UNIFIED CONTENT SECURITY: Securing the Borderless Enterprise

Similar documents
Web Security Gateway Anywhere

Web Security Gateway Solutions

Websense Data Security Solutions

Websense Web Security Solutions. Websense Web Security Gateway Websense Web Security Websense Web Filter Websense Express Websense Hosted Web Security

Websense Web Security Solutions. Websense Web Security Gateway Websense Web Security Websense Web Filter Websense Hosted Web Security

WEBSENSE SECURITY SOLUTIONS OVERVIEW

資 安 大 未 來 ~ 解 析 企 業 脈 動

+ web + DLP. Secure 1, 2, or all 3 with one powerful solution. The best security you can get for one or for all.

WEBSENSE TRITON SOLUTIONS

Websense Messaging Security Solutions. Websense Security Websense Hosted Security Websense Hybrid Security

Replacing Microsoft Forefront Threat Management Gateway with F5 BIG-IP. Dennis de Leest Sr. Systems Engineer Netherlands

Symantec Protection Suite Add-On for Hosted and Web Security

V1.4. Spambrella Continuity SaaS. August 2

ZSCALER SECURITY CLOUD FOR LARGE AND MEDIUM ENTERPRISE

Comprehensive real-time protection against Advanced Threats and data theft

3rd Party Audited Cloud Infrastructure SOC 1, Type II SOC 2, Type II ISO Annual 3rd party application Pen Tests.

Enabling Business Beyond the Corporate Network. Secure solutions for mobility, cloud and social media

INFORMATION PROTECTED

INCREASINGLY, ORGANIZATIONS ARE ASKING WHAT CAN T GO TO THE CLOUD, RATHER THAN WHAT CAN. Albin Penič Technical Team Leader Eastern Europe

TRITON APX. Websense TRITON APX

Protecting the Infrastructure: Symantec Web Gateway

WHAT S NEW IN WEBSENSE TRITON RELEASE 7.8

Top 10 Reasons Enterprises are Moving Security to the Cloud

Stop advanced targeted attacks, identify high risk users and control Insider Threats

The Cost Benefits of a Hybrid Approach to Security

isheriff CLOUD SECURITY

Websense Solutions. TRITON v7.7 Architecture

ENABLING FAST RESPONSES THREAT MONITORING

Key Findings. Websense Triton Security Gateway Anywhere

TRITON AP-WEB COMPREHENSIVE REAL-TIME PROTECTION AGAINST ADVANCED THREATS & DATA THEFT

INTRODUCING isheriff CLOUD SECURITY

Data Sheet: Endpoint Security Symantec Protection Suite Enterprise Edition Trusted protection for endpoints and messaging environments

Unified Threat Management, Managed Security, and the Cloud Services Model

Putting Web Threat Protection and Content Filtering in the Cloud

OVERVIEW. Enterprise Security Solutions

DUBEX CUSTOMER MEETING

ISB13 Web security deployment options - which is really best for you? Duncan Mills, Piero DePaoli, Stuart Jones

Secure Web Gateways Buyer s Guide >

SafeNet Content Security. esafe SmartSuite - Security that Thinks. Real-time, Smart and Simple Web and Mail Security Solutions.

TRITON AP-ENDPOINT STOP ADVANCED THREATS AND SECURE SENSITIVE DATA FOR ROAMING USERS

Enterprise Buyer Guide

For additional information and evaluation copies of Trend Micro products and services, visit our website at

EXTENDING THREAT PROTECTION AND CONTROL TO MOBILE WORKERS

WEBSENSE GLOBAL PARTNER PROGRAM OVERVIEW EMPOWERING PARTNERS WITH THE BEST SECURITY FOR TODAY S THREATS

Malware and Other Malicious Threats

MANAGEMENT SOLUTIONS SAFEGUARD BUSINESS CONTINUITY AND PRODUCTIVITY WITH MIMECAST

Solution Brief: Enterprise Security

Top 10 Features: Clearswift SECURE Gateway

Providing Secure IT Management & Partnering Solution for Bendigo South East College

A Websense Research Brief Prevent Data Loss and Comply with Payment Card Industry Data Security Standards

Firewall and UTM Solutions Guide

anomaly, thus reported to our central servers.

The Advantages of Security as a Service versus On-Premise Security

Extending Threat Protection and Control to Mobile Workers with Cloud-Based Security Services > White Paper

Symantec Messaging Gateway powered by Brightmail

How To Secure Your Employees Online With Zscaler.Com And Your Website From Being Infected With Spyware Or Malware

Secure Your Mobile Workplace

Websense Data Security Gateway and Citrix NetScaler SDX Platform Overview

Trend Micro Cloud App Security for Office 365. October 27, 2015 Trevor Richmond

Seven Requirements for Hybrid Web Delivery Getting the best of both on-premises and SaaS

White Paper. What the ideal cloud-based web security service should provide. the tools and services to look for

management solutions

Modular Network Security. Tyler Carter, McAfee Network Security

Protect the data that drives our customers business. Data Security. Imperva s mission is simple:

Symantec Brightmail Gateway Real-time protection backed by the largest investment in security infrastructure

Next-Generation Firewalls: Critical to SMB Network Security

Top five strategies for combating modern threats Is anti-virus dead?

Websense Data Security Suite and Cyber-Ark Inter-Business Vault. The Power of Integration

Websense Security Transition Guide

Cisco Web Security: Protection, Control, and Value

F5 Identity and Access Management (IAM) Overview. Laurent PETROQUE Manager Field Systems Engineering, France

Cisco ASA 5500 Series Content Security Edition for the Enterprise

Cloud App Security. Tiberio Molino Sales Engineer

Preparing for a Cyber Attack PROTECT YOUR PEOPLE AND INFORMATION WITH SYMANTEC SECURITY SOLUTIONS

Payment Card Industry Data Security Standard

Content Security Gateway Series Real-time Gateway Web Security Against Spyware and Viruses

Evaluation Guide. eprism Messaging Security Suite V8.200

How To Get A Cloud Service For A Small Business

Bringing Continuous Security to the Global Enterprise

White Paper. ZyWALL USG Trade-In Program

Cautela Labs Cloud Agile. Secured. Threat Management Security Solutions at Work

Integrated Approach to Network Security. Lee Klarich Senior Vice President, Product Management March 2013

Transcription:

UNIFIED CONTENT SECURITY: Securing the Borderless Enterprise John T Lounsbury CISSP, BCCE Senior Director Sales Engineering, Asia Pacific and Japan Websense, Inc. web security data security email security 2010 Websense, Inc. All rights reserved.

Websense Consistent Growth FAST FACTS 2009 2009 Websense, Inc. All rights reserved. 3

Websense: Our Global Presence STOCKHOLM, SWEDEN ROTTERDAM, NETHERLANDS 1,400 employees DUBLIN, IRELAND across READING, ENGLAND LOS GATOS, CA PARIS, FRANCE HAMBURG, GERMANY 35 DALLAS, countries TEXAS and 25 offices. MADRID, SPAIN TOKYO, JAPAN SAN DIEGO, CA MILAN, ITALY ISRAEL BEJING, CHINA 9,000 partners worldwide. INDIA SHANGHAI, CHINA DUBAI, UAE GUANGZHOU, CHINA HONG KONG TAIPEI KUALA LUMUR SINGAPORE Corporate Offices Engineering/Ops Sales Offices SAO PAULO, BRAZIL SYDNEY, AUSTRALIA MELBOURNE

THE CHALLENGE How the security landscape has changed web security data security email security 2010 Websense, Inc. All rights reserved.

Business Challenges

Business Needs * Return on Security Investment 2010 Websense, Inc. All rights reserved. 7

Technology Trends Interconnectivity of business across more complex sites with user generated content predominating. Businesses are taking advantage of these new web sites to reach new and existing audiences Absent data now lives outside your network, more so if you use SaaS applications. The focus from criminals is to steal data and monetize that. They blend their attacks across multiple vectors. URL lists and signature based security mechanisms cannot keep up, at best AV can clean up. 2010 Websense, Inc. All rights reserved. 8

Applications & Data Move to The Web 2009 Websense, Inc. All rights reserved. 9

There s an app for that. 2010 Websense, Inc. All rights reserved. 10

Exploiting the new Web - Dell Would you market to a population as large as the US? Facebook alone has a population of 300 million active users, 50% logon every day. 11

Exploiting the new Web US Gov These new social fabrics are not just used by commercial organisations. Broadcast costs can be much more cost effective than other media. 12

Business in The New Social Fabrics Protection from malware or inappropriate content Protection from data loss 2010 Websense, Inc. All rights reserved. 13

Threats Span Multiple Vectors Email with URL Website downloads Trojan malware Confidential data harvested Hacker collects data from web site User visits popular site Website downloads Trojan malware Confidential data harvested Hacker collects data via IRC chat USB dropped in car park Confidential data harvested Hacker collects data with SMTP engine 14

Traditional Security Can t Keep Up http://securitylabs.websense.com/ 15

Traditional Security Can t Keep Up Symantec issued more antivirus signatures last year [sic 2009], than in its 17 previous years combined... Francis desouza, Senior Vice President Enterprise Security Group http://securitylabs.websense.com/ 16

Static URL Filtering is Dead SOCIAL NETWORKING VIDEO OR AUDIO STREAMING AUCTIONS Static URLs are no longer effective in GAMBLING controlling web access. You must understand the content on the page. INAPPROPRIATE OR LEGALLY LIABLE CONTENT 2010 Websense, Inc. All rights reserved. 17

Employees Will Find A Way Locking down the infrastructure is not a feasible strategy It constrains your ability to take advantage of new business connectivity Almost 50% of all IT managers surveyed admit their users try to bypass security policies. (Websense 2009 Web 2.0 @ Work, International Survey) Unforeseen circumstances occur as employees try to overcome restrictions to expedite business 18

To Summarize The Challenge Free flow of information leads to competitive advantage New threats are hard to distinguish from legitimate business process Point security solutions exhibit blind spots from lack of shared intelligence Superficial integration causes weak reporting and management systems 2010 Websense, Inc. All rights reserved. 19

Our Guiding Principles Maximize the Return on Security Investment (ROSI) & Reduce TCO Counter modern threats through context and context awareness Consistently enforce policies, regulation and statutory compliance Provide flexible deployment without additional complexity or compromise 2010 Websense, Inc. All rights reserved. 20

How Not to Unify Technology 2010 Websense, Inc. All rights reserved. 21

Unified Content Security Shared threat intelligence Adaptable to new threats Owning analysis intellectual capital equals greater innovation 2010 Websense, Inc. All rights reserved. 22

Unified Content Security Unified console for shared management, reporting, policies & enforcement Comprehensive and meaningful reports and policies Analysis & intelligence drive actionable policies 2009 Websense, Inc. All rights reserved. 23

Unified Content Security Software, appliance or cloud based deployment to suit business environment More resilient to technological change without extra CAPEX Leverage virtualization technologies to mix and match platform options 2009 Websense, Inc. All rights reserved. 24

Unified Content Security in Action Maximize ROSI & reduce TCO Security against modern threats Comply with regulations A strategic vendor relationship 2010 Websense, Inc. All rights reserved. 25

TRITON Architecture Web Security Data Security Email Security ThreatSeeker Network TRITON unified content security SaaS Appliance Software Mix & match on premise and in the cloud deployment TRITON unified security center 2010 Websense, Inc. All rights reserved. 26

Deployment Options SaaS Appliance Software No On Premise Equipment or Upgrades Security Effectiveness Full Policy Management & Reporting Control Web & Email Integration Carrier Grade Datacenter Availability & Security Simplified Deployment Scalable, Enterprise Performance Easy-to-Use Management Extensible Security Platform Leading Price- Performance Granular Control Performance Scalability Standard Hardware Leverage Investments in Virtual Computing 2010 Websense, Inc. All rights reserved. 27

Explaining ThreatSeeker Network 1 billion pieces of content per day Websense Web Security Gateway Threat Detection/Probes Real-Time Security Updates Shared Analytics/Feedback ThreatSeeker Technology 2+ million posts per day Websense Hosted Customers Defensio ThreatSeeker Technology Websense Security Labs 200+ million sites per day 10+ million emails per hour Websense Hosted Security URL and Security Database 28

Websense TRITON Advanced Classification Engine (ACE) ThreatSeeker Network 0101010101010101 1010110111010101

Unified Content Security Protection from persistent threats across multiple channels. web security data security email security 2010 Websense, Inc. All rights reserved.

Web Security Securing the new Web web security data security email security 2010 Websense, Inc. All rights reserved.

The Web Security Challenge ENABLE broad business use of Web 2.0 sites like LinkedIn, Facebook, and Salesforce without the risks Outbound data loss and compliance Web mail Posting to social media Web-based Malware AV cannot keep pace with dynamic Web and script-based attacks Another data loss vector Web 2.0 Content Classification Mixed-content and password-protected sites defy traditional content filtering Drains productivity and increases malware risk Rising Web security TCO Managing multiple vendors and products Supporting distributed enterprise Inbound mixed content, malicious scripts AV, Filter, DLP Outbound PII, CC#, SSN, health, financial 2010 Websense, Inc. All rights reserved. 32

Web Security Gateway Anywhere The Best Web Security Prevent data loss and ensure compliance Web 2.0 content classification Dynamic and scripted Web malware protection Deploy flexibly and manage with a single unified policy At the lowest TCO Consolidate multiple products and deployment platforms to a single unified solution Fewer boxes, management systems, and vendors to support Enterprise Class Web DLP Real-time scanning Integrated Antivirus Leading URL Filtering Application Controls TruHybrid Deployment Appliance SSL Decryption SaaS 2010 Websense, Inc. All rights reserved. 33

TruHybrid Deployment Web security deployed where and how you need it Remote User Hosted Web Security V5000 Appliance Branch Branch SSL TRITON Unified Content Security Center V10000 Appliance HQ / Large Branch The ONLY solution to deliver unified 2010 Websense, Inc. All rights reserved. 34

With Web Security Gateway Anywhere You Can... Enable secure business use of dynamic Web 2.0 sites like Linked-in, Facebook, and Salesforce Prevent outbound data loss and meet compliance mandates for data confidentiality Protect the business from dynamic and scripted Web 2.0 malware Eliminate inappropriate Web 2.0 content and improve employee productivity Deliver consistent security coverage across the enterprise And do it all at the industry s lowest total cost of ownership 2010 Websense, Inc. All rights reserved. 35

At the Lowest TCO Competitive Approach Websense Approach 4 Enforcement Points Web Security Anti Virus 2 Enforcement Points V-Series Appliances Hosted Web Security 3 rd Party DLP 3 rd Party SaaS Single Unified Management System 3 Management Systems 3 Vendors Single Vendor Fewer boxes to purchase and deploy Fewer policies and reporting systems to manage Fewer vendors to manage Lower power consumption Long term investment protection 2010 Websense, Inc. All rights reserved. 36

Email Security Eliminate spam and prevent data loss web security data security email security 2010 Websense, Inc. All rights reserved.

The Email Security Challenge Protect the business against today s modern threats and risks while reducing cost and freeing up IT time Stop spam, virus and blended threats Email and Web threats have converged 85% of unwanted email includes a URL Complexity and volume continue to escalate Prevent data loss and ensure acceptable use Outbound data leaks are serious concerns 80% of data loss is accidental Inappropriate email use puts reputation at risk Reduce costs and enable strategic IT IT focus on enabling and driving business Need to do more with less Outsourcing of non-strategic functions Websense Hosted Email Security Data Center 2010 Websense, Inc. All rights reserved. 38

Websense Hosted Email Security Reduce Cost and Complexity No equipment to purchase or maintain Eased administrative overhead Predictable costs Increase Protection Stop converged email and Web threats Prevent day-zero attacks with ThreatSeeker Backed by industry-leading SLAs Retain Control Flexible customization of policies, configuration settings, quarantine, and reporting Powerful search for email quarantine and logs 24 x 7 access and support Spam Detection >99.5% Multi-Layered Anti-Virus Stop Blended Threats Data Loss Prevention Email Acceptable Use Encryption The ONLY email security solution that with market-leading Web and data security intelligence from Websense built-in 2010 Websense, Inc. All rights reserved. 39

Deployment In-the-Cloud 10 Data Centers Globally Top-tier, physically secure facilities Fully redundant w/ fail-over 99.999% Availability SLA Unlimited scalability ISO 27001 Certified 3 Billion+ messages per month Inbound Threats Spam Viruses Malicious URLs 0101010101010101 1010110111010101 Websense Hosted Email Security Data Center Outbound Risks Data leaks Acceptable use Compliance 0101010101010101 1010110111010101 2010 Websense, Inc. All rights reserved. 40

Lowest Total Cost of Ownership On-Premise Solution Websense SaaS Approach Server 2nd server for fault-tolerance SaaS No Hardware Software Software Subscription Hardware maintenance subscription Fixed Predictable costs No Software Low Labor Labor to install, maintenance Bandwidth On-Premise Power No servers or appliances required No software installation No updates and maintenance No electricity or cooling required Lower bandwidth costs Built-in fault-tolerance 2010 Websense, Inc. All rights reserved. 41

EXAMPLE: cost comparison 1000 Users (Annualized cost) Source: The Advantages of a Hosted Security Model white paper Osterman Research, July 2009 42

Data Security Stop confidential data loss. web security data security email security 2010 Websense, Inc. All rights reserved.

Challenge of Data Loss Prevention Ensure uninterrupted business by managing compliance & risks, preventing data loss and securing business processes Manage and measure compliance and risks Delays in generating audit reports and compliance requirements Difficulty uncovering broken or bad business processes Visibility into data stored and in transit Unknown types of data Uncertain risks for each communication channels Securing Business Processes Cannot enforce who can send what Possible damage to company brand and reputation 2010 Websense, Inc. All rights reserved. 44

Websense Data Security Suite Market-leading Data Loss Prevention technology to identify, monitor and protect confidential data Unified Policy Design Only offering with unified policy design IDENTIFY MONITOR PROTECT Manage all facets of effective Data Loss Prevention policy Powerful monitoring capability to track ever changing data (stored and in transit) NSI SOX New Design PII HPIAA PCI DSS Email Http IM Print Removable Media Custom Channel Block Encrypt Quarantine Notify Confirm Application PHI PFI Database Remediate Low Cost and Complexity Modular solution tailors to specific customer requirements Server Centralized Management and Reporting Simple deployment and reduced box-count with tight feature integration

Multiple Facets of Data Loss Prevention Who What Where How Action Human Resources Source Code Benefits Provider File Transfer Audit Customer Service Business Plans Personal Web Storage Web Block Marketing Patient Information Business Partner Instant Messaging Notify Finance M&A Plans Blog Peer to Peer Remove Accounting Employee Salary Customer Email Encrypt Sales Financial Statements Spyware Site Print Quarantine Legal Customer Records USB Removable Media Confirm Technical Support Technical Documentation Competitor Print Screen Engineering Competitive Information Analyst Copy/Paste

Simple Deployment via Websense Lower cost and complexity Streamlined administration Less Hardware Competitor Offering Multiple Boxes (13), Multiple Vendors More effective data loss prevention Greater visibility and control Higher performance and resiliency Websense 3 Boxes, Single Vendor DB Server Discovery Server AV HQ DLP DLP Web HQ Endpoint Server Manager Network Sniffer Web Security Manager V10000 AV Branch 1 AV Branch 2 DLP Web Branch 1 DLP Web Branch 2 Network Sniffer Web Security Network Sniffer Web Security V10000 2009 Websense, Inc. All rights reserved. 47

Unified Content Security Management web security data security email security 2010 Websense, Inc. All rights reserved.

TRITON Unified Security Center Unified management console for policy management and reporting Full system administration from one console Role based application and control for Web, email, and data loss prevention Provides unified content analysis, unified platform, and unified solution for content security Best security at the lowest total cost of ownership 2009 Websense, Inc. All rights reserved. 49

Websense TRITON The First and Only Unified Content Security Solution Unifies Web and email security, and data loss prevention for consolidation Unifies on premise and SaaS platforms for TruHybrid deployment Unifies content analysis across threat vectors for modern threat prevention Provides unparalleled flexibility and adaptability for the best security for modern threats at the lowest total cost of ownership

Questions Thank you for listening web security data security email security 2010 Websense, Inc. All rights reserved.