Citrix Blogs

Curing your complex healthcare network ills with microsegmentation

This is a guest blog post by Sharon Besser, VP Business Development, Guardicore.

In its whitepaper, The Rampant Growth of Cybercrime in Healthcare, health IT advisor organization Workgroup for Electronic Data Interchange (WEDI) reported that attacks on the healthcare sector are becoming increasingly difficult to identify, prevent, and mitigate.

“Chronic underinvestment in cybersecurity has left many so exposed that they are unable to even detect cyberattacks when they occur,” according to the report. While attacks take only seconds, discovery and mitigation can take weeks, if not months. In healthcare, complex networks and sensitive data make this even more of a problem.

The Unique Challenges for Security in Healthcare Environments

With Citrix Workspace, data is stored in the data center rather than on endpoint devices, protecting patient health information such as clinical trial data and patient financial data. Citrix Networking reduces the attack surface by consolidating access points with granular access control policies, including support for multi-factor authentication to assist with different regulations and compliance mandates.

To secure applications and reduce the overall risk for healthcare networks, enterprises require network segmentation. Unfortunately, using traditional technologies like VLANs and firewalls can be a challenge:

Together, Guardicore and Citrix address these challenges with software-defined segmentation. The core of the technology is based on the concept of a distributed firewall that runs on the workload itself. At the same time, centralized management calculates the policy and distributes it between the workloads.

With this approach, there is no need to purchase and place firewalls, reducing costs, adding simplicity and accelerating implementation. There are also no networking or architecture changes involved and no downtime, dramatically speeding up the process from end to end.

As the policy follows the workload, there’s no need to change the policy when machines move, migrate to the cloud, or when applications autoscale. To create accurate and valuable policies, Guardicore Centra’s visibility tool shows all application dependencies and includes granular detail down to Layer 7.

Suddenly, segmentation is no longer a months-long project. This enables easy implementation of numerous use cases in parallel, from creating large security zones, preventing unauthorized applications or strictly whitelisting a very critical server.

Exit mobile version