Rechercher
Contactez-nous Suivez-nous sur Twitter En francais English Language
 

Freely subscribe to our NEWSLETTER

Newsletter FR

Newsletter EN

Vulnérabilités

Unsubscribe

Cisco expands Advanced Malware Protection and data center security solutions to address advanced threats from endpoint to network to cloud

May 2014 by Marc Jacob

Addressing customers’ needs to combat zero-day attacks and advanced persistent threats (APTs), Cisco broadened its Advanced Malware Protection and data center security offerings. These innovations, spanning the Cisco security portfolio, protect against threats across the full attack continuum – before, during, and after an attack.

The newest updates to Cisco® Advanced Malware Protection (AMP) make it the first solution to correlate Indications of Compromise (IoC) data between network and endpoint, with integrated threat defense and shared intelligence – providing customers with continuous and pervasive protection against the most advanced threats. AMP also now features Mac OSX support and a private cloud appliance, an on-premises solution that delivers continuous analysis.

Cisco is also increasing data center and cloud protection with enhancements to its market-leading ASA firewall family, offering superior performance, scalability and flexibility. These enhancements support advances in software-defined networking (SDN) and Application Centric Infrastructure (ACI) environments.

Continuous and Pervasive Advanced Malware Protection “Everywhere”

Bridging the gap between network and endpoint protection, AMP was recently named one of the top solutions in an NSS Labs Security Value Map for Breach Detection Systems - outpacing other vendor solutions in protection and cost-effectiveness. Unlike other solutions that simply detect malware at a point-in-time, AMP delivers unrelenting, continuous detection and response capabilities across the extended network, including endpoints, mobile devices, virtual systems and Web and e-mail gateways. New capabilities in the AMP product portfolio include:

AMP for Endpoints — Delivering advanced analytics and correlation enhancements, AMP accelerates investigation of Indications of Compromise and file behavior, and prioritises the top areas of a compromise that require the greatest attention. New Elastic Search enables users to quickly hunt down the scope of attack, while Remote File Analysis furthers the solution’s retrospective security capabilities with the ability to retrieve and store files for later scoring and analysis. Cisco is also extending AMP for Endpoints to Mac OS X, enabling organisations to protect their entire heterogeneous environments.

AMP Private Cloud Appliance — For customers with high privacy requirements that restrict using a public cloud, the new on-premises AMP Private Cloud Appliance delivers comprehensive advanced malware protection using big data analytics, continuous analysis, and security intelligence stored locally.
AMP for Networks – High performance networks and requirements to accelerate time-to-detection are driving the need for optimised advanced malware protection on the network. New multi-source Indications of Compromise capabilities correlate and prioritise events across a variety of solutions for enhanced intelligence, while automatic Dynamic Analysis utilises a cloud-based sandbox to evaluate files with an unknown disposition to provide increased protection against unknown threats. Users can also create custom detections to immediately block files, while the new File Capture feature allows teams to store and retrieve files for further analysis.

New AMP FirePOWER Appliances — For customers who need enhanced processing and storage, Cisco is now delivering two new dedicated AMP for Networks appliances: the FirePOWER AMP8150 with up to 2 Gbps of performance and the FirePOWER AMP7150 with up to 500 Mbps of performance.
Control without Compromise through Superior Data Center Protection

Increasing data center and cloud protection to support the advances being made in software-defined networking (SDN) and Application Centric Infrastructure (ACI) environments, Cisco is delivering superior performance, scalability and flexibility with its ASAv and updated ASA 5585-X firewalls. Both are designed to provide critical protection without compromising data center performance. The ASA solutions provision in hours or minutes, feature elastic scalability to eliminate security bottlenecks, and weave security into the intelligent data center fabric, not just at the edge. Cisco is also releasing a new version of its Secure Data Center Cisco Validated Design (CVD), which significantly simplifies the secure deployment of new solutions.

New ASAv – A virtual appliance seamlessly integrating into the data center architecture, the ASAv helps ensure that security is never more than one hop away from critical applications featuring dynamic, on?demand scalability within virtual environments, with ACI integration, without hypervisor or vSwitch limitations. Additionally, ASAv offers industry leading performance marks in the area of throughput and connections per second.

Enhanced ASA 5585-X Firewall — Extremely high performance for traditional, SDN and ACI data center environments, along with superior scalability across both connections per second AND total connections, delivering up to 640 Gbps in a 16- node clustered configuration. This makes it one of the fastest physical firewall solutions on the market. It also offers unique deployment flexibility by integrating both virtual and physical security infrastructures into a single policy and management domain.

Cisco Secure Data Center CVD — Outlining best practices for planning, designing, implementing and operating fully-integrated highly secure data center architecture and encompassing Cisco, Sourcefire and Cisco ecosystem partner solutions, CVD helps users expand visibility and control across physical, virtual and cloud environments.
Supporting Resources

·


See previous articles

    

See next articles


Your podcast Here

New, you can have your Podcast here. Contact us for more information ask:
Marc Brami
Phone: +33 1 40 92 05 55
Mail: ipsimp@free.fr

All new podcasts