New Users
Home
Analysts & Consultants
People
Channel Advantage
Products
Technology
Case Studies
Awards
About This Guide
Digital Membrane Technology
Current Scenario: Modern communications devices, removable media, and portable storage have made transferring data instant and seamless. The small size of these devices and their significant storage capacity has allowed for the convenient and effortless transport of information from endpoint PCs and laptops. An unfortunate result of these devices, according to a 2005 FBI/CSI Computer Crime and Security Survey, is that 50% of security incidents now originate from within the organization, outweighing the positive effects of tools meant to enhance productivity. Unrestricted and invisible data access poses potentially devastating vulnerabilities to corporate data.
Tomorrow's Technology Today: Based on patent-pending “Digital Membrane Technology” Safend's security solutions deliver complete visibility and granular control over all enterprise endpoints. Safend Protector 3.0 is a comprehensive endpoint security solution which enables organizations to see what ports and devices are being used in their organization and to define a policy that controls their usage. Safend Protector monitors real-time traffic and applies customized, highly-granular security policies over all physical, wireless and storage device interfaces, including: Physical ports (USB, FireWire, PCMCIA, serial, parallel); Wireless ports (WiFi, Bluetooth, IrDA); and removable media (removable storage, CD / DVD drives, floppy drives, SD cards, flash memory, zip drives, tape drives). Safend Protector detects and allows restriction of devices by device type, model or even specific device serial number. For storage devices, Safend Protector allows security administrators to either block all storage devices completely, permit read-only, or even block devices above a certain storage capacity. Granular WiFi controls are based on MAC address, SSID, or network security level. Various customized policies can be defined and automatically distributed according to the organizational units (computers and users) already defined in the user’s Active Directory. Safend Protector has the ability to create forensic logs of all data moving in and out of the organization via removable media and CD/DVD's and can transform U3 USB drives into regular USB drives while attached to organization endpoints, protecting against dangerous auto-launch programs by blocking autorun. Protector’s Cisco NAC integration allows users to create rules that mandate the presence of the Safend Protector Client before the endpoint is allowed on the corporate network. An additional unique feature of Protector is the protection provided against hardware key loggers, effectively immunizing users from the threat of identity and password theft. Safend Protector offers superior management features. The Safend Protector Management Server features a sophisticated .NET architecture which keeps all of Safend Protector’s system data in one secure central location, ensuring its proper management. This data includes security policies, the logs collected from the various endpoints, clients’ status, software license, and more. All of the data is stored in a built-in MySQL database, which is part of the standard installation, and is kept managed and secured. Through the flexible management console, Safend Protector lets administrators create comprehensive and granular endpoint security policies. Policies are exported directly to Active Directory as Group Policy Objects (GPOs), ready to be assigned to relevant organizational Units (OUs) and silently installed on clients. With build-in alerting capability, administrators can get immediate notifications if any activity that requires an immediate response. Alerts are available via email, SNMP, Syslog, Windows Event Viewer, popup messages and even custom script. Extensive logging and reporting capabilities enable managers to view and analyze the logs collected from all the endpoints in an organization, both immediately and over time. They also allow managers to define and generate custom reports, as well as to filter logs according to individual and regulatory compliance needs. Safend solutions enjoy several advantages over other endpoint security products. Notably, Safend's products are easier to learn and use, provide faster visibility of connected devices (both current and past), and offer more granular control and flexible strategy. ,Additionally, Safend solutions offer better integration with Microsoft Active Directory, and faster policy creation – from device identification to safe list creation in one click. Most importantly, Safend products provide more advanced tamper-proofing features than our competitors. The Protector agent operates at the kernel level and includes redundant, multi-tiered, anti-tampering safeguards to guarantee permanent control over endpoints; even local administrators can’t circumvent security policy. Finally, Safend products are the most cost-effective on the market today. All of this provides the missing link that has left a gaping hole in corporate security solutions. Safend Protector provides a secure, smart, intuitive and central control over an organization's ports, devices and storage devices, ensuring that users will only be able to use approved devices through permitted ports.
Tomorrow's Technology Today: Based on patent-pending “Digital Membrane Technology” Safend's security solutions deliver complete visibility and granular control over all enterprise endpoints. Safend Protector 3.0 is a comprehensive endpoint security solution which enables organizations to see what ports and devices are being used in their organization and to define a policy that controls their usage. Safend Protector monitors real-time traffic and applies customized, highly-granular security policies over all physical, wireless and storage device interfaces, including: Physical ports (USB, FireWire, PCMCIA, serial, parallel); Wireless ports (WiFi, Bluetooth, IrDA); and removable media (removable storage, CD / DVD drives, floppy drives, SD cards, flash memory, zip drives, tape drives).
Safend Protector detects and allows restriction of devices by device type, model or even specific device serial number. For storage devices, Safend Protector allows security administrators to either block all storage devices completely, permit read-only, or even block devices above a certain storage capacity. Granular WiFi controls are based on MAC address, SSID, or network security level. Various customized policies can be defined and automatically distributed according to the organizational units (computers and users) already defined in the user’s Active Directory.
Safend Protector has the ability to create forensic logs of all data moving in and out of the organization via removable media and CD/DVD's and can transform U3 USB drives into regular USB drives while attached to organization endpoints, protecting against dangerous auto-launch programs by blocking autorun. Protector’s Cisco NAC integration allows users to create rules that mandate the presence of the Safend Protector Client before the endpoint is allowed on the corporate network. An additional unique feature of Protector is the protection provided against hardware key loggers, effectively immunizing users from the threat of identity and password theft.
Safend Protector offers superior management features. The Safend Protector Management Server features a sophisticated .NET architecture which keeps all of Safend Protector’s system data in one secure central location, ensuring its proper management. This data includes security policies, the logs collected from the various endpoints, clients’ status, software license, and more. All of the data is stored in a built-in MySQL database, which is part of the standard installation, and is kept managed and secured.
Through the flexible management console, Safend Protector lets administrators create comprehensive and granular endpoint security policies. Policies are exported directly to Active Directory as Group Policy Objects (GPOs), ready to be assigned to relevant organizational Units (OUs) and silently installed on clients.
With build-in alerting capability, administrators can get immediate notifications if any activity that requires an immediate response. Alerts are available via email, SNMP, Syslog, Windows Event Viewer, popup messages and even custom script.
Extensive logging and reporting capabilities enable managers to view and analyze the logs collected from all the endpoints in an organization, both immediately and over time. They also allow managers to define and generate custom reports, as well as to filter logs according to individual and regulatory compliance needs.
Safend solutions enjoy several advantages over other endpoint security products. Notably, Safend's products are easier to learn and use, provide faster visibility of connected devices (both current and past), and offer more granular control and flexible strategy. ,Additionally, Safend solutions offer better integration with Microsoft Active Directory, and faster policy creation – from device identification to safe list creation in one click. Most importantly, Safend products provide more advanced tamper-proofing features than our competitors. The Protector agent operates at the kernel level and includes redundant, multi-tiered, anti-tampering safeguards to guarantee permanent control over endpoints; even local administrators can’t circumvent security policy. Finally, Safend products are the most cost-effective on the market today.
All of this provides the missing link that has left a gaping hole in corporate security solutions. Safend Protector provides a secure, smart, intuitive and central control over an organization's ports, devices and storage devices, ensuring that users will only be able to use approved devices through permitted ports.
Conclusion: By choosing to implement Safend technologies and specifically, Safend Protector, in their organizations, IT managers gain the visibility and control over their network endpoints that is vital to securing corporate data and maintaining regulatory compliance.
Safend, Inc. Penn Center, Suite 300 Philadelphia, PA 19102 USA Tel: 1-215-496-9646
Recommend this to others:
HOME |
ADVERTISE WITH US |
TELL US ABOUT YOURSELF |
UPDATED PRIVACY POLICY |
Copyright © 2006 Silicon Valley Communications - All rights reserved.