstrating an incredibly easy to use IBM portal for rapidly getting a quote, which is accessible from the IBM Global Finance web site (http://www-03.ibm.com/financing/uk/index.html). This can be used by partners to put financing options on the table with very little hassle.

Such facilities are important as the trick to making finance work is to introduce it early into discussions with customers as a way of smoothing and enhancing the sell. Contrary to popular belief, financing is not the best way to save a deal at the 11th hour when you are losing it for cost related reasons – that almost never works.

Originally published on CRN

Monday, February 27, 2012

Big data storage technologies

“Rip and replace” or “Complementary”?

All too frequently the IT industry gets caught up in a whirlwind of marketing stories indicating that the next revolution bringing answers to peace, happiness and world hunger has begun. Freeform Dynamics recently published a report looking at this year’s ‘must have’, namely big data and how this will influence various storage technologies as things move forwards.

One of the biggest challenges with big data hype is actually defining just what the expression means. Indeed after ‘cloud’, big data has become one of the most hyped terms in use in the IT world, but the reality is that it applies to a two quite different things: dealing with the sheer weight of data growth; and being able to understand the information hidden within different data sources to guide business decision.

When we look at managing the data explosion, we can boil it down to three core elements that are commonly referred to as the ‘Three Vs’ - namely Volume, Velocity and Variety. The ‘3Vs’ makes for a nice marketing phrase, but it needs some explanation. More importantly it doesn’t take account of the fact that much of the value in the data being generated by IT systems today has a low ‘signal to noise’ ratio, making it difficult to locate the nuggets of valuable information amongst the huge amount of data. A more complete discussion can be found here http://www.freeformdynamics.com/fullarticle.asp?aid=1419.



The real value of big data comes from the rapid analysis of data sources to provide information the organisation can exploit to generate new value or make better operational choices. This value is enhanced when this can be achieved in close to real time. Whilst our survey results highlight that the crown jewels of organisational data are still held in structured sources, many organisations recognise that they are holding rapidly growing volumes of data in other forms, much of which is not exploited to anything like its fullest extent. This is the challenge that big data is attempting to address.

In essence big data seeks to dig valuable information from the large amounts of data organisations are now generating every day. The data to be analysed may utilise feeds from both structured and unstructured sources, but the key point is that the value of information to be mined may not be found in rich seams, but rather needs to be sifted from very large volumes of data.

To analyse these large volumes of data, possibly taken from multiple sources, a number of information management technologies may be employed. It is worthwhile noting that very few, if any of the new data management technologies coming to market today and that have surfaced over the past few years are targeted solely at the big data space. Indeed, almost all data and information management solutions are likely to be utilised in big data projects as well as other, more ‘mainstream’ business uses.

In this context, the figure below is interesting, revealing as it does both current usage levels of a variety of such tools and platforms along with expectations for changes in usage levels expected to occur in the next three years. It should be noted that the self-selecting nature of web surveys makes it likely that both the usage levels of ‘new solutions’ as well as projections for their future usage are likely to be over-represented as people interested in the area being surveyed are more likely to take part.



As can be seen, apart from legacy databases and file systems there is an expectation that already well-established information management technologies such as relational database management systems will continue to enjoy growth in usage in the coming years. These will increasingly be complemented by less well-established, but long available solutions such as in memory database systems, WORM databases and OLAP multi-dimensional databases, which are expected to expand considerably from their smaller foundations.

The more specialist platforms that are now frequently associated with ‘big data’, but which are by no means exclusively utilised in this context, are starting from much lower installed bases. Of these, a range of scale-out storage solutions enjoys the strongest adoption so far, but these are still clearly in their infancy in enterprise use, never mind in big data solutions. Stream processing, distributed indexing and distributed analytics engines are only just starting to be rolled out.

But like their well-established information management solutions, the expectation is that all such systems will enjoy wider usage in the coming years. It can also be argued that should the business value of ‘big data’ solutions garner wider recognition, that that take up of the various information management systems could expand even more rapidly, especially as the generation of data as a whole shows no signs of abating.

What is clear is that neither ‘big data’ itself nor the use of any new information management or storage technologies are likely to mean an end to the use of established data management solutions. If anything, the reality is just the opposite. The study also shows that the knowledge levels amongst IT professionals as a whole of many new storage and information management systems today is still very low, especially of the newer technologies. This lack of knowledge is acting as a brake on take up of many new data management solution offerings. But the adoption of new solutions, whether related to big data projects or to meet other business needs does not mean the end of most established storage platforms nor the end of tried and trusted database management solutions.

Originally published on DCS UK

Tuesday, January 24, 2012

Time for a fresh look at Disaster Recovery?

Insights and tips for small and mid-sized businesses
by Colin Beveridge, Principal Analyst, Freeform Dynamics

Not many people read IT Disaster Recovery plans for pleasure but these documents are often far more insightful than the organisation’s Annual Report. That’s because the quality and scope of the DR plan instantly reveals the company’s relative priorities, levels of resource investment and commitment to business continuity planning.

At the very least, a robust, up-to-date and proportionate IT disaster plan shows not only that somebody cares enough to try and keep the wheels of industry turning but has also put adequate measures in place to minimise the risks of unexpected IT failure.

Of course, the interpretation of ‘adequate measures’ will always vary from organisation to organisation, according to local needs and resources, because there is no cookie-cutter model (one size fits all) for disaster recovery.

Nevertheless some fundamental principles do apply, regardless of organisation size and scale, which means that Small and Mid-Sized Businesses (SMBs) face very similar DR challenges to those of their larger counterparts. Even the smallest SMB needs to take some steps to protect the integrity of its business systems when things go wrong.

A Freeform Dynamics study focused on organisations with between 50 and 1000 employees shows that SMBs generally care about IT disaster recovery and proactively establish DR measures, even if they don’t always describe them in such terms.

However, the research also highlights some gaps and shortfalls in disaster recovery capability, which respondents readily acknowledge. Having said this, only 20% of SMBs indicated that investing in DR improvements would be considered as high priority spending:

The chart above is one of a number from the aforementioned research which tell us that a good proportion of SMBs are well aware of their DR challenges but most can’t afford to throw money at the problem areas, particularly in a difficult economic climate.

But that shouldn’t stop them taking a fresh look at their disaster recovery plans, not only to see if there are any affordable opportunities for incremental improvements in key areas, but also to check that any previous plans remain properly aligned with their systems portfolio and infrastructure.

Chances are that some re-alignment may be necessary, particularly if business systems, IT infrastructure or services have been changed or introduced since the last DR review. It’s also vital to pay specific attention to any changes in business priorities, working practices (such as growth of remote/mobile working), service delivery models or service providers, because these will all directly affect the business continuity and disaster recovery requirements.

Likewise a previously suitable mix of DR tools, techniques and technologies might now benefit from a rethink. SMBs may find that the falling cost of storage, the mainstream readiness of virtualisation technology and the maturation of third-party hosting services (including Cloud) offer real benefits of cost and timeliness, in terms of better IT resilience and recovery, when compared with a ‘traditional’ DR approach, such as offsite tape backup and recovery.

Perhaps, though, the biggest challenge for a smaller business is in knowing what ‘effective’ DR and good business continuity planning looks like in practice. This is where awareness of what works well elsewhere can be invaluable.

In an attempt to flush out some of the ‘best practices’ for SMB disaster recovery, our analysis of the research sample divided the interview respondents into two groups: a) those with comprehensive/ good IT DR, and b) those with inadequate/ poor IT DR capabilities.

On comparison of the two groups we saw some significant differences, with seven specific characteristics, or behaviours, that appear to stand out as ‘enablers’ of better DR performance.

Some of these enablers, such as inclusive planning (i.e. ensuring that IT disaster recovery planning is fully co-ordinated with general business continuity plans for people and process) and the prioritisation/ funding of DR investments, are hardly surprising because they represent the fundamental points of entry to effective DR anyway.

However, other enablers identified in the research may be less obvious to an SMB hoping to improve IT disaster recovery capability. These include the use of alternative storage media and advanced DR solutions, such as Continuous Data Protection (CDP) which facilitates rollback or recovery to a particular point in time – extremely useful if a key data store has become compromised, or otherwise invalidated by application or user error.

For a full discussion of the effective DR enablers and more information on this topic, you can download the full research report here

(originally published on computing.co.uk)

Monday, January 23, 2012

RIM changes its leadership, but not its course

On January 23rd, 2012, Research in Motion (RIM) announced Thorsten Heins as President and CEO. Mike Lazaridis, former Co-Chair and Co-CEO becomes Vice Chair of the Board, and also Chair of the Board’s new Innovation Committee. Jim Balsillie remains a Director. Barbara Stymiest takes on the position of Independent Board Chair. Prem Watsa joins as a new Board Director. All with immediate effect. The complete press release can be found here: http://press.rim.com/release.jsp?id=5358

So what’s new, apart from the personnel moves summarized above? Based on the official press release and what was said during the company conference call, the answer is: not a lot.

Thorsten Heins stated that the top priorities for his first 100 days in office would be – in that order - improved marketing (with the appointment of a Chief Marketing Officer), and the strengthening of processes and execution.

He also made it abundantly clear that the emphasis for the new CMO (to be brought on board asap) was going to be very much on the consumer market, with a particular emphasis on making up lost ground in the US. By contrast, nothing was really said about RIM’s enterprise customer base, and how to shore it up in the face of increasing competition.

Those who were looking for a change in overall company or product strategy were disappointed. Thorsten very firmly stressed the company’s commitment to BB10 (described as not simply a new operating system, but a new platform) and PlayBook 2.0, and hailed the technical superiority of both. He also made it clear that RIM was not going to hive off any parts of the business, as having an integrated approach (hardware, software and services) is seen as a key competitive differentiator. Requests to license BB10 would be considered on a case-by-case basis, but hardware-only deals were firmly ruled out.

Improvements to resource planning and program management will no doubt be a positive move, if they lead to fewer product delays and more stable early releases of new software. And better marketing can’t do any harm, provided the product and service are right. But there is little sign as yet that RIM is bringing the developers round to its vision of the future.

In the near term, urgent action is needed to address the enterprise part of the business. Despite having lost market share in some countries, RIM still has a large number of enterprise customers. If it wants to retain these, the company must spell out very clearly the reasons why these customers should stay loyal. While RIM may still have the edge when it comes to certain corporate requirements, such as security and central management, the gap is closing, and RIM has to move fast.

The big questions remain: Is this management change too little, too late? And how much room to manoeuvre will Thorsten Heins really have, should he decide a change in strategy is required after all, with the shadow of Mike Lazaridis continuing to loom large?

Monday, November 14, 2011

New analyst at Freeform Dynamics

It is my great pleasure to announce that Colin Beveridge joined Freeform Dynamics a week ago as Principal Analyst. And he's off to a flying start, as you can see from his blog post below. To say that Colin brings a wealth of experience to the role is probably the understatement of the day, and we all look forward to working with him. Find out more by looking at his profile here.

Metadata: the Jumbo Data problem?


A chance conversation about Big Data led me to think about the importance of metadata to effective information exploitation.

Of course, we have long recognised that we create actionable business intelligence and information by attributing meaning and context to data.

We also know that recording our thought-process and rationale for creating information from data can provide valuable insight for future decision-making. That's why metadata is so important.

And yet descriptive and contextual metadata is too often the metaphorical elephant in the data center, because our systems and databases still tend to be heavily biased towards transactional data capture, consolidation and transformation.

This makes me wonder, do we put sufficient effort into metadata management, or is it a Jumbo problem that we put in the "too difficult" box?

Thursday, August 04, 2011

Spreading iTunes beyond Apple equipment

This is a story of my experiences of using non-Apple equipment to expand my use of digital media stored in an iTunes library. How this library came to be is a long story, but back in the dark ages of digital media (late 90’s and into the early part of the naughties), I was holding out against moving to iTunes. I’d started building up my library in the 90’s and didn’t want to get locked into a particular vendor.

For a while it worked – Windows Media Player was pretty good at managing the library, while there was a range of hardware available to sync to. However, it all came to a head when Microsoft made changes to the workings of Media Player and hardware. This had the effect of removing support for syncing to many recent devices, rendering my Toshiba Gigabeat to the role of an expensive doorstop (in reality it found a second life as a very expensive USB hard disk drive with a screen).

In combination with the rapid drop in hard disk drive prices, this set me on a course to get a high quality media library in place and I moved to iTunes and the iPod and AirTunes to do this. I ripped my music library in Apple Lossless format to maintain full CD quality, while I created digital copies of my DVD and now Blu-Ray libraries to have available on the move and to protect the discs from the prying and very destructive hands of my small and very technology aware daughter.

Gradually, more iPods were acquired, and then iPhones, Apple TVs and iPads until eventually there was a sprawl. Things started to become a bit of a headache, as streaming content off one PC, and a notebook at that, left the Wi-Fi saturated. Content availability was quite patchy due to the limited ability to sync iTunes libraries (content, playlists, playcount, favourites etc) between different PCs and also devices.

At this point, I thought it would be good to see just how easy it would be to be broaden out beyond iTunes and iDevices and look at how easily third party solutions could integrate and extend the experience. At about this time, I was approached by Western Digital to try out a few of their consumer storage, networking and media devices for feedback on how they worked. And so the two came together and the result on the whole was very positive, although there were a few gotchas.

This is not meant to be an in-depth review of total features or technical competence, but rather a laymans approach to how simple and easy it is to branch out beyond iTunes, and as such is my personal experience and observations of using the kit.

So to kick things off, here is a summary of the Western Digital home computing and media devices, and my top level view of how they rate (for more about them please read on):

• LiveWire data over power adapters – 8/10 (easy to setup but could be faster)
• MyPassport 500GB USB 3 hard disk drive 10/10 (small, quiet, fast)
• 1TB LiveHub Network Attached Storage box 7/10 (No USB or Wi-Fi)
• TV Live Hub with 1TB of internal storage 6/10 (No Wi-Fi, no lossless audio, large file transfers >4GB can be an issue)

Moving off Wi-Fi helped performance and predictability

Looking first at the LiveWire data plugs, these were extremely easy to set up. I literally plugged the first box into the switch port on the router, and then into the power socket. I then plugged the second box into a power socket in my study and the two connected seamlessly. The Mac in my study is the iTunes library and is responsible for streaming a lot of content. This used to hammer the Wi-Fi, as clients would be streaming via the Wi-Fi access point too. Shifting the streaming over the LiveWire devices has really helped alleviate the pressure. Streaming videos in particular are now much more reliable, particularly the hi-def ones, and it has also helped when we stream things like BBC iPlayer HD content where freezes are noticeably less.

The downsides is the plugs really have to go straight into the power socket and not an extension with surge protection, and the speed of connection is around 100Mb/s – which while still very good compared to 802.11n Wi-Fi is still slow for wired Ethernet these days. Fast file transfers of very large files still require copying to an external USB hard disk and using the good old sneakernet.

An added bonus was solving a longstanding Wi-Fi and BlueTooth conflict on my Mac. I had reverted to using a wired Mighty Mouse because heavy use of Wi-Fi would cause BlueTooth on my MacBook Pro to get jittery and as a result the BlueTooth Magic Mouse was unusable. Switching off Wi-Fi and using wired Ethernet over the LiveWire plugs solved that and means I am a happy camper again with a multi-touch mouse.

Fast, light and small – ideal to transfer large files

Which brings us to the My Passport USB 3 hard disk drive. Unfortunately I don’t have any new PCs with USB 3 ports to really push the drive, but using USB it transferred files at 35 to 40 MB/s which is comparable to my larger 3.5 inch USB 2.0 drives and a noticeable boost on my 2.5 inch portable drives which usually top out at around 25 MB/s.

Very small and very light, it ran cool and quiet and enabled large media file transfers to be done very quickly and easily. I’ve not doubt this drive could provide somewhat more performance when connected to a USB 3 interface, but it will be with the emergence of lower cost SSD drives that I expect USB 3 to really shine.

NAS boxes with Media Servers still have niggling troubles

I then set up the MyBookLive NAS box. This was very easy to do, with an intuitive graphical interface and an easy administration routine. Part of the attraction of the device was the ability to do Time Machine backups, which was the first thing I set up.

It was also the first thing I turned off a week or so later, as I couldn’t find a way to limit the size of the TimeMachine backups to a set limit for each machine. What I found was that with 3 Macs backing up constantly the disk was just filling up and not being all that useful as a general NAS storage box. With a single Mac without too much changing this would be useful, but in my case with lots of big files changing regularly across multiple machines, it was pushing it a bit.

As a file server, everything was pretty easy to set up, especially the ability to set up shared public directories that are accessible on the local network, as well as creating secure private shares for individual users. A peculiarity I had was a difficulty connecting by a Windows drive mapping to a secure share. Using the supplied SmartWare software enabled this, but it was a bit strange.

While performance is adequate, the unit did struggle as a shared file server. This is to be expected with a single disk setup, and although more advanced caching may help there is a limit as to what can be expected.

As a media server, things are generally pretty simple to set up and share, but there were some issues.

Getting the bad news out the way first, accessing the iTunes server proved a bit problematic. The embedded ID3 information in the iTunes files got misread and so finding the artist was a headache as it was giving the composer. Then iTunes itself would not play the tracks themselves. They were listed, but when double clicked would not play, and yet the same files copied to the TV Live Hub iTunes Server would play in iTunes.

The other issue is that the iTunes server is not capable of streaming to the newer Apple devices that depend on Home Sharing being set up, such as the Apple TV 2. For me this would make a world of difference, as I would no longer have to run iTunes constantly on one of the Macs to feed the Apple TV local content.

It was a different story with the Twonky media server and Windows Media Player on my PCs – the tracks, artists and albums were listed properly, even bringing in the embedded album art and the tracks could be played without problem provided it was converted from Apple Lossless format to iTunes+ format.

The content could even be seen by my networked Sony Blu-Ray drive, although it doesn’t seem to like music ripped even in iTunes+ format (256kb/s variable bit rate) which is what my “converted” lower quality mirror library is ripped at.

At the end of it all, I ended up removing the media content from the NAS drive and hosting it on the TV Live Hub, both to free up space and because the TV Live Hub is the natural place for the media to sit, rather than having to stream from NAS to media player all the time.

There were two limitations that I would like to see addressed. The first is the lack of a high speed USB 2 or 3 port for fast loading of files and content, and the other is the omission of Wi-Fi, resulting in having to place the router and NAS device close together. I was hoping to put the NAS device in an inconspicuous place, which I could do by getting more LiveWire plugs but it would be good to have the option at least.

TV Live Hub has good capabilities, but needs broader media format support.

The TV Live Hub was straightforward to set up, although it did require about 3 sequential firmware updates to get everything fully up to date.

As a music library, setting everything up was a doddle. I must admit though, I was rather surprised that the player could not handle the Apple Lossless format. The player will import the lossless files happily, but is not able to play them. I solved the issue by just converting my main library to iTunes+ quality - but that did take 4 days to complete and is not all that convenient to have to do.

I copied my iTunes+ version of the library to a USB HDD, and then connected it to the TV Live Hub and it did the rest (although I ended up arranging the folders neatly for ease of folder browsing). The interface for choosing music is straightforward and logical. However, it does require the TV to be on to browse for music. Providing a remote application to select what to play from a browser or phone would be a good step here.

When it comes to video, things are a bit more complicated to get up and going. For smaller files such as rips of DVDs, it is easy enough to copy the files to a USB key or HDD and have them import simply. Or you can copy them across the network in a short period.

However, when playing HD content such as MKV versions of Blu-Ray discs which are 10’s of gigabytes in size, copying them to a FAT drive is not possible as they are too big. exFAT can handle file sizes this big, but the TV Live Hub does not yet support this very useful media format. The reason it’s so useful is that it is supported on Windows and Mac, and so is pretty universal.

Instead I found myself having to copy from Mac to exFAT USB HDD, then go to a Windows PC and copy again to an NTFS USB HDD to copy the content. Or else copy the file over the network, but 35GB files take the best part of a day to copy even over the LiveWire. The leftfield option may be to also support, even if read-only, Apple’s HPFS file system for easy copying.

Playback of HD format files is clear and good. When streaming there was a tendency for stuttering, but this was helped by moving the streaming server onto the LiveWire data plugs to free up some Wi-Fi capacity. I did have issues, however, playing a number of standard definition DVD rips from Handbrake which were set to the original Apple TV format.

On the usability front, things are pretty clear. The remote is sensible if somewhat odd shaped and could do with a little more tactility. What stands out is a lack of volume control over HDMI when used with a PC monitor that has no easy way to change the volume without touching buttons on the monitor. This is not a problem with a TV with remote volume control although it does require using two separate remotes.

It is nice to have integration with the iPhone, where a WD app allows photos and videos to upload directly to the TV Live Hub. This works seamlessly and is in use often more convenient than connecting the iPhone to iPhoto and importing them there first. The only issue I had was a rotation problem on videos, where depending on the orientation of the phone when recording the video had a tendency to play upside down as it did not recognise the orientation setting in the file data.

Again, the lack of Wi-Fi, particularly in a media player that will likely have to live in a very specific location in living rooms or bedrooms / kitchens etc, is a major omission in this device, and one that should be easy to rectify in future versions or else this should be bundled with LiveWire plugs to enable use in rooms without data ports.

A good start with minor niggles

Overall the experience has been a good one – both of broadening my view beyond the iTunes experience and of having an alternative way of organising my media that does not rely on either Apple or Microsoft. The downsides have been that the capabilities do not yet match an enthusiast’s expectations, although they would suit many casual users’ needs.

Not supporting Apple Lossless for me is an issue, and could be overcome by building in support or allowing seamless conversion to another lossless format. I don’t really want to have a library at lower quality, not have the headache of maintaining and synchronising a second library. Even building in an automatic converter to iTunes+ would be a good step forward.

Thursday, July 07, 2011

Time to get serious about managing security

Do you know what’s running in your network?

In this time of ever increasing security threats and hacking attacks, a recent meeting I was at brought home the old adage “If you can’t manage it, you can’t secure it.” I was talking to a major web services company that provides large scale hosting (no prizes for guessing who). Because of what they do, security naturally plays a massive role in their service architecture.

A large part of the success of their security implementation comes down to a combination of knowing what to protect and how to protect it. Knowing what to protect comes naturally, because they have to bill customers for resources or services used. As a result they know - to a very high degree - what is running on their infrastructure at any point in time, and can also flag up when unauthorised or suspicious services attempt to run.

When it comes to the how of protecting applications and services, they have invested in developing security policies and frameworks – based around standards such as PCI DSS, ISO 27001 or HIPAA - that are regularly – and independently - assessed and audited.

This type of investment in management and security is natural for service providers because it is core to what they do (although some do this far better than others). Yet when it comes to internal IT, our research shows that security and management are often areas that are a struggle.

A recent survey indicated that a large proportion of companies never have their security capability independently assessed, and even fewer undergo external auditing. Our on-going research into systems and service management continues to highlight that effective service and asset management – the foundations of good IT practice - are the preserve of the few rather than the domain of the many.

When it comes to improving the situation, one option of course could be to start to move applications into the Cloud. But for many, this is not really a viable strategy in the short or even medium term. This means that any improvements needs to made to internal IT policies, processes and tooling.

Lessons can be learned from how the service providers approach security and management in service delivery to improve the situation internally. If we consider this at the fundamental level, this is really the right way to secure and run IT. This means that getting serious about investing in management. Too often management is neglected and the fallout is dealt with as an IT operations overhead. But with the changing and ever more serious threat landscape good management it is no longer an IT option, it is a business necessity.

Originally published on Computing.co.uk