Microsoft's Forefront group eying compliance market

Microsoft has developed vulnerability assessment and compliance software that it hopes to roll into its Forefront product line.

Security vendors, Symantec and McAfee, may soon find Microsoft competing with them in a new market.

Microsoft has developed network-scanning technology, internally known as Spider, that scans PCs for security vulnerabilities, ensures that the latest patches are installed and that PCs have the required software to put them in compliance with corporate IT policy.

The software was developed by Microsoft's IT group to clamp down on security problems within Microsoft's own network, but the company is now looking at adapting it for its Forefront line of security products, a director with Microsoft Information Security, Mark Estberg, said at the SecureWorld Expo.

Some customers can already get access to the Spider technology through Microsoft's services group, he said.

"The goal is to get this software written into products that go out to customers, but as a near-term step, through services, you can get this software now," Estberg said.

The software had been a success at Microsoft, although his team received some "incredibly articulate hate mail" in the early days, after instituting a policy of cutting off Microsoft users whose PCs were not in compliance, he said.

"It's really, really painful ... but it made a big impact," Estberg said.

The software could scale to a large number of machines and was used to scan Microsoft's corporate network several times per day, Estberg said. It was agentless, requiring no additional software be installed on the client.

As Microsoft's entrance into the security market has begun to threaten their core antivirus product offerings, vendors such as McAfee and Symantec have been increasingly focused on developing products that can be used to enforce IT compliance.

McAfee, in particular, has been on a shopping spree in this area. It recently purchased Onigma, an Israeli vendor of data-leak prevention software, and Preventsys, a provider of risk management and compliance reporting software. McAfee is also in the process of closing its $US60 million acquisition of compliance vendor, Citadel Software.

Microsoft is in a position to simplify security for its customers by giving them one point of contact, said one show attendee, a San Francisco area IT risk manager who asked not to be identified. But that convenience could come at a price, he said: a lack of accountability and competition in the security space. "It boils down to the question, who's checking the checker."

Clearly, compliance is a growth area for the security industry, but with tensions already high between Microsoft and its security partners, it was unclear how quickly the company will move into this new market, program manager with Yankee Group's Security Solutions & Services Decision Service, Andrew Jaquith, said.

"The question is exactly how much more do you want to antagonise them?" he said.

Join the newsletter!


Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.
Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Robert McMillan

IDG News Service
Show Comments

Brand Post

Most Popular Reviews

Latest Articles


PCW Evaluation Team

Maryellen Rose George

Brother PT-P750W

It’s useful for office tasks as well as pragmatic labelling of equipment and storage – just don’t get too excited and label everything in sight!

Cathy Giles

Brother MFC-L8900CDW

The Brother MFC-L8900CDW is an absolute stand out. I struggle to fault it.

Luke Hill


I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Laura Johnston

MSI GS65 Stealth Thin

If you can afford the price tag, it is well worth the money. It out performs any other laptop I have tried for gaming, and the transportable design and incredible display also make it ideal for work.

Andrew Teoh

Brother MFC-L9570CDW Multifunction Printer

Touch screen visibility and operation was great and easy to navigate. Each menu and sub-menu was in an understandable order and category

Featured Content

Product Launch Showcase

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?