날이 갈수록 정교해지는 사이버 보안 위협을 신속하게 해결하기 위해 자동화가 주요 전략으로 꼽히는 가운데, 글로벌 사이버 보안 기업 포티넷 코리아는 올해 시큐어 네트워킹·SASE·보안운영(SecOps)을 주력으로 국내 투자를 본격 확대한다.
Focusing on three major areas: Secure Networking, SASE, and Security Operations
This year's target is 20% growth compared to the previous year... Expanding partnerships and entering public demand
AI Security Operations Solution Reduces Threat Resolution Time to 10 Minutes
As automation is considered a key strategy to quickly resolve increasingly sophisticated cybersecurity threats, global cybersecurity company Fortinet Korea is expanding its domestic investment in earnest this year, focusing on secure networking, SASE, and security operations (SecOps).
Fortinet Korea held a press conference in Samseong-dong on the 6th and announced its strategy to actively attack the domestic network security market in 2024.
Fortinet Korea CEO Won-Kyun Cho said, “Last year’s sales performance showed approximately 14% growth, and Fortinet is receiving positive reviews in the firewall market. This year, we are expanding our partners to 250 companies and increasing our investment in human resources by 25%, with a goal of 20% business growth compared to the previous year.”
Additionally, “For the past 20 years, Fortinet has been converging networking and security, integrating multiple products into a single platform. “Based on over 100 resolved cases, we have over 50 enterprise cybersecurity products,” he said. “This year, we will actively target the security operations (SecOps) market centered on SASE and SOAR, and expand our customers by industry and region, such as by establishing local organizations.”
Fortinet plans to strengthen its new market penetration with three core strategic solutions: Secure Networking (68%), SASE (21%), and Security Operations (11%), and establish policies to enter the public market and expand the MSSP business model. In addition, the company plans to develop a SaaS (Security as a service) model with major partners to present optimal security measures to domestic companies including telecommunications companies, and to strengthen and expand coverage for major companies in each industry.
Fortinet has been strengthening its security fabric platform by launching 'FortiGate 3200F', 'FortiGate 900G', 'FortiGate 90G', 'FortiSwitch 600', and 'FortiSwitch 2000' last year. It has also signed partnerships with domestic and foreign companies such as KT, Google Cloud, and Digital Realty.
■ The biggest security threats in Korea...'Phishing', 'Ransomware'
Fortinet announced the status of security operations (SecOps) in Korea, commissioned by IDC, and presented insights into current security operations based on a survey in the Asia Pacific region.
In a survey of 550 security professionals in the Asia Pacific region and 50 in Korea, more than 50% of companies cited ‘phishing’ and ‘ransomware’ as the most prevalent cybersecurity threats in their country. Patch vulnerabilities, identity theft, and supply chain threats followed. While there were some differences in the key security issues in the Asia Pacific region, the top factors were similar.
In particular, 62% of organizations reported that ransomware incidents had at least doubled compared to last year. More than 54% of respondents said that working remotely has increased insider threats since the coronavirus pandemic.
Additionally, approximately 44% of companies recognize that their current tools are insufficient to respond to current security threats in a timely manner, and approximately 70% of companies prioritized rapid threat detection through automation to respond to this.
About 78% of companies are introducing automation and orchestration tools to their security operations. In particular, about 95% of respondents said that they experienced productivity improvements, such as an improvement of incident detection time of more than 25% through automation.
Achieving automation means supporting intelligence optimization and automated response with a security operations solution that integrates IT and OT.
Fortinet supports intelligent AI-based security operation solutions to address automation requirements and present incident detection and response strategies. Fortinet Managing Director Jong-Seok Park said, “With 10 years of AI/ML know-how, Fortinet detects threats and shortens response times with AI-based security control solutions in the process of identification, protection, detection, response, and restoration.”
As a key solution, Fortinet presents 'SOAR (Security Orchestration, Automation, and Response)'. SOAR simplifies cybersecurity response by providing a single integrated platform by interconnecting heterogeneous devices with connectors based on standardized processes within the organization. This can reduce the time to detect an incident from 21 days to less than an hour, and the investigation and resolution time from 18.5 hours to 10 minutes.
Fortinet's recently launched 'Advisor' applies generative AI to security control. The situation-aware GenAI assistant simplifies and automates important SOC activities. It has been applied to Fortinet's SIEM and SOAR, and the scope of application is planned to expand in the future.