Introducing MVISION. Cohesive Cloud-based Management of Threat Countermeasures and Devices Leveraging Built-in Device Controls. Jon Parkes.

Similar documents
IT-Security Symposium in Stuttgart. Workshop McAfee Device-to-Cloud, Erweiterte Endpunktsicherheit für Microsoft Umgebungen

McAfee Public Cloud Server Security Suite

McAfee Endpoint Security

McAfee MVISION Mobile Threat Detection Android App Product Guide

McAfee MVISION Endpoint 1808 Installation Guide

SOLUTION BRIEF ASSESSING DECEPTION TECHNOLOGY FOR A PROACTIVE DEFENSE

McAfee epolicy Orchestrator

ATTIVO NETWORKS THREATDEFEND INTEGRATION WITH MCAFEE SOLUTIONS

McAfee MVISION Mobile epo Extension Product Guide

McAfee MVISION Endpoint 1811 Installation Guide

McAfee Endpoint Threat Defense and Response Family

Integrated McAfee and Cisco Fabrics Demolish Enterprise Boundaries

McAfee Complete Endpoint Threat Protection Advanced threat protection for sophisticated attacks

Securing the SMB Cloud Generation

Protecting Against Modern Attacks. Protection Against Modern Attack Vectors

SYMANTEC DATA CENTER SECURITY

SentinelOne Technical Brief

SentinelOne Technical Brief

Building Resilience in a Digital Enterprise

McAfee MVISION Cloud. Data Security for the Cloud Era

Agenda. Why we need a new approach to endpoint security. Introducing Sophos Intercept X. Demonstration / Feature Walk Through. Deployment Options

McAfee Advanced Threat Defense

Microsoft Security Management

McAfee Embedded Control

ADVANCED THREAT PREVENTION FOR ENDPOINT DEVICES 5 th GENERATION OF CYBER SECURITY

CloudSOC and Security.cloud for Microsoft Office 365

Threat Centric Vulnerability Management

Symantec & Blue Coat Technical Update Webinar 29. Juni 2017

Symantec Endpoint Protection Mobile - Admin Guide v3.2.1 May 2018

BETTER Mobile Threat Defense (BMTD)

Automated Threat Management - in Real Time. Vectra Networks

Reference Guide Revision B. McAfee Cloud Workload Security 5.0.0

McAfee Embedded Control for Retail

Symantec Endpoint Protection Family Feature Comparison

BUFFERZONE Advanced Endpoint Security

CISCO NETWORKS BORDERLESS Cisco Systems, Inc. All rights reserved. 1

Christopher Covert. Principal Product Manager Enterprise Solutions Group. Copyright 2016 Symantec Endpoint Protection Cloud

Protecting Against Online Fraud. F5 EMEA Webinar August 2014

McAfee Cloud Workload Security Product Guide

The McAfee MOVE Platform and Virtual Desktop Infrastructure

McAfee Skyhigh Security Cloud for Amazon Web Services

RSA NetWitness Suite Respond in Minutes, Not Months

SIEM: Five Requirements that Solve the Bigger Business Issues

McAfee Total Protection for Data Loss Prevention

McAfee Endpoint Security

Security and Compliance for Office 365

AT&T Endpoint Security

McAfee Cloud Workload Security Suite Amazon Machine Image Installation Guide

Defend Against the Unknown

State of Cloud Adoption. Cloud usage is over 90%, are you ready?

McAfee Web Gateway

Juniper Sky Advanced Threat Prevention

Intelligent, Collaborative Endpoint Security

McAfee Endpoint Security Migration Guide. (McAfee epolicy Orchestrator)

Product Guide Revision B. McAfee Cloud Workload Security 5.0.0

McAfee Endpoint Security

EU GENERAL DATA PROTECTION: TIME TO ACT. Laurent Vanderschrick Channel Manager Belgium & Luxembourg Stefaan Van Hoornick Technical Manager BeNeLux

WITH ACTIVEWATCH EXPERT BACKED, DETECTION AND THREAT RESPONSE BENEFITS HOW THREAT MANAGER WORKS SOLUTION OVERVIEW:

Installation Guide Revision B. McAfee Cloud Workload Security 5.0.0

ForeScout ControlFabric TM Architecture

MOBILE THREAT PREVENTION

McAfee Security Connected Integrating epo and MVM

McAfee MVISION Mobile AirWatch Integration Guide

McAfee MVISION Mobile Microsoft Intune Integration Guide

Unlocking the Power of the Cloud

Endpoint Security for DeltaV Systems

JUNIPER SKY ADVANCED THREAT PREVENTION

Stopping Advanced Persistent Threats In Cloud and DataCenters

McAfee MVISION Mobile Microsoft Intune Integration Guide

Product overview. McAfee Web Protection Hybrid Integration Guide. Overview

Checklist for Evaluating Deception Platforms

McAfee Network Security Platform 8.3

Securing the Modern Data Center with Trend Micro Deep Security

Comprehensive Database Security

McAfee Network Security Platform

McAfee Network Security Platform 8.3

Petroleum Refiner Overhauls Security Infrastructure

Reducing Operational Costs and Combating Ransomware with McAfee SIEM and Integrated Security

MOBILE THREAT LANDSCAPE. February 2018

MEMORY AND BEHAVIORAL PROTECTION ENDPOINT SECURITY NETWORK SECURITY I ENDPOINT SECURITY I DATA SECURITY

United Automotive Electronic Systems Co., Ltd Relies on McAfee for Comprehensive Security

SIEMLESS THREAT MANAGEMENT

Delivering Integrated Cyber Defense for the Cloud Generation Darren Thomson

Combating Today s Cyber Threats Inside Look at McAfee s Security

10 KEY WAYS THE FINANCIAL SERVICES INDUSTRY CAN COMBAT CYBER THREATS

Best Practices in Securing a Multicloud World

McAfee Data Loss Prevention Endpoint 10.0

Security: The Key to Affordable Unmanned Aircraft Systems

Total Protection for Compliance: Unified IT Policy Auditing

McAfee Embedded Control

Global Manufacturer MAUSER Realizes Dream of Interconnected, Adaptive Security a Reality

Real-time, Unified Endpoint Protection

Agile Security Solutions

Defense-in-Depth Against Malicious Software. Speaker name Title Group Microsoft Corporation

SOLUTION BRIEF RSA NETWITNESS SUITE 3X THE IMPACT WITH YOUR EXISTING SECURITY TEAM

McAfee Network Security Platform 9.1

Artificial Intelligence Drives the next Generation of Internet Security

Datacenter Security: Protection Beyond OS LifeCycle

Joe Stocker, CISSP, MCITP, VTSP Patriot Consulting

ARTIFICIAL INTELLIGENCE POWERED AUTOMATED THREAT HUNTING AND NETWORK SELF-DEFENSE

Transcription:

Introducing MVISION Cohesive Cloud-based Management of Threat Countermeasures and Devices Leveraging Built-in Device Controls Jon Parkes McAfee 1

All information provided here is subject to non-disclosure agreements. It is for informational purposes only and should not be deemed an offer by McAfee or create an obligation on McAfee. McAfee reserves the right to discontinue products at any time, add or subtract features or functionality, or modify its products, at its sole discretion, without notice and without incurring further obligations. McAfee and the McAfee logo are trademarks of McAfee, LLC in the U.S. and/or other countries. *Other names and brands may be claimed as the property of others. 2018 McAfee, LLC

Complexity is the fundamental obstacle to security There are too many s with too much data and not enough insight or integration to pivot efficiently into action. EPP Native Security agents #!$ Firewall Web agents IPS Mobile Messaging SIEM agents DLP CASB IAM Encryption EDR agents agents agents

Clarity to act. Simplicity to execute. Simple Modern SaaS infrastructure, streamlined workspaces and consolidated policies Flexible Leverage both McAfee and native OS controls Comprehensive Defend an expansive device ecosystem including mobile Fast Comprehend and pivot to action with less effort from a single platform Devices Clarity to act SOC Simplicity to execute Cloud Control where it matters most

MVISION epo MVISION - First Wave A dramatically simple cloud-based SaaS management service SECURITY OPERATIONS MVISION Endpoint Advanced augmented defense for Windows 10 with a unified management experience DEVICE CLOUD CLOUD MVISION Mobile Centrally manage and defend IOS and Android just like any other device Emphasis on Device Security & Cloud Management

MVISION epo I want a zero-effort SaaS management service and don t want to worry about handling infrastructure updates. MVISION Endpoint MVISION Mobile Multi-tenant, globally scaled SaaS, maintained by McAfee

Simplified experience High level numbers Contextual Details Compliance Overview Threat Statistics and Trends

MVISION epo I need to fortify my Microsoft defenses, but I don t want additional security s. Single Management Experience MVISION Endpoint McAfee Advanced Protection Machine learning Fileless defense Windows Defender Anti-Malware MVISION Mobile Collective defense & consistent control of McAfee and Windows native security controls

Native signature-based security & network traffic management Native control augmentation with Common Management THEIRS + OURS = YOURS Windows Defender Global Threat Intelligence Local Cached Intelligence Pre-Execution Behavior Execution Behavior Attack Behavior Blocking Credential Theft Protection Remediation Augmented by Behavioral Machine Learning and File-less threats protection

Simplified Policy Management Optimized Day-to-day Productivity Vs occasional high Protection Unified Unified Policy for McAfee & MS Rationalized Reduced controls w/ default 100+ to ~30

Non-Deterministic Scanning Real Protect (ML) Static Analysis Real Protect (ML) Behavioral Analysis Attack Behavior Blocking Credential Theft Protection Future Protections How MVISION Endpoint works MVISION Endpoint checks to see if Windows Defender Service is running and starts it if not MVISION Endpoint client performs both static and behavioral analysis while providing extensive remediation capabilities MVISION ENDPOINT SCAN ORCHESTRATOR Remediation Windows Defender determines if executable is safe to run Quarantine Remove Roll Back Windows Defender provides findings to MVISION Endpoint McAfee Agent Reports Events to epo

MVISION Endpoint: Reduced complexity Complex Heavy Manual FROM Multi-day deployment & upgrade cycle for customers 300-400 MB Client Download with Traditional EPPs Customers have to make sure they are on latest Simple Light Automatic TO Within Minutes Fast, simple new deployments & existing migrations at scale 40 MB Client Download with MVISION Endpoint Management & Client automatically on latest version 10X+ 10X 100%

Flexible Deployment Options to suit your Environment Threat Intelligence Regular cadence for content Signatures and Engine Behavioral protection rules Machine learning models static and dynamic Monthly product update user control Annual major release Win 7/8/10, macos, Linux ENS Traditional client Threat Protection for long tail of existing devices. Full control for power users. Management & Orchestration On-Prem, Cloud, Hosted Open DXL, Partner Ecosystem Data protection Encryption Application Control Win 10 Native Protection +Lightweight Advanced Protect MVISON Endpoint Always up-to-date security Product and content both automatically updated Monthly cadence Advanced Threat Protection to augment Native OS controls, starting windows 10. Reduced complexity for Simplicity seeker.

MVISION epo I want to centrally protect the mobile assets in my environment just like any other device. MVISION Endpoint MVISION Mobile ios and Android Threat Defense

It Just Makes Sense to Focus on Protecting Windows Examples of Severe Common Vulnerabilities & Exposures (CVEs): CVE Score Risk CVE-2017-0507 CVSS 7.8: HIGH Elevation of Privileges (EOP) to permanently compromise the system CVE_2017_5054 CVSS 8.8: HIGH Heap buffer overflow allowing memory overwriting and enabling code execution CVE-2017-6979 CVSS 7.0: HIGH Elevation of Privileges (EOP) to completely compromise system & expose data Major In the Wild Threats Over The Last 12-18 Months: Privilege escalation vulnerability exposes 21 million systems to compromise Banking Trojan exposes millions of users of 400 banks to theft 14 million systems infected with malware that gains root access & maintains persistency

Wait a minute.these are Mobile! Examples of Severe Common Vulnerabilities & Exposures (CVEs): CVE Score Risk CVE-2017-0507 CVSS 7.8: HIGH Elevation of Privileges (EOP) to permanently compromise the system CVE_2017_5054 CVSS 8.8: HIGH Heap buffer overflow allowing memory overwriting and enabling code execution CVE-2017-6979 CVSS 7.0: HIGH Elevation of Privileges (EOP) to completely compromise system & expose data Major In the Wild Threats Over The Last 12-18 Months: Privilege escalation vulnerability exposes 21 million systems to compromise Banking Trojan exposes millions of users of 400 banks to theft 14 million systems infected with malware that gains root access & maintains persistency Dirty Cow BankBot CopyCat

MDM/EMM vs. Mobile Threat Defense

MVISION Mobile Protection DEVICE NETWORK APPLICATION OS Exploit Detection Reconnaissance Scans Malware Detection Automated Risk & Vulnerability Assessment Device Forensics USB Exploit Detection Man-in-the-Middle Attacks SSL Decryption / Stripping App Risk Analysis App Privacy Analysis Vulnerability & Risk Rogue Access Points App Forensic Reports Unsecured WiFi Proactive Threat Detection Proactive warning of previously attacked networks

MVISION Mobile Solution Overview MVISION Mobile Console MVISION epolicy Orchestrator MVISION Mobile App MDM\EMM Console

MVISION Mobile Application MVISION Mobile runs on devices ios (via ios App Store) Android (via Google Play Store) Device Safety OS Vulnerability Rooted/Jailbroken Compromised Risky Device Settings Network Safety Rogue or Suspicious Wi-Fi Access Point Identification App Safety Scanning of installed Apps Identify suspicious or malicious apps Prompt user with recommendation to remove

MVISION Mobile epo Integration Compliance Reporting Mobile Threat Data Threat Event Details Most Attacked Networks Risk Management Device Information OS Distribution MVISION Version Vulnerable OS Upgradeable OS Non-Upgradeable OS

Simple Modern SaaS infrastructure, streamlined workspaces and consolidated policies Flexible Leverage both McAfee and native OS controls Comprehensive Defend an expansive device ecosystem including mobile Simple Flexible SaaS, AWS or on-prem Native controls + 3rd party countermeasures Out-of-the box integrations Open integration fabric epo - a single to defend your expansive device ecosystem Distilled understanding Collective defense Fast Comprehend and pivot to action with less effort from a single platform Comprehensive Advanced fileless and malware-based defense Traditional Endpoints Servers, Containers Mobile Embedded IoT Complete landscape

For more information on this presentation please email anz_marketing@mcafee.com

McAfee, the McAfee logo, McAfee epolicy Orchestrator and McAfee epo are trademarks or registered trademarks of McAfee, LLC or its subsidiaries in the U.S. and/or other countries. Other names and brands may be claimed as the property of others. Copyright 2018 McAfee, LLC.