Webroot SaaS
Promisec Best Practices.pdf - Promisec Spectator White Paper.pdf

The Internal Threat – Security within the Perimeter
In an era of shared information and resources, IT security executives - traditionally focused on 'securing the perimeter' - are taking a fresh look at internal network security. Even the most sophisticated gateway solution, designed to control access into and out of the network, cannot address the internal threat. For example, an insider can connect a mobile phone or his PDA to his PC for synchronization purposes and at the same time open a connection to the internet that bypasses the gateway hence creating an unsecured access route into the organization.

Information Security managers acknowledge this lack of ability from gateway security solutions yet find it difficult to control the activities of internal users who, purposely or accidentally, with no malicious intent, could cause severe, irreparable damage to the organization.

Spectator™ Professional – Complements Gateway Security Solutions
Spectator™ Professional’s Clientless Endpoint Security Management (CESM) software from PromisecTM provides the organization with a complete security solution that protects it from threats originating within the internal network, caused by its own users or other insiders. The solution is a software only solution that is normally installed on an administrators desktop or on a server in the SOC/NOC (Security/Network Operations Center) and NOT at the gateway.

As more and more people are granted access to mission-critical data and resources, many of today's threats originate from endpoints within the network. Internal users, often with access to the most sensitive of company information, can either maliciously or unwittingly introduce harmful code into their PCs. Trusted employees can copy confidential information for use outside the organization unhindered.

In today's IT environment it is essential for enterprises to combine a CESM type of solution with existing gateway security solutions, that enhance and complement each other in order to provide total security for both the network perimeter and the internal organization.

Detects, Repairs, Prevents, Monitors
With Detection, Repair, Prevention and Monitoring modules, Spectator™ Professional delivers a comprehensive solution to manage security on all organization network endpoints and servers. Spectator™ Professional:

    • Detects hidden threats. Spectator™Professional identifies threats that have bypassed gateway security systems and embedded themselves in the network - rogue access points, modems or any other peripheral device added to any network endpoint or server, and unauthorized processes or applications.

    • Repairs threats before they result in a security breach. Leveraging remote remediation technology from a centralized management console, Spectator™ Professional enables security administrators to remotely kill harmful processes and reverse dangerous registry changes, directly from their own workstation.

    • Prevents the leak of confidential information. Spectator™ Professional prevents the use of mass storage devices or any peripheral I/O device - whether on-board or external - on any endpoint or group of endpoints. This effectively stops individuals from illegally copying sensitive company information onto portable devices.

    • Monitors for Compliance. In today's environment of ever-evolving regulatory standards, Spectator™ Professional enables organizations to ensure constant compliance. By constantly inspecting each and every endpoint and server in the network, SpectatorTM Professional ensures that compliance is strictly and continuously maintained according to company policy. If for any reason an endpoint becomes non-compliant, SpectatorTM Professional can return it to a state of compliance using the built in 'Repair' module.

© 2008 Security Forensics, Inc. All rights reserved.
Terms of Use  :  Privacy Policy