Cisco Self Defending Network

Similar documents
A Unified Threat Defense: The Need for Security Convergence

Securing the Empowered Branch with Cisco Network Admission Control. September 2007

Threat Control and Containment in Intelligent Networks. Philippe Roggeband - Product Manager, Security, Emerging Markets

Cisco Systems Korea

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER

Cisco Network Admission Control (NAC) Solution

Wireless and Network Security Integration Solution Overview

Solution Architecture

Borderless Networks. Tom Schepers, Director Systems Engineering

NETWORK THREATS DEMAN

Data Retrieval Firm Boosts Productivity while Protecting Customer Data

Klaudia Bakšová System Engineer Cisco Systems. Cisco Clean Access

Cisco ASA 5500 Series IPS Edition for the Enterprise

Exam: : VPN/Security. Ver :

Cisco NAC Network Module for Integrated Services Routers

NETWORKING &SECURITY SOLUTIONSPORTFOLIO

Networks with Cisco NAC Appliance primarily benefit from:

Future-ready security for small and mid-size enterprises

Cisco Cisco Express Foundation for Account Managers. Download Full Version :

Perimeter Defenses T R U E N E T W O R K S E C U R I T Y DEPENDS ON MORE THAN

SAS and F5 integration at F5 Networks. Updates for Version 11.6

align security instill confidence

Check Point softwareblades Secure. Flexible. Simple

SteelGate Overview. Manage perimeter security and network traffic to ensure operational efficiency, and optimal Quality of Service (QoS)

Understanding Network Access Control: What it means for your enterprise

Converged World. Martin Capurro

Reviewer s guide. PureMessage for Windows/Exchange Product tour

Defense-in-Depth Against Malicious Software. Speaker name Title Group Microsoft Corporation

SECURING THE NEXT GENERATION DATA CENTER. Leslie K. Lambert Juniper Networks VP & Chief Information Security Officer July 18, 2011

Intelligent Cybersecurity for the Real World Scott Lovett Vice President, Global Security Sales

Selling the Total Converged Solution Module #1: Nortel Enterprise Networking Overview of the 4 Pillars and Why Nortel Tom Price Nortel HQ Sales

Exam : Title : Security Solutions for Systems Engineers(SSSE) Version : Demo

Cisco Firepower NGFW. Anticipate, block, and respond to threats

Juniper Networks Adaptive Threat Management Solutions

Networking Drivers & Trends

Firewalls for Secure Unified Communications

Implementing. Security Technologies. NAP and NAC. The Complete Guide to Network Access Control. Daniel V. Hoffman. WILEY Wiley Publishing, Inc.

NETWORK ADMISSION CONTROL

CA Host-Based Intrusion Prevention System r8

Education Network Security

Chapter 1 B: Exploring the Network

Enterprise Cybersecurity Best Practices Part Number MAN Revision 006

Security Assessment Checklist

Cisco Exam Questions & Answers

Exam: Title : VPN/Security. Ver :

Cisco ASA 5500 Series IPS Solution

Partner Webinar. AnyConnect 4.0. Rene Straube Cisco Germany. December 2014

IBM Global Technology Services Provide around-the-clock expertise and protect against Internet threats.

Transforming the Network for the Digital Business

Cisco Firepower NGFW. Anticipate, block, and respond to threats

Cisco Intrusion Prevention Solutions

CIH

CISCO EXAM QUESTIONS & ANSWERS

Vendor: Cisco. Exam Code: Exam Name: Cisco Sales Expert. Version: Demo

How SD-WAN will Transform the Network. And lead to innovative, profitable business outcomes

Cisco Exam Questions & Answers

SDN Security BRKSEC Alok Mittal Security Business Group, Cisco

ForeScout CounterACT. Continuous Monitoring and Mitigation. Real-time Visibility. Network Access Control. Endpoint Compliance.

Designing and Building a Cybersecurity Program

CSA for Mobile Client Security

Wireless Network Security

NetDefend Firewall UTM Services

Technology Risk Management in Banking Industry. Rocky Cheng General Manager, Information Technology, Bank of China (Hong Kong) Limited

Cisco EXAM SBF for Account Managers - g33ky -

Teleworking and Security: IT All Begins with Endpoints. Jim Jessup Solutions Manager, Information Risk Management June 19, 2007

Network Security in the Patched Environment. Guy Helmer, Ph.D. Palisade Systems, Inc.

SSL VPNs or IPsec VPNs The Challenges of Remote Access. February 2 nd, 2007 Chris Witeck- Director of Product Marketing

CCISO Blueprint v1. EC-Council

Cyber Criminal Methods & Prevention Techniques. By

Cisco IOS Inline Intrusion Prevention System (IPS)

Enforcing PCI Data Security Standard Compliance Marco Misitano, CISSP, CISA, CISM Business Development Manager Security Cisco Italy

The Context Aware Network A Holistic Approach to BYOD

Stopping Advanced Persistent Threats In Cloud and DataCenters

VIRTUAL PRIVATE NETWORKS (VPN)

Exam : Title : Security Solutions for Systems Engineers. Version : Demo

Cisco SR 520-T1 Secure Router

Chapter 1. Cisco SONA and the Cisco Enterprise Architecture

Cisco Next Generation Firewall and IPS. Dragan Novakovic Security Consulting Systems Engineer

Cisco Adaptive Wireless Intrusion Prevention System: Protecting Information in Motion

Total Threat Protection. Whitepaper

Presentation_ID. 2003, 2004 Cisco Systems, Inc. All rights reserved.

Self Defending Networks

SAFE Architecture Guide. Places in the Network: Secure Branch

AT&T Endpoint Security

Comprehensive datacenter protection

Putting Trust Into The Network Securing Your Network Through Trusted Access Control

Passit4Sure (50Q) Cisco Advanced Security Architecture for System Engineers

We are Network Security. Enterprise Solutions.

ForeScout ControlFabric TM Architecture

Cisco Unified Wireless Network Solution Overview

CISCO NETWORKS BORDERLESS Cisco Systems, Inc. All rights reserved. 1

E-Commerce Networking

Cisco Exam Questions & Answers

Presenter Jakob Drescher. Industry. Measures used to protect assets against computer threats. Covers both intentional and unintentional attacks.

CISCO EXAM QUESTIONS & ANSWERS

THE SONICWALL CLEAN VPN APPROACH FOR THE MOBILE WORKFORCE

Service. Sentry Cyber Security Gain protection against sophisticated and persistent security threats through our layered cyber defense solution

Deployment Scenarios

Simplify Your Network Security with All-In-One Unified Threat Management

Security Threats & Trends Arvind Sahay, Enterprise Manager India, McAfee

Transcription:

Cisco Self Defending Network Integrated Network Security George Chopin Security Business Development Manager, CISSP 2003, Cisco Systems, Inc. All rights reserved. 1

The Network as a Strategic Asset Corporate Enterprises Customers Financial Performance Reduce Operational Costs Improve Productivity Enter New Markets Suppliers Small/Medium Businesses Employees Partners Service Providers Issue: How do you validate trust and identity? How do you ensure for compliance to your security policies? 2003, Cisco Systems, Inc. All rights reserved. 2

The burden on IT security is growing exponentially Executives Regulation, Reputation, Audit, Compliance, Cost Control, etc. IT Security Team LOCA L End Users Worms, Viruses, Spyware, Adware, Identity Theft, etc. 2003, Cisco Systems, Inc. All rights reserved. 3

Key Issues Facing Customers Today SIMPLIFICATION Scale Cost Staffing Integration Threats Theft Loss Response time APPLICATION AND SERVICE OPTIMIZATION Enablers Awareness App management Performance/optimization Resilience SECURITY 2003, Cisco Systems, Inc. All rights reserved. 4

Self Defending Networks From Point Products to Holistic System Security as an Option Very complex environment Higher integration cost Security risks not mitigated Lower reliability Security, INTEGRAL to the System Reduced complexity Easier deployment and management Security risks effectively mitigated Lower TCO 2003, Cisco Systems, Inc. All rights reserved. 5

Self Defending Network The network system, at all points of access and authentication, must provide strong defense while helping to enforce policy compliance. 2003, Cisco Systems, Inc. All rights reserved. 6

Security is a Top Cisco Priority Responding to our customers Cisco Invests 30% of Security Revenue back into R&D ($300M+) Security is now a $1B+ business for Cisco Six security acquisitions in past two years Cisco has captured #1 market position for VPN, Firewall and Intrusion Detection (source: Infonetics Research) 1,100 new employees hired last fiscal quarter focused primarily around advanced technologies Our goal is to minimize risk while maximizing productivity opportunities through integrated network security solutions." - John Chambers 2003, Cisco Systems, Inc. All rights reserved. 7

Self-Defending Network 1. Point Products IP + Security Integrated Security 2. Disparate Security Services Collaborative Security Systems 3. Reactive Security Adaptive Security 2003, Cisco Systems, Inc. All rights reserved. 8

Security Solutions Network Evolution Firewall VPN Network Integration delivers increased customer value Core Switch Security Modules IDS/IPS DDoS Branch Router IOS Security Wireless AP Uni-purpose Products Structured Wireless Aware Network (SWAN) Network Integrated Security Solutions 2003, Cisco Systems, Inc. All rights reserved. 9

Branch Security The branch must be as secure as HQ! New Integrated Services Routers 1800, 2800 & 3800 - Policy enforcement (NAC) - Firewall (IOS FW) - Intrusion Detection (IOS IDS) Intrusion VPN Detection URL Firewall WAN Router Filter & Switch NAC Policy Enforcement Wireless Encryption - Encryption (IPSEC) - Site to Site & Remote VPN - Secure Wireless 3800 2800 1800 2003, Cisco Systems, Inc. All rights reserved. 10

Cisco Adaptive Security Appliance (ASA) Convergence of Robust, Market-Proven Technologies Market-Proven Technologies Adaptive Threat Defense, Secure Connectivity Firewall Technology Cisco PIX App Inspection, Use Enforcement, Web Control Application Security IPS Technology Cisco IPS NW-AV Technology Cisco IPS, AV VPN Technology Cisco VPN 3000 Cisco ASA Malware/Content Defense, Anomaly Detection Anti-X X Defenses Traffic/Admission Control, Proactive Response Network Containment & Control Network Intelligence Cisco Network Services Secure Connectivity IPSec & SSL VPN 2003, Cisco Systems, Inc. All rights reserved. 11

A sound security policy is the best first line of defense Are you actually doing what your security policy states you will do? Auditors expect enforcement and network-wide consistency Your customers assume enforcement Due diligence requires enforcement 2003, Cisco Systems, Inc. All rights reserved. 12

Cisco Network Admission Control: Collaborative Security for Defense & Policy Enforcement Client attempts connection Authentication and policy check of client Desktop NAC Framework Si Remediation Corporate Net Access granted Access denied Quarantine remediation Quarantine VLAN 2003, Cisco Systems, Inc. All rights reserved. 13

Current NAC Program Participants http://www.cisco.com/en/us/partners/pr46/nac/partners.html ANTI VIRUS REMEDIATION CLIENT SECURITY 2003, Cisco Systems, Inc. All rights reserved. 14

Adaptive Threat Defense in Action Access Control, Packet Inspection Defense Intelligence, Content Inspection, Virus Mitigation Identity, Virtualization, QoS Segmentation, Traffic Visibility App Inspection, Use Enforcement, Web Control Application Security Malware/Content Defense, Anomaly Detection Anti-X Defenses Traffic/Admission Control, Proactive Response Containment & Control Wireless LAN Solutions Engine CSA Catalyst Cisco Router Cisco DDoS VPN VPN Access Cisco Router Catalyst PIX Identity-Based Networking NAC CSA Quarantine VLAN Cisco IPS CSA 2003, Cisco Systems, Inc. All rights reserved. 15

CDW & Cisco Helping Our Customers Build Secure Intelligent Systems CDW Uniquely positioned to provide extensive security solutions for businesses of all sizes Cisco Building the Self Defending Network through a secure intelligent information architecture CDW + Cisco Comprehensive security approach based on the right solutions and services at the right price. 2003, Cisco Systems, Inc. All rights reserved. 16