McAfee Public Cloud Server Security Suite

Similar documents
McAfee Embedded Control

McAfee Embedded Control for Retail

McAfee Endpoint Threat Defense and Response Family

McAfee Complete Endpoint Threat Protection Advanced threat protection for sophisticated attacks

Reference Guide Revision B. McAfee Cloud Workload Security 5.0.0

Product Guide Revision B. McAfee Cloud Workload Security 5.0.0

McAfee epolicy Orchestrator

McAfee Cloud Workload Security Product Guide

McAfee Embedded Control

Securing Your Amazon Web Services Virtual Networks

Securing Your Microsoft Azure Virtual Networks

Securing the Software-Defined Data Center

United Automotive Electronic Systems Co., Ltd Relies on McAfee for Comprehensive Security

McAfee Embedded Control for Healthcare

Services solutions for Managed Service Providers (MSPs)

SIEM: Five Requirements that Solve the Bigger Business Issues

McAfee Cloud Workload Security Suite Amazon Machine Image Installation Guide

CLOUD WORKLOAD SECURITY

McAfee Endpoint Security

The McAfee MOVE Platform and Virtual Desktop Infrastructure

Comprehensive Database Security

Reducing Operational Costs and Combating Ransomware with McAfee SIEM and Integrated Security

Building Resilience in a Digital Enterprise

McAfee Advanced Threat Defense

McAfee Virtual Network Security Platform

McAfee Application Control/ McAfee Change Control Administration

McAfee Embedded Control for Aerospace and Defense

Cloud Workload Discovery 4.5.1

McAfee MVISION Endpoint 1808 Installation Guide

White Paper April McAfee Protection-in-Depth. The Risk Management Lifecycle Protecting Critical Business Assets.

Introducing MVISION. Cohesive Cloud-based Management of Threat Countermeasures and Devices Leveraging Built-in Device Controls. Jon Parkes.

McAfee Total Protection for Data Loss Prevention

McAfee MVISION Endpoint 1811 Installation Guide

McAfee Host Intrusion Prevention Administration Course

McAfee Skyhigh Security Cloud for Amazon Web Services

Changing face of endpoint security

McAfee Data Protection for Cloud 1.0.1

Securing the Modern Data Center with Trend Micro Deep Security

The threat landscape is constantly

McAfee MVISION Cloud. Data Security for the Cloud Era

Symantec Client Security. Integrated protection for network and remote clients.

Installation Guide Revision B. McAfee Cloud Workload Security 5.0.0

BUFFERZONE Advanced Endpoint Security

SYMANTEC DATA CENTER SECURITY

Data Sheet: Endpoint Security Symantec Network Access Control Starter Edition Simplified endpoint enforcement

Global Manufacturer MAUSER Realizes Dream of Interconnected, Adaptive Security a Reality

Expand Virtualization. Maintain Security.

Stopping Advanced Persistent Threats In Cloud and DataCenters

Symantec Endpoint Protection Family Feature Comparison

align security instill confidence

Symantec Network Access Control Starter Edition

Symantec Network Access Control Starter Edition

Security by Default: Enabling Transformation Through Cyber Resilience

Symantec Endpoint Protection

Defend Against the Unknown

Trend Micro deep security 9.6

Integrated McAfee and Cisco Fabrics Demolish Enterprise Boundaries

SIEM Solutions from McAfee

Total Protection for Compliance: Unified IT Policy Auditing

: Administration of Symantec Endpoint Protection 14 Exam

McAfee VirusScan and McAfee epolicy Orchestrator Administration Course

Zero Trust on the Endpoint. Extending the Zero Trust Model from Network to Endpoint with Advanced Endpoint Protection

Enterprise & Cloud Security

BUFFERZONE Advanced Endpoint Security

Securing the Next-Generation Data Center

Data Sheet: Endpoint Security Symantec Multi-tier Protection Trusted protection for endpoints and messaging environments

DEFINING SECURITY FOR TODAY S CLOUD ENVIRONMENTS. Security Without Compromise

Intelligent, Collaborative Endpoint Security

Defense-in-Depth Against Malicious Software. Speaker name Title Group Microsoft Corporation

Symantec Network Access Control Starter Edition

McAfee Endpoint Security

Christopher Covert. Principal Product Manager Enterprise Solutions Group. Copyright 2016 Symantec Endpoint Protection Cloud

Protecting Against Modern Attacks. Protection Against Modern Attack Vectors

Petroleum Refiner Overhauls Security Infrastructure

McAfee Endpoint Security for Servers Product Guide. (McAfee epolicy Orchestrator)

Deploy Symantec Cloud Workload Protection for Storage

PROTECT WORKLOADS IN THE HYBRID CLOUD

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER

ATTIVO NETWORKS THREATDEFEND INTEGRATION WITH MCAFEE SOLUTIONS

Total Threat Protection. Whitepaper

Cisco Cloud Application Centric Infrastructure

Five Essential Capabilities for Airtight Cloud Security

Office 365 Buyers Guide: Best Practices for Securing Office 365

Designing an Adaptive Defense Security Architecture. George Chiorescu FireEye

Understanding the McAfee Endpoint Security 10 Threat Prevention Module

NOTHING IS WHAT IT SIEMs: COVER PAGE. Simpler Way to Effective Threat Management TEMPLATE. Dan Pitman Principal Security Architect

GDPR: An Opportunity to Transform Your Security Operations

Seqrite Endpoint Security

McAfee Database Security Insights

Sustainable Security Operations

Symantec Multi-tier Protection

Qualys Cloud Platform

INSIDE. Symantec AntiVirus for Microsoft Internet Security and Acceleration (ISA) Server. Enhanced virus protection for Web and SMTP traffic

Agenda. Why we need a new approach to endpoint security. Introducing Sophos Intercept X. Demonstration / Feature Walk Through. Deployment Options

McAfee Network Security Platform Administration Course

McAfee Endpoint Security Migration Guide. (McAfee epolicy Orchestrator)

McAfee Endpoint Security for Servers Product Guide

Trend Micro. Apex One as a Service / Apex One. Best Practice Guide for Malware Protection. 1 Best Practice Guide Apex One as a Service / Apex Central

Getting Started with AWS Security

Enterprise Cybersecurity Best Practices Part Number MAN Revision 006

Transcription:

McAfee Public Cloud Server Security Suite Comprehensive security for AWS and Azure cloud workloads As enterprises shift their data center strategy to include and often lead with public cloud server instances, they are mindful that a shared responsibility model 1 for protection is a key consideration. Public cloud providers, like Amazon Web Services (AWS) and Microsoft Azure, protect the perimeter, and users must secure the content. But how can forward-thinking enterprises protect their cloud workloads against zero-day and advanced persistent threats (APTs) while keeping costs in line with their cloud strategy? Some of the key challenges for enterprises adopting cloud are: It s getting harder to keep up with zero-day and advanced threats. Lack of visibility and centralized management make it extremely challenging to secure multiple-cloud infrastructures. Performance degradation is a concern for cloud workload security. McAfee Public Cloud Server Security Suite offers instant discovery and control of AWS and Azure workloads and threats for complete, consistent, and continuous protection with minimal impact on performance. You can discover multiple cloud data centers, cloud accounts, virtual machines, and emerging threats. Key Advantages Designed for AWS and Azure workloads Instant discovery Security assessment and threat remediation Scalable security Comprehensive protection Leverages the McAfee epolicy Orchestrator (McAfee epo ) management console Deployment options include Chef, Puppet, and OpsWorks Demonstrate compliance Integrates with other McAfee solutions Figure 1. Single management console for multiple cloud infrastructures and multiple McAfee technologies. 1 McAfee Public Cloud Server Security Suite

The comprehensive security provided by McAfee Public Cloud Server Security Suite includes foundational antivirus and intrusion prevention, along with advanced whitelisting, to protect against zero-day threats; change control to meet regulatory compliance requirements; and encryption management for data protection. A single management console makes it easy to manage multiple clouds and enforce policies. Flexible deployment options with Chef, Puppet, and OpsWorks DevOps tools provide a seamless experience with minimal impact. Discover Cloud infrastructures and Threats To gain better control over cloud infrastructure and threats, you need better visibility across them. Discover all virtual networks or virtual private clouds (VPCs), templates, and workloads across AWS and Azure cloud infrastructure in minutes. Having detailed information about cloud infrastructure accounts, knowing which users have access to what parts of the cloud infrastructure, understanding how workloads are assigned to templates and VPCs, and having a quick snapshot of the system tree associated with cloud infrastructure are the first steps towards adequately protecting your cloud infrastructure. Supported Platforms Windows 2008, 2008 R2, 2012, 2012 R2 Linux (Red Hat, CentOS, SUSE, Ubuntu, Amazon Linux). Figure 2. Discover and monitor multiple cloud infrastructures and emerging threats. 2 McAfee Public Cloud Server Security Suite

Get security visibility across multiple clouds in one place. Leverage end-to-end threat information, including attack sources for better security control. View traffic across workloads, and manage how information is flowing between them and is accessed from outside the organization. Monitor the Cloud, and Take Faster Actions on Security Alerts Because faster remediation is becoming increasingly important, with this solution you can quickly assess security issues at a deeper level and take immediate actions. Identify issues that require urgent attention, and take appropriate actions using color-coded threats. Create custom tags, and assign them to workloads based on your unique requirements. Take corrective measures to curb security issues, and adopt policies or define threat reputations to defend the infrastructure from future security incidents. Manage the cloud firewall with customized policies for individual workloads or groups of workloads. Manage policies for AWS Security Groups to control traffic for one or multiple instances. Identify suspicious traffic occurring in VPCs, and take remediation steps to block critical information from falling into the wrong hands. Comprehensive Threat Protection McAfee Public Cloud Server Security Suite leverages a single agent that provides multiple layers of security that can be managed using a single management console across multiple cloud platforms. This solution can also be deployed with DevOps-friendly tools, thus providing the best possible experience. Comprehensive Host-based Security Controls For Windows and Linux ANTI-VIRUS FIREWALL INTRUSION PREVENTION APPLICATION WHITELISTING INTEGRITY MONITORING ENCRYPTION MANAGEMENT Figure 3. Comprehensive security for public cloud workloads.. 3 McAfee Public Cloud Server Security Suite

Feature Benefits Chef, Puppet, and AWS OpsWorks deployment options DevOps deployment tools allow security to be considered ahead of time with ease of deployment. Security can be built in as part of operations. Cloud workload discovery Instant visibility into the cloud infrastructures discovers virtual data centers, cloud workloads, and cloud firewalls. Quick threat alerts notification with automatic security posture assessment Faster remediation of threats with prioritized alerts based on the criticality of threats and steps to quickly act on those alerts Single management console for multiple cloud infrastructure security solutions (McAfee epo software) Extremely beneficial for a hybrid environment setting Single-pane manageability for physical, virtual, and cloud workloads and policies Integrates McAfee and partners cloud and on-premises security technologies Lowers total cost of ownership with integrated security processes and quick resolution steps Anti-malware Maximum defense against malware Safeguards systems and files from viruses, spyware, worms, Trojans, and other security risks Detects and cleans malware, and allows users to easily configure policies to manage quarantined items Host firewall Protect workloads from unauthorized access and attack. Host intrusion prevention Blocks unwanted or harmful network traffic, and proactively blocks zero-day and known attacks with patented, award-winning technology Prevents unwanted changes to workloads by restricting access to specified ports, files, shares, registry keys, and registry values Memory protection prevents abnormal programs or threats from overrunning the buffer s boundary and overwriting adjacent memory while writing data to a buffer. Exploited buffer overflows can execute arbitrary code on your computer. Application whitelisting Protects against zero-day and advanced persistent threats without signature updates Strengthens security and lowers ownership costs with dynamic whitelisting, which automatically accepts new software added through trusted channels Reduces patch cycles through secure application whitelisting and advanced memory protection 4 McAfee Public Cloud Server Security Suite

Feature File integrity monitoring Encryption management Benefits Provides continuous detection of system-level changes across distributed and remote locations Prevents tampering by blocking unauthorized changes to critical system files, directories, and c onfigurations Tracks and validates every attempted change in real time on the workload, enforcing change policy by a time window, source, or an approved work ticket Encrypts data stored in AWS EBS volumes with AWS Advanced Encryption Standard (AES) Volumes with pre-existing data can be encrypted conveniently. Integrates with Amazon s Key Management Service (KMS) for encryption Learn More Visit product page: http://www.mcafee.com/us/ products/public-cloud-serversecurity-suite.aspx. Also available for purchase on AWS Marketplace. 1. http://www.mcafee.com/us/resources/white-papers/wp-cloud-security-primer-techtarget.pdf 2821 Mission College Boulevard Santa Clara, CA 95054 888 847 8766 www.mcafee.com McAfee and the McAfee logo, epolicy Orchestrator, and McAfee epo are trademarks or registered trademarks of McAfee, LLC or its subsidiaries in the US and other countries. Other marks and brands may be claimed as the property of others. Copyright 2016 McAfee, LLC. 62526ds_pcss_0716 JULY 2016 5 McAfee Public Cloud Server Security Suite