<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: heartburn]]></title>
    <link>http://securityratty.com/tag/heartburn</link>
    <description></description>
    <pubDate>Mon, 07 Jan 2008 21:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Loving customers frustrate security firms too]]></title>
      <link>http://securityratty.com/article/90258e9f33623bc8f6064f70d8abd5d6</link>
      <guid>http://securityratty.com/article/90258e9f33623bc8f6064f70d8abd5d6</guid>
      <description><![CDATA[Roger Grimes has a good article up on his InfoWorld, Security Advisory blog entitled &quot; Security firms frustrate loving customers &quot;. Roger details some specific examples of how security vendors just...]]></description>
      <content:encoded><![CDATA[<p>Roger Grimes has a good article up on his InfoWorld, Security Advisory blog entitled "<a href="http://weblog.infoworld.com/securityadviser/archives/2008/06/security_firms.html">Security firms frustrate loving customers</a>". Roger details some specific examples of how security vendors just don't "show the love" to customers and prospective customers, with the result being lost business. Roger highlights three examples: <br><br><strong>1.</strong> <strong>Making renewals a manual process with those annoying phone trees</strong>. I agree, when I hear the press 1 for this and press 2 for this, my blood starts to boil. There is no reason that this just can't be built into the product to renew over the web. Security or no, any software vendor not doing it this is just plain crazy.<br><strong><br>2. Calling into a company with a sales inquiry and the sales guy never calls back</strong>. This one just kills me. When doing due diligence on potential acquisitions at a prior company I would call in or email with a sales inquiry and wait to see how long it would take for them to get back to me. It was a good indication of how well the sales organization and company functioned.<br><br><strong>3. Killing the deal with one sided, overly legal and burdensome terms</strong>. Another one that I battle all the time. The CFO has to be able to recognize revenue so needs specific T&amp;Cs. The lawyers want to protect the vendor against all eventualities and is doing his job. You want to make as few warranties and representations as possible to limit your liability. The result, the customer gets one sided, unfair document with fine print on maintenance pricing, renewals, SLAs, etc. Most customers don't even read the EULA. Take a lot at some of the ones with software you have bought. It may surprise you.<br><br>But in my best Fox News voice, lets be fair and balanced. So in that vein, let me give you 3 specific examples of how loving customers frustrate security firms:<br><br><strong>1. The guys who picked the product leave and the new guy comes in and doesn't have a clue.</strong> This happens all the time, especially in the government. One guy or team buys the product for a specific reason and has all of the expertise. The new folks come in and even if they know your product is there, they don't know why or how to use it. They may feel they inherited this product and have their own favorite product in this category. They can't wait to replace you and either don't use the product at all or blame the problems of the world on it.<br><br><strong>2. Buying the product and than "other priorities" delay implementation.</strong> A surefire recipe for shelfware. When I see this happening I tell our folks better to be a pain in the butt and force them to use the product they bought than to sit around watching the license expire on the shelf. The longer the product sits, the more it becomes a nice to have, rather than a must have, that drove the sale. Now sure, one can say that what does the vendor care, the customer paid. If he doesn't use it, less support costs. But you don't get renewals, you don't get upsells or referrals without customers using product.<br><strong><br>3. Using the product in unintended ways.</strong> Another favorite heartburn of mine. Customers figure just because the application runs Linux underneath, why can"t I run (You Name It). We recently had a customer that was chewing up support hours like the dial at a gas pump today. It turns out the problems we all due to the all of the other software that he had put on the box, not to mention editing .conf files, database tables, etc. It is hard enough supporting the software we developed. It is a whole another story supporting software that you have written.<br><br>So Roger, yes the customer is always right and security vendors have to get their act together if they want to survive, let alone compete in these tough economic times. But customers certainly don't make the job any easier with some of the shenanigans they pull.</p>
<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=zkXRhU"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=zkXRhU" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=Lqo4nI"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=Lqo4nI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=SmwKYI"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=SmwKYI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=nQ1xDI"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=nQ1xDI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=23iD7I"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=23iD7I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=ewSG9i"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=ewSG9i" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=axWNoi"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=axWNoi" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/311509491" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 13 Jun 2008 15:45:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/security firms">security firms</category>
      <category domain="http://securityratty.com/tag/customers">customers</category>
      <category domain="http://securityratty.com/tag/product">product</category>
      <category domain="http://securityratty.com/tag/product sits">product sits</category>
      <category domain="http://securityratty.com/tag/favorite product">favorite product</category>
      <category domain="http://securityratty.com/tag/prospective customers">prospective customers</category>
      <category domain="http://securityratty.com/tag/software vendor">software vendor</category>
      <category domain="http://securityratty.com/tag/vendor">vendor</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/311509491/loving-customer.html">Loving customers frustrate security firms too</source>
    </item>
    <item>
      <title><![CDATA[How do you spell R-E-L-I-E-F?]]></title>
      <link>http://securityratty.com/article/2a7d2af9ac37e6a9ed1d0f42c6ffb635</link>
      <guid>http://securityratty.com/article/2a7d2af9ac37e6a9ed1d0f42c6ffb635</guid>
      <description><![CDATA[In the case of the 3Com-Bain-Huawei merger it is spelled &quot;sell Tipping Point&quot;. As has been widely reported since this deal was announced, the fact that a Chinese company would own a substantial stake...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p>In the case of the 3Com-Bain-Huawei merger it is spelled &quot;sell Tipping Point&quot;. As has been widely reported since this deal was announced, the fact that a Chinese company would own a substantial stake in an IPS/security vendor has caused significant heartburn within the Federal Government. This same issue kept Sourcefire from being acquired by Checkpoint (I bet that 200+ million looks good right about now).&nbsp; Todays <a href="http://www.washingtontimes.com/apps/pbcs.dll/article?AID=/20080213/NATION/797439828/1002/NATION">article in the Washington Times</a> indicates that Bain has officially notified the Treasury Department of its mitigation proposals including the selling off of Tipping Point. <br /><br />In my mind the question is: Will that be enough?&nbsp; Is it only the Tipping Point stuff that causes the issue?&nbsp; Does 3Com have other sensitive technology.&nbsp; I don't know, but I am sure the recent arrest of 4 Chinese people on espionage type of charges did not help the Bain position. Also, do you spin Tipping Point off as a public entity. If not do you find an acceptable buyer.&nbsp; Does the fact that the buyer would have to be a US based company decrease the potential buyer pool, making Tipping Point less valuable?&nbsp; All of these are great questions that are going to need answers before this deal is finalized.&nbsp; In the meantime is being in M&amp;A limbo taking its toll on 3Com.&nbsp; Questions, questions, questions, but I don't have the answers.<br /><a href="http://www.washingtontimes.com/apps/pbcs.dll/article?AID=/20080213/NATION/797439828/1002/NATION"></a></p></div>

<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=CVFIIl"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=CVFIIl" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=Dy8nLuE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=Dy8nLuE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=U1lxmXE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=U1lxmXE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=DHcSNtE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=DHcSNtE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=RQOxViE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=RQOxViE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=chU2ldE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=chU2ldE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=QSoWVhE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=QSoWVhE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=zsGe6JE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=zsGe6JE" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=jzRxH7e"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=jzRxH7e" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=lq4P2YE"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=lq4P2YE" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Wed, 13 Feb 2008 15:50:54 +0000</pubDate>
      <category domain="http://securityratty.com/tag/buyer">buyer</category>
      <category domain="http://securityratty.com/tag/potential buyer pool">potential buyer pool</category>
      <category domain="http://securityratty.com/tag/questions">questions</category>
      <category domain="http://securityratty.com/tag/bain position">bain position</category>
      <category domain="http://securityratty.com/tag/acceptable buyer">acceptable buyer</category>
      <category domain="http://securityratty.com/tag/bain">bain</category>
      <category domain="http://securityratty.com/tag/based company decrease">based company decrease</category>
      <category domain="http://securityratty.com/tag/substantial stake">substantial stake</category>
      <category domain="http://securityratty.com/tag/mitigation proposals">mitigation proposals</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/234613541/how-do-you-spel.html">How do you spell R-E-L-I-E-F?</source>
    </item>
    <item>
      <title><![CDATA[How do you spell R-E-L-I-E-F?]]></title>
      <link>http://securityratty.com/article/180e6fdb4a69a41128d01a1dabb2013f</link>
      <guid>http://securityratty.com/article/180e6fdb4a69a41128d01a1dabb2013f</guid>
      <description><![CDATA[In the case of the 3Com-Bain-Huawei merger it is spelled &quot;sell Tipping Point&quot;. As has been widely reported since this deal was announced, the fact that a Chinese company would own a substantial stake...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p>In the case of the 3Com-Bain-Huawei merger it is spelled &quot;sell Tipping Point&quot;. As has been widely reported since this deal was announced, the fact that a Chinese company would own a substantial stake in an IPS/security vendor has caused significant heartburn within the Federal Government. This same issue kept Sourcefire from being acquired by Checkpoint (I bet that 200+ million looks good right about now).&nbsp; Todays <a href="http://www.washingtontimes.com/apps/pbcs.dll/article?AID=/20080213/NATION/797439828/1002/NATION">article in the Washington Times</a> indicates that Bain has officially notified the Treasury Department of its mitigation proposals including the selling off of Tipping Point. <br /><br />In my mind the question is: Will that be enough?&nbsp; Is it only the Tipping Point stuff that causes the issue?&nbsp; Does 3Com have other sensitive technology.&nbsp; I don't know, but I am sure the recent arrest of 4 Chinese people on espionage type of charges did not help the Bain position. Also, do you spin Tipping Point off as a public entity. If not do you find an acceptable buyer.&nbsp; Does the fact that the buyer would have to be a US based company decrease the potential buyer pool, making Tipping Point less valuable?&nbsp; All of these are great questions that are going to need answers before this deal is finalized.&nbsp; In the meantime is being in M&amp;A limbo taking its toll on 3Com.&nbsp; Questions, questions, questions, but I don't have the answers.<br /><a href="http://www.washingtontimes.com/apps/pbcs.dll/article?AID=/20080213/NATION/797439828/1002/NATION"></a></p></div>
]]></content:encoded>
      <pubDate>Wed, 13 Feb 2008 14:38:27 +0000</pubDate>
      <category domain="http://securityratty.com/tag/buyer">buyer</category>
      <category domain="http://securityratty.com/tag/potential buyer pool">potential buyer pool</category>
      <category domain="http://securityratty.com/tag/questions">questions</category>
      <category domain="http://securityratty.com/tag/bain position">bain position</category>
      <category domain="http://securityratty.com/tag/acceptable buyer">acceptable buyer</category>
      <category domain="http://securityratty.com/tag/bain">bain</category>
      <category domain="http://securityratty.com/tag/based company decrease">based company decrease</category>
      <category domain="http://securityratty.com/tag/substantial stake">substantial stake</category>
      <category domain="http://securityratty.com/tag/mitigation proposals">mitigation proposals</category>
      <source url="http://www.stillsecureafteralltheseyears.com/ashimmy/2008/02/how-do-you-spel.html">How do you spell R-E-L-I-E-F?</source>
    </item>
    <item>
      <title><![CDATA[Student antics with cell phones, iPods means heartburn for school IT staff]]></title>
      <link>http://securityratty.com/article/4566f6416f9eca73af29a43d9a3953ea</link>
      <guid>http://securityratty.com/article/4566f6416f9eca73af29a43d9a3953ea</guid>
      <description><![CDATA[Student antics with cell phones, iPods, and social-networking sites means heartburn for school IT staff charged with network...]]></description>
      <content:encoded><![CDATA[Student antics with cell phones, iPods, and social-networking sites means heartburn for school IT staff charged with network security.]]></content:encoded>
      <pubDate>Mon, 07 Jan 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/student antics">student antics</category>
      <category domain="http://securityratty.com/tag/cell phones">cell phones</category>
      <category domain="http://securityratty.com/tag/network security">network security</category>
      <category domain="http://securityratty.com/tag/staff">staff</category>
      <category domain="http://securityratty.com/tag/ipods">ipods</category>
      <category domain="http://securityratty.com/tag/school">school</category>
      <category domain="http://securityratty.com/tag/heartburn">heartburn</category>
      <category domain="http://securityratty.com/tag/sites">sites</category>
      <source url="http://www.networkworld.com/news/2008/010808-schools-cell-phones.html?fsrc=rss-security">Student antics with cell phones, iPods means heartburn for school IT staff</source>
    </item>
  </channel>
</rss>
