Blog
What's In the Box?!
One video, lots of consternation. Decryption matters.
Tiffany Lieu
October 1, 2019
Some vendors argue that network detection & response products can provide all the insight and threat detections you need without decrypting any traffic. We disagree. Without decryption, tools like NetWitness and StealthWatch are forced to make assumptions and inferences about the nature of an attack without having full payload data to back it up. For true enterprise Network Detection and Response, you need complete visibility at scale, and that requires decrypting traffic between critical assets within the network, at the very least.
All jokes aside, security without decryption is like driving without mirrors. 74% of businesses either already encrypt their internal traffic with TLS 1.3 or will start to within 6 months according to EMA research, and if SecOps teams don't update their decryption capabilities, the number of successful attacks using encryption is only going to increase.
Check out the complimentary ebook, "Encryption vs. Visibility: Why SecOps Must Decrypt Traffic for Analysis," to learn about different methods of safely embracing advanced encryption in your enterprise.
Discover more