I say throw all of those "solutions" in the garbage.

Here is why.

1) AV is a legacy solution. It is comepletly useless in the current and near future threat landscapes.
2) Firewalls suggest that there is such thing as trusted networks. No such thing anymore.
3) IDS doesn't do much for me when criminals have moved over to encryption and/or moving data in normal traffic streams with stego, etc. Besides, knowing something after the fact isn't that helpful.

I say harden your systems to exist in hostile environments. The classic definition of a network as you know it will be extinct in 5 years. Think cloud.

--TH13