Endpoint

9/20/2017
11:55 AM
50%
50%

SecureAuth to Merge with Core Security

K1 Investment Management, which owns Core Security, plans to acquire the identity management and authentication company for more than $200 million.

K1 Investment Management plans to acquire SecureAuth for more than $200 million and merge it with its portfolio company Core Security, SecureAuth CEO Jeffrey Kukowski told Dark Reading.

The merger, announced today, is expected to close within a matter of days pending US government regulatory approval, says Kukowski, who will be CEO of the as-yet-unnamed combined company.

SecureAuth is the sixth company K1 Investment Management plans to merge with Core Security, which last year became an amalgamation of Courion, Core Security, SecureReset, Bay 31, and Damballa.

The merger will bring SecureAuth's laser focus on authentication to the table and round out Core Security's offerings, said Frank Dickson, IDC research director, in the announcement.

Core Security has three product lines: Core Network Insight, for advanced threat detection; Threat and Vulnerability Management, for vulnerability testing and assessment; and Identity and Access Management & IAM, a suite of governance tools for identity management and access.

"What is exciting to me is that this merger is not just complementary but it completes the view. It finishes that picture," says Chris Sullivan, CTO and CISO of Core Security.

Core Security has technology to address the network, endpoint and vulnerabilities but lacked an identity piece.

SecureAuth IdP performs single sign-on, multi-factor authentication, and behavior-based authentication. 

Under the merger, the combined companies will address vulnerabilities, identities, networks and endpoints with an identity-based security automation platform, which aims to shorten the time it takes for enterprises to see, respond to and remediate attacks.

When cybercriminals attack, they don't remain just within one security silo such as a secured network, says Keith Graham, SecureAuth CTO. However, SOCs are not designed to peer into multiple silos to respond to a breach. As a result, the merger's platform is designed to bring greater visibility to threats.

Customer Expectations

The combined company will have over 1,500 customers, some of which are already customers of both SecureAuth and Core Security. Sullivan says Core and SecureAuth were already familiar with one another prior to the merger announcement. Some of Core's customers would request identity access technology and, as a result, the sales teams for both companies would jointly meet with those customers.

Little overlap exists between the two companies in products and markets, say Kukowski and Sullivan. They pointed to some duplication in password protection offerings and noted each company has a presence in the healthcare and financial services industries.

The companies will begin integration in the fourth quarter, and over the next three-to five-months a decision will be made as to the name of the merged company and its products, Kukowski says.

SecureAuth's main product, SecureAuth IdP, will be integrated with Core Network Insight, followed by Core's Threat and Vulnerability Management, and, then, Core's Identity and Access Management & IAM, Graham says.

"There is consolidation occurring in the security industry where vendors are looking to add new product categories to their portfolio in order to deliver a more complete product suite for their customers," says Joseph Blankenship, a senior analyst with Forrester Research. "This can be an advantage for the customers who are dealing with product sprawl and multiple vendor solutions."

Join Dark Reading LIVE for two days of practical cyber defense discussions. Learn from the industry’s most knowledgeable IT security experts. Check out the INsecurity agenda here.

Related Content:

Dawn Kawamoto is an Associate Editor for Dark Reading, where she covers cybersecurity news and trends. She is an award-winning journalist who has written and edited technology, management, leadership, career, finance, and innovation stories for such publications as CNET's ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
martin.george
50%
50%
martin.george,
User Rank: Apprentice
9/25/2017 | 11:14:23 AM
Nice post
That is really interesting theme, what can I say) 
12 Free, Ready-to-Use Security Tools
Steve Zurier, Freelance Writer,  10/12/2018
Pair of Reports Paint Picture of Enterprise Security Struggling to Keep Up
Curtis Franklin Jr., Senior Editor at Dark Reading,  10/11/2018
New Domains: A Wide-Open Playing Field for Cybercrime
Ben April, CTO, Farsight Security,  10/9/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Flash Poll
The Risk Management Struggle
The Risk Management Struggle
The majority of organizations are struggling to implement a risk-based approach to security even though risk reduction has become the primary metric for measuring the effectiveness of enterprise security strategies. Read the report and get more details today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-18324
PUBLISHED: 2018-10-15
CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has XSS via the admin/fileManager2.php fm_current_dir parameter, or the admin/index.php module, service_start, service_fullstatus, service_restart, service_stop, or file (within the file_editor) parameter.
CVE-2018-18322
PUBLISHED: 2018-10-15
CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Command Injection via shell metacharacters in the admin/index.php service_start, service_restart, service_fullstatus, or service_stop parameter.
CVE-2018-18323
PUBLISHED: 2018-10-15
CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Local File Inclusion via directory traversal with an admin/index.php?module=file_editor&file=/../ URI.
CVE-2018-18319
PUBLISHED: 2018-10-15
** DISPUTED ** An issue was discovered in the Merlin.PHP component 0.6.6 for Asuswrt-Merlin devices. An attacker can execute arbitrary commands because api.php has an eval call, as demonstrated by the /6/api.php?function=command&class=remote&Cc='ls' URI. NOTE: the vendor indicates that Merli...
CVE-2018-18320
PUBLISHED: 2018-10-15
** DISPUTED ** An issue was discovered in the Merlin.PHP component 0.6.6 for Asuswrt-Merlin devices. An attacker can execute arbitrary commands because exec.php has a popen call. NOTE: the vendor indicates that Merlin.PHP is designed only for use on a trusted intranet network, and intentionally allo...