Your Questions Answered

Ask a question or browse earlier posts.


Are my calls really secure?

Siemens Enterprise Communications provides the most comprehensive set of products, solutions and services in the enterprise communications field. For example, certificate services for encrypted end-to-end voice communication – complying to internationally recognized security standards and certifications – to secure your calls. Depending on your security needs, our team of experienced professionals can help you navigate the risks, and recommend security measures that are appropriate.

Does a UC-firewall slow down my whole network or does it reduce the voice quality?

After having evaluated the network topology, the application requirements and the potential weak points, it is possible to implement just the right degree of control without having detraction. Also it is important to select devices that fit the individual situation best-that might be a firewall or some other intelligent hardware.

I only buy secure VoIP infrastructure. Why do I need additional security solutions or services besides the already built-in security of the products?

Product built-in security is important and the foundation of enterprise security. But networks tend to change and spread constantly. New Products and new applications are constantly integrated in changing environments and in changing processes. A great number of issues need to be analyzed and to be observed. Therefore, effectively securing real operations and communication in existing networks is as important as basic product security features.

I already secured my environment. When do I have to check again if security is up-to-date?

There is no general answer to this. But basically, after each change within your network the security concept should be checked again. Also, a regular routine security checked is recommended.

Having bought security products, services or solutions from Siemens Enterprise Communications once means I have to stick with their offering in the future?

No, it does not! Siemens Enterprise Communications embraces open standards in our technology, allowing you to integrate multiple solutions from different vendors. We are a provider that extends this open philosophy to approved 3rd party security solutions, giving you greater flexibility in configuring and maintaining your communications infrastructure. Integration is key!

I have already totally secured and encapsulated my system. Why should I need to think about multi-layered security concepts?

Purely fortress-like security systems do not work any longer. Today’s enterprises need information to flow seamlessly across a variety of systems and applications to increase productivity. Employees are increasingly demanding the freedom to work anytime and anywhere on any device of their choosing. In addition to this mobility and flexibility, they want an increasingly large feature set, including social collaboration tools and easy-to-use interfaces. Obviously, in order to avoid system-wide security breaches, enterprises today need a multi-layer approach to security.

What are the most dangerous threats for a modern IT- and communication infrastructure?

Voice communication is no longer a closed system. As voice and data networks – both IP based – migrate to a common network for unified communication, all threats known from data networks now also apply to voice communication. In addition, new forms of attack, like social engineering etc., arise continuously. Combined with today’s shortage of staff and a lack of internal expertise, these IT challenges highlight key issues faced by both IT and the end users as they attempt to establish secure communications. All these require continuous and comprehensive security concepts and a professional implementation based upon individual analysis.

Hackers and security leaks are all about. How can I mitigate security risks?

As more corporate data is transferred through corporate networks, cybercriminals are intensifying their attacks. New security threats are being developed as quickly as IT departments are adopting new technology, and corporate communications are coming under fire as never before. It’s no longer enough to think of security as a series of discrete elements in your IT infrastructure. Security must lie at the core of your operations and be an integrated part of your IT and voice networks.

Therefore, a multi-layered concept, adapted to your individual requests, offers the best approach to mitigate security risks.

What makes Siemens Enterprise Communications different from other suppliers?

At Siemens Enterprise Communications, we believe that security must be built in, not bolted on. Siemens Enterprise Communications incorporates fundamental security principles throughout the lifecycle of every product, solution and service, complying with internationally recognized standards. Our product, service and solution development and deployment is based upon our security philosophy: Our security focus begins at the moment a product, service or solution is conceptualized and continues through to implementation by our customers, and beyond. Each of our offerings integrates a robust set of security technologies, processes, and features to ensure compliance with our clients’ internal requirements. During the design phase of each of our solutions, we perform a comprehensive Theoretical Threat and Risk Analysis to assess real-world issues such as password management, as well as Penetration Tests during the testing phase to uncover and correct vulnerabilities.

In addition to extensive testing during product development, we ensure that our staff members are well versed in fundamental security procedures. We provide them with regular training on general security requirements. They also learn secure coding principles, to guide their software development efforts.

Our highly organized security procedures also include the development and deployment of security checklists and hardening guidelines for effective, secure software implementation. To prepare for and mitigate emerging threats, we create Incident Response and Vulnerability Management plans.

Our security philosophy encompasses the entire lifecycle of products, solutions and services. From the moment we begin to develop a new application, appliance or service, we carefully consider and integrate established internal security standards, as well as internationally accepted standards and certifications, including ISO 2700x, BS 25999, IT Service Management (ITIL) and the National Institute for Standards & Technology (NIST) among others. Our integrated, comprehensive security approach means our clients can rest easy knowing that their communications are as secure as possible.

What experience does Siemens Enterprise Communications have in IT and communication security?

Siemens Enterprise Communications has long been a global leader in corporate communications, providing solutions for organizations around the world. From small businesses needing a basic voice solution to connect employees in a single office to multinational enterprises with tens of thousands of employees needing a complete UC suite, we have helped businesses around the world secure and improve their communications infrastructure. For more than five years, we have been at the forefront of VoIP and UC protection, securing clients against an increasing number of threats, including Denial of Service attacks, spam and fraud. Throughout the years several hundreds successfully implemented Identity and Privacy security solutions have proven our expertise in comprehensive identity and access management, authentication, authorization and encryption technologies. In addition we have more than 15 years of experience in Threat Mitigation and Data Security. Nobody knows communications security better.

Can someone hack into my VoIP and UC network?

In the past, applications that were developed in silos – fortress-like security systems had been sufficient, keeping hackers successfully from breaking into networks. But today’s enterprises need information to flow seamlessly across a variety of systems and applications to increase productivity. In addition, end users are increasingly demanding the freedom to work anytime and anywhere on any device of their choosing. IT departments are consequently adopting new technology, new security threats become more pervasive and damages continue to mount. In just one year, from 2009 to 2010, attacks from cybercriminals targeting enterprise unified communications (UC) servers increased by 50 percent. And a full 25 percent of all attacks in the open Internet are against VoIP and UC. Today, a fortress-like security system is not appropriate any longer. A series of discrete elements is no longer enough to think about security. Today’s dynamic corporate environment demands a multilayer approach to security.

Is security built into everything that you sell?

At Siemens Enterprise Communications we are committed to establishing fundamental security practices in everything we do, from individual employee training to the global launch of complete communications infrastructure solutions. We believe that security must be built-in, not bolted on. Our product, services and solution development and deployment are based upon our security philosophy. And each of our offerings integrates a robust set of security technologies, processes and features to ensure compliance with our client’s internal requirements. Our security philosophy also encompasses the entire lifecycle of products, solutions and services. And we carefully consider and integrate established internal security standards, as well as internationally accepted standards and certifications, including ISO 2700x, BS 25999, IT Service Management (ITIL) and the National Institute for Standards & Technology (NIST) among others.

My staff don’t have the skills to manage a complex set of security needs. Do you have Managed Security Services?

Yes, we do offer Managed Security Services. To further improve the TCO and efficiency of your communications system, we offer a series of OpenScale Security Services to enable you to keep your communications secure while focusing on your core business. OpenScale Managed Services delivers a complete range of multi-vendor, multi-technology managed services–from simplest tasks to complete outsourcing including operation of communications solutions in a secure manner and operations of security solutions.

Open Scale Security Services can be designed with your specific requirements in mind, to offer support where and when you need it. Features include 24-hour call desk services, a Web portal for user assistance and alarm monitoring for critical incidents. From individual tasks to full outsourcing, we offer a full range of services including single point of contact for reporting, and multiple levels of SLAs to serve your needs across voice, UC and mobile network infrastructure.

I have heard that there is an increasing risk of cyber crime, especially for VoIP and UC. What can Siemens Enterprise Communications do to help?

As more corporate data is transferred through corporate networks, cybercriminals are intensifying their attacks. New security threats are being developed as quickly as IT departments are adopting new technology, and corporate communications are coming under fire as never before.

It’s no longer enough to think of security as a series of discrete elements in your IT infrastructure. Security must lie at the core of your operations and be an integrated part of your IT and voice networks.

Together with Enterasys, Siemens Enterprise Communications is the only vendor providing a holistic approach to secure real-time communication. Also, we partner with leading security companies, including Cisco, Check Point, Fortinet, Atos, Imprivata, TippingPoint and IronPort to establish the best security possible and to ensure that we are up to date with current events in the world of security.

We are committed to establishing fundamental security practices in everything we do, from individual employee training to the global launch of complete communications infrastructure solutions. At Siemens Enterprise Communications security is built-in from the start, not an afterthought.

Do I need a firewall for my voice traffic?

Depending on your individual situation, you sometimes do need a firewall for your voice traffic. Siemens Enterprise Communications offers OpenScape UC Firewall which is precisely designed to provide additional security for UC implementations. It helps you keep your UC system safe from IP-based attacks and unauthorized access from untrusted networks. It secures your communication and date infrastructure according to your security policy.

I am worried that when an employee leaves the company that they may still have access to their voice capabilities.

OpenScape Identity Lifecycle Assistance is the answer to this. This solution can bridge IT and unified communications systems, maintaining up-to-date user information across the IT infrastructure. This versatile tool is easily integrated into a variety of applications, including SAP HR, Microsoft Windows Active Directory and other identity management systems. It integrates UC user management into existing IT applications, automates user and UC feature deployment and enforces the security and compliance policy of the organization within a UC environment.

Our company already has a lot of corporate security infrastructure like firewalls and SBCs. Can Siemens Enterprise Communications integrate your products into that?

Yes, Siemens Enterprise Communications embraces open standards in our technology, allowing organizations to seamlessly incorporate our solutions into your multivendor infrastructure, and allowing you to integrate multiple solutions from different vendors. We extend this open philosophy to approved 3rd party security solutions, giving you greater flexibility in configuring and maintaining your communications infrastructure.

I have a corporate directory already, can I use that to add users and telephones

Yes, you can use your existing corporate directory for authentication and access control and when a new user is added they will have a phone number provisioned for them.

 

Your question is not answered below? Ask your question here:

Please enter your details and submit your own question


Please fill out the orange fields!




Share Print