secure my business - community.cisco.com · 1990 1995 2000 2005 2010 2015 2020 viruses 1990 –...
TRANSCRIPT
Secure My Business
AGENDA1.Introduction2.Solution Overview – Cisco Email Security,
Umbrella, and AMP3.Case Studies4.Demo – Cisco Umbrella & AMP5.Q&A6.Conclusion
Introduction Solution Overview Case Studies Demo Q&A Conclusion
Solution Overview:Security – Email, Umbrella, AMP
Cisco Security
• Martin Hardy on the right could not get basic kneecap treatment
• Ray Neal could not get an imperative heart scan
• Grant Cower’s could not get a crucial biopsy
Cyber Crime is Rapidly Evolving, tooThe days of an obvious threat are over….
The Industrialization of Hacking
20001990 1995 2005 2010 2015 2020
Viruses1990–2000
Worms2000–2005
Spyware and Rootkits2005–Today
APTs CyberwareToday +
Hacking Becomesan Industry
Sophisticated Attacks, Complex Landscape
Phishing, Low Sophistication
The Silver Bullet Does Not Exist…
“Captive Portal”
“It matches the pattern”
“No false positives,no false negatives.”
ApplicationControl
FW/VPN
IDS / IPSUTM
NAC
AVPKI
“Block or Allow”
“Fix the Firewall”
“No key, no access”
Sandboxing“Detect the Unknown”
FW/VPN AV
Application Control
Sandboxing
Endpoint Protection
Security is a Battlefield
& you are the Generals
Defense has always been reactionary
NAC addition
Messaging and Web Security Appliance
Cloud Security
UTM
Security Analytics
NGIPS / Anti-Malware
Sandbox
20042007 2009
2012
20132014
2015
Journey of building a stronger Security Business
Cloudlock
Cisco: Covering the Entire Attack Continuum
ATTACK CONTINUUM
DiscoverEnforceHarden
DetectBlock
Defend
ScopeContain
Remediate
Visibility and Context
ASA
NGFW
Secure Access + Identity Services
VPN
Meraki
NGIPS
ESA/WSA
CWS
Advanced Malware Protection
Sandboxing
Retrospective Security
“Managing alerts is a major
challenge”
The vendor buffet is not a strategy
See More Block more Respond Faster
Our Threat Intelligence Advantage
Cisco: Uniquely Positioned to Deliver SimpleITSecurity
#1Cisco Priority
BillionsInvested
5KPeople Strong
Ongoing
Innovation IntegratedBest-of-Breed Portfolio
300Threat
Researchers
19.7BThreats Blocked
Daily
100xFaster Finding
Breaches
99%Security
Effectiveness
88%Fortune 100 Use Cisco® Security
300+Full Time Threat Intel Researchers
MILLIONSOf Telemetry Agents
4Global Data Centers
1100+Threat Traps
100+Threat Intelligence Partners
THREAT INTEL
1.5 MILLIONDaily Malware Samples
600 BILLIONDaily Email Messages
16 BILLIONDaily Web Requests
Honeypots
Open Source Communities
Vulnerability Discovery (Internal)
Product Telemetry
Internet-Wide Scanning
20 BILLIONThreats Blocked
INTEL SHARING
Talos Intel Background
Customer Data Sharing Programs
Provider Coordination Program
Open Source Intel Sharing
3rd Party Programs (MAPP)
Industry Sharing Partnerships (ISACs)
500+Participants
Threats blocked (daily)
20B
Symantec
Palo Alto
Check Point
Fortinet 972M
Trend Micro250M
Unique malware samples (daily)
1.5MTrend Micro500K
Palo Alto
Check Point
Fortinet
Microsoft
Symantec1M
Next-Generation Firewall
Security Analytics
Network Access Control
Endpoint Detection and Response
DNS-layer RoamingProtection
Email Security
Security Internet Gateway
Public Cloud Security
Cloud Access Security
Cisco Security Portfolio
VPN Secure Access Virtual Network Security
Web Security
Endpoint CloudNetwork
NGIPS
Segmentation Workload Security
Mobile Security
Incident Response Services
Breach Readiness and Response
Segmentation Services
*Slide with specific Cisco products in appendix
Cisco Case Studies
Cisco Umbrella
Challenges
• Combat phishing & ransomware
• Protect devices & IoT connections on the network & as they move off
• Improve ease of access & manageability, innovate
Impact
• Proactively route risky traffic using intelligent proxy
• Decreased remediation time by 80%, investigation time by 50%
• Extended on network protection to off network devices, end-to-end visibility
Cisco AMP
Challenges
• Proactive, rapid/real time detection to threats
• Visibility into endpoint traffic & incidents
• Retrospective alerting for stealthy attacks
Impact• Prevented, detected, and defeated zero-day threats and email attacks
• Decreased threat detection by >1 month
• Given visibility and insights like breach probability and business risk
Cisco Email Security Threat DefenseComplete Protection
Cisco® Talos
Sender Profile Filtering
Anti-Spam
Outbreak Filters
Real-Time URL Analysis
Drop
Drop/Quarantine
Anti-Virus Drop/Quarantine
Advanced Malware Protection (AMP) Drop/Quarantine
Quarantine/Rewrite
Deliver Quarantine Rewrite URLs Drop
Graymail Detection Rewrite
Con
stan
t Int
egra
ted
Secu
rity
Feed
s
Demo – Email Security, Umbrella, AMP Integration
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Want a live, personal demo of what you saw here today?
Click the link in the chat window!
Some other links to check out…
Find them in the chat window!
• Umbrella Home Page• Umbrella Overview & Demo
• Umbrella Deployment Guide
• 14 Day Trial Link