cl-nz logo
Story image

Securonix and Cylance partner to drive end-to-end security offering

16 Oct 2018

Security solutions providers Cylance and Securonix have announced a partnership to support the interoperability of CylancePROTECT with the release of the Securonix Security Analytics Platform.

Customers of Cylance and Securonix will now have the tools necessary to implement a prevention-first security strategy with CylancePROTECT and Securonix’s Security Analytics Platform to view and contextualise real-time intelligence collected at the endpoint.

In tandem, the two products will provide security operations centre (SOC) teams with a view of both cloud and endpoint security events in addition to the continuous protection and prevention capabilities required to proactively detect and defeat viruses, malware, ransomware, and other known and unknown threats.

Securonix products senior vice president Nitin Agale says, “By integrating our Security Analytics Platform with CylancePROTECT, we not only prevent bad actors from infecting endpoint systems, but we also ensure that every attempt they make at moving laterally across the network can be promptly detected, traced, and terminated automatically before critical systems or data are compromised.

In combination, CylancePROTECT and the Security Analytics Platform will enable SOC teams to minimise organisational risk while optimising operational efficiency.”

Threats can be resolved and remediated automatically, minimising time-to-detection but and the time between detection and quarantine.

For example, if CylancePROTECT detects and blocks a malicious file at one endpoint, the Security Analytics Platform can respond immediately by pushing out rules to every other endpoint on-premises and in the cloud to quarantine that file and block its execution.

Cylance chief product officer Eric Cornelius says, “Organisations need cybersecurity solutions that are proven to be effective at preventing both today’s and tomorrow’s attacks while providing the actionable threat intelligence SOC teams need to proactively manage cyber risk across the enterprise.”

CylancePROTECT and the Security Analytics Platform aim to provide a consolidated view of security event activity:

  1. CylancePROTECT prevents adversaries from gaining a foothold at the endpoint by detecting and blocking the execution of both file-based and fileless attacks and by applying policies for device and script control, application control, and memory exploitation protection.  
  2. The Security Analytics Platform uses restful APIs to ingest the security event data collected by CylancePROTECT at the endpoint. This includes not only information about suspect files, applications, scripts, and processes, but also event metadata, file attributes, and more.  
  3. The Security Analytics Platform aggregates and correlates ingested data with user behaviour analytics and network-based threat indicators and applies sophisticated machine learning algorithms to accurately detect advanced and insider threats and rank them based on risk scores. The Security Analytics Platform then generates prioritised alerts for threats that exceed a pre-defined risk threshold.  
  4. SOC personnel can visualise and interrogate the resulting threat chain data within the Securonix management dashboard, drilling down and pivoting from one threat indicator
Story image
Deep learning seeing widespread adoption in APAC region
As a sub-category of machine learning, deep learning is fast becoming part of mainstream AI deployments – new software to join the likes of Siri, Alexa and Cortana is currently being developed and will likely be introduced in the next few years, says GlobalData. More
Story image
IBM integrates Okta identity solutions to cloud offerings
“We’re excited to formalise the partnership to provide our joint customers with the technology to help secure their organisations.”More
Story image
Server market and ESS revenues slump as COVID-19 spreads - IDC
The enterprise storage systems market as well as server markets will see declines in the first two quarters of 2020, but are expected to recover near the end of the year, according to IDC.More
Story image
NVIDIA expands licences for vGPU trial to 500
vGPU software creates virtual GPUs that can be shared and allocated between multiple virtual machines for remote workers.More
Story image
IoT device shipments to grow 9.8% despite COVID-19 uncertainty
This may be welcome news for consumer IoT vendors looking for growth in markets seeing unprecedented disruption, but Canalys also projects a strong downturn this year, and claims vendors must be proactive to ensure they weather the incoming storm.More
Story image
Interview: Equinox co-CEOs on adopting cloud and delivering business value
In the midst of global pandemic and remote working, delivering business value and adopting DevOps and cloud is an even greater challenge. David Reiss and Deane Sloan of Equinox explain how to navigate adoption and security during COVID-19.More