Cisco Firepower with Radware DDoS Mitigation

Similar documents
Radware: Anatomy of an IoT Botnet and Economics of Defense

ERT Threat Alert New Risks Revealed by Mirai Botnet November 2, 2016

Fighting the Shadows: How to Stop Real-world Cybersecurity Application Threats That You Can t See

Radware s Attack Mitigation Solution Protect Online Businesses and Data Centers Against Emerging Application & Network Threats - Whitepaper

Cyber War Chronicles Stories from the Virtual Trenches

Comprehensive datacenter protection

DDoS Detection&Mitigation: Radware Solution

Pushed to the Limit! Network and Application Security Threat Landscape Lior Zamir Technical Account Manager

haltdos - Web Application Firewall

Aby se z toho bezpečnostní správci nezbláznili Cisco security integrace. Milan Habrcetl Cisco CyberSecurity Specialist Mikulov, 5. 9.

Radware Attack Mitigation Solution (AMS) Protect Online Businesses and Data Centers Against Emerging Application & Network Threats - Whitepaper

DoS Cyber Attack on a Government Agency in South America- February 2012 Anonymous Mobile LOIC in Action

Advanced Techniques for DDoS Mitigation and Web Application Defense

VERISIGN DISTRIBUTED DENIAL OF SERVICE TRENDS REPORT

DoS Cyber Attack on a Government Agency in Europe- April 2012 Constantly Changing Attack Vectors

Why IPS Devices and Firewalls Fail to Stop DDoS Threats

Multi-vector DDOS Attacks

Cisco Firepower NGFW. Anticipate, block, and respond to threats

DDoS Protector. Simon Yu Senior Security Consultant. Block Denial of Service attacks within seconds CISSP-ISSAP, MBCS, CEH

Combating Cyberattacks Through Network Agility and Automation Sagi Chief Technology Officer

WEB DDOS PROTECTION APPLICATION PROTECTION VIA DNS FORWARDING

Radware DefensePro DDoS Mitigation Release Notes Software Version Last Updated: December, 2017

Cyber Attacks: Evolving Network Architectures to Meet the Challenge

Cisco Firepower NGFW. Anticipate, block, and respond to threats

the Breakdown of Perimeter Defenses

WHITE PAPER Hybrid Approach to DDoS Mitigation

AKAMAI SOLUTION BROCHURE CLOUD SECURITY SOLUTIONS FAST RELIABLE SECURE.

IBM Cloud Internet Services: Optimizing security to protect your web applications

Check Point DDoS Protector Introduction

A custom excerpt from Frost & Sullivan s Global DDoS Mitigation Market Research Report (NDD2-72) July, 2014 NDD2-74

Business Strategy Theatre

A GUIDE TO DDoS PROTECTION

What s next for your data center? Power Your Evolution with Physical and Virtual ADCs. Jeppe Koefoed Wim Zandee Field sales, Nordics

Comprehensive DDoS Attack Protection: Cloud-based, Enterprise Grade Mitigation F5 Silverline

F5 comprehensive protection against application attacks. Jakub Sumpich Territory Manager Eastern Europe

Secure your Web Applications with AWS WAF & AWS Shield. James Chiang ( 蔣宗恩 ) AWS Solution Architect

Integrated Web Application Firewall (WAF) & Distributed Denial Of Service (DDoS) Mitigation For Today s Enterprises

SHARE THIS WHITEPAPER. Attack Mitigation Service Fully Managed Hybrid (Premise & Cloud) Cyber-Attack Mitigation Solution - Whitepaper

NETWORK DDOS PROTECTION STANDBY OR PERMANENT INFRASTRUCTURE PROTECTION VIA BGP ROUTING

HOW TO HANDLE A RANSOM- DRIVEN DDOS ATTACK

Think You re Safe from DDoS Attacks? As an AWS customer, you probably need more protection. Discover the vulnerabilities and how Neustar can help.

Application Security. Rafal Chrusciel Senior Security Operations Analyst, F5 Networks

Securing the Next Generation Data Center

AKAMAI CLOUD SECURITY SOLUTIONS

SUPERCHARGE YOUR DDoS PROTECTION STRATEGY

Check Point DDoS Protector Simple and Easy Mitigation

Securing Online Businesses Against SSL-based DDoS Attacks. Whitepaper

IoT - Next Wave of DDoS? IoT Sourced DDoS Attacks A Focus on Mirai Botnet and Best Practices in DDoS Defense

How Cloudflare s Architecture can Scale to Stop the Largest Attacks

snoc Snoc DDoS Protection Fast Secure Cost effective Introduction Snoc 3.0 Global Scrubbing Centers Web Application DNS Protection

Cybersecurity. Anna Chan, Marketing Director, Akamai Technologies

F5 Synthesis Information Session. April, 2014

Silverline DDoS Protection. Filip Verlaeckt

I D C T E C H N O L O G Y S P O T L I G H T

Introduction. The Safe-T Solution

RESELLER LOGO RADICALLY BETTER. DDoS PROTECTION. Radically more effective, radically more affordable solutions for small and medium enterprises

Drive Greater Value from Your Cisco Deployment with Radware Solutions

Automated Response in Cyber Security SOC with Actionable Threat Intelligence

VERISIGN DISTRIBUTED DENIAL OF SERVICE TRENDS REPORT

An Introduction to DDoS attacks trends and protection Alessandro Bulletti Consulting Engineer, Arbor Networks

DDoS Introduction. We see things others can t. Pablo Grande.

Internet2 DDoS Mitigation Update

Smart and Secured Infrastructure. Rajesh Kumar Technical Consultant

Herding Cats. Carl Brothers, F5 Field Systems Engineer

Presenting the VMware NSX ECO System May Geert Bussé Westcon Group Solutions Sales Specialist, Northern Europe

The Next Cyber War Geo-Political Events And Cyber Attacks. Werner Thalmeier Director Security Solutions EMEA & CALA

Corero & GTT DDoS Trends Report Q2 Q3 2017

SOLUTION BRIEF. Enabling and Securing Digital Business in API Economy. Protect APIs Serving Business Critical Applications

WHITE PAPER. DDoS of Things SURVIVAL GUIDE. Proven DDoS Defense in the New Era of 1 Tbps Attacks

Solutions to prevent IoT devices to be used for DDOS attacks. WISeKey General Business Use

Cisco Firepower Thread Defence. Claudiu Boar

August 14th, 2018 PRESENTED BY:

and indeed live most of our lives online. Whether we are enterprise users or endpoint consumers, our digital experiences are increasingly delivered

We b Ap p A t ac ks. U ser / Iden tity. P hysi ca l 11% Other (VPN, PoS,infra.)

Corrigendum 3. Tender Number: 10/ dated

THE BUSINESS CASE FOR OUTSIDE-IN DATA CENTER SECURITY

Gladiator Incident Alert

Cyber Security Guidelines Distributed Denial of Service (DDoS) Attacks

Protecting Your Digital Business: The Case for Next-Generation Intrusion Prevention

AKAMAI THREAT ADVISORY. Satori Mirai Variant Alert

DDoS Hybrid Defender. SSL Orchestrator. Comprehensive DDoS protection, tightly-integrated on-premises and cloud

Threat Detection and Mitigation for IoT Systems using Self Learning Networks (SLN)

FirePower 2100 NGFW. Elodie Heurtevent Security BDM Commercial. 21 March 2017

A Top US Bank Trusts Neustar SiteProtect for Reliable DDoS Protection Depth

Additional Security Services on AWS

Protecting DNS Critical Infrastructure Solution Overview. Radware Attack Mitigation System (AMS) - Whitepaper

THE STATE OF MEDIA SECURITY HOW MEDIA COMPANIES ARE SECURING THEIR ONLINE PROPERTIES

Solutions Guide. F5 solutions for the emerging 5G landscape

Architecture: Consolidated Platform. Eddie Augustine Major Accounts Manager: Federal

White Paper. Why IDS Can t Adequately Protect Your IoT Devices

SECURING THE NEXT GENERATION DATA CENTER. Leslie K. Lambert Juniper Networks VP & Chief Information Security Officer July 18, 2011

Cisco Firepower NGIPS Tuning and Best Practices

DDoS MITIGATION BEST PRACTICES

9 STEPS FOR FIGHTING AGAINST DDOS ATTACKS IN REAL-TIME.

PROTECTING INFORMATION ASSETS NETWORK SECURITY

War Stories from the Cloud Going Behind the Web Security Headlines. Emmanuel Mace Security Expert

Prolexic Attack Report Q4 2011

DDoS Protection in Backbone Networks

State of the Internet Security Q Mihnea-Costin Grigore Security Technical Project Manager

DDOS RESILIENCY SCORE (DRS) "An open standard for quantifying an Organization's resiliency to withstand DDoS attacks" Version July

Transcription:

Cisco Firepower with Radware DDoS Mitigation Business Decision Maker Presentation Eric Grubel VP Business development, Radware February 2017

DDoS in the news French hosting firm flooded with 1 Tbps traffic largest attack ever

Global Trends in Threats & Attacks Cyber ransom #1 motivation Especially in Europe 39% suffered an SSL-based attack 10% increase from 2015 Increased attacks on governments & financials Politically affiliated cyber protests and year-long campaigns against financial orgs Availability & data are the top business concerns These are, the main targets of hackers, too IoT botnets open the 1Tbps Floodgates 50% of orgs feel IoT increases attack surface 3

Example: application DDoS attack Situation: Bots, posing as buyers, reserve all available seats, never completing reservations Bookings stop, exposing the attack Target: Major US Airline Solution: Radware s behavioral DDoS detection technology is brought on-line It successfully filters and blocks the dynamic IP attack 4

Monumental Volumetric Attack on Dyn DNS 6% of Fortune 500 companies; Amazon, Netflix, Twitter, CNN, Spotify and more were unreachable Insecure IoT devices enslaved by Mirai malware became a massive botnet Massive distinct IP addresses made traditional mitigation techniques ineffective

DDoS attacks are often multi-faceted Low & Slow DoS attacks (e.g. Slowloris) Large volume network flood attacks HTTP Floods SSL Floods App Misuse Network Scan Syn Floods IPS/IDS Internet Pipe Firewall Applications Under Attack SQL Server Cloud DDoS Protection DDoS Protection Behavioral Analysis IPS SSL protection 6

a hybrid in-line & cloud mitigation strategy is required Where DDoS Strikes: 36% Internet Pipe 26% Firewall 10% IDS/IPS 3% Load Balancer 28% Server Under Attack 2% SQL Server Cloud DDoS Protection Cloud: For volumetric DDoS attack mitigation In-Line: In-Line DDoS Protection For network and application mitigation

Cisco transforms security service integration Integrated Radware Virtual DefensePro (vdp) in-line DDoS mitigates attacks Available on Cisco Firepower 4100 Series and Firepower 9300 platforms Lower latency than a stand-alone DDoS solution Consolidation with simplified support and procurement Key: Cisco Service Data Packet 1001 000101 111000 101110 URL DDoS SSL FW NGIPS AMP Filtering 3 rd Party Service Unified Threat Platform with Integrated Security Maximum Protection Low Latency Scalable processing

Always-on Radware DDoS mitigation Always-On Protection Behavioral Analysis Technology Detect and Mitigate within Seconds 24x7 Emergency Response Team Immediate in-line protection Protect against 0-day, 0-min attacks Transfer signatures to cloud scrubber On-call experts let you focus on business Low latency Low false positives Automated mitigation You re not alone

Enterprise use case: in-line & cloud mitigation Internet Perimeter Data Center Volumetric attack mitigation with any cloud-based DDoS solution No protection gap with Radware Defense Messaging Firepower 9300 Solution highlights: Network and Application DDoS mitigation Most accurate (low false positives) detection & mitigation Shortest mitigation time ADC Unified Communications CRM BI Web Portals Mail 10

Next steps 1 2 3 Learn more about what Radware Virtual DefensePro on Cisco Firepower can do for you Schedule a demo today for a hands-on experience Do a Proof of Value (POV) and see how we can improve your network resiliency and threat defense