- Job title
- Customer Relations Manager
- Sector
- Logistics
- Organization type
- 40-person manufacturing company
- Joined
- Feb 2025
- Message
- 12
We are a 20-person software company based in Boston operating in the health tech space. Our customer data is quite sensitive, and deception technologies were highly praised at a security seminar we attended recently. They describe it as catching attackers early on with zero false positives using fake credentials, decoy servers, and honeypot databases deployed across the network.
We got demos from two different security vendors; one quoted an annual license fee of 18,000 USD, and the other 26,000 USD. I haven't quite figured out the fundamental architectural differences between the vendors and what these differences actually do in practice. More importantly, does this investment make sense for a 20-person company with no dedicated security team, or would jumping into this kind of tech before our baseline security layers are fully dialed in just be a waste of resources?