Your SlideShare is downloading. ×
Семинар по продуктам компании AlgoSec
Upcoming SlideShare
Loading in...5
×

Thanks for flagging this SlideShare!

Oops! An error has occurred.

×
Saving this for later? Get the SlideShare app to save on your phone or tablet. Read anywhere, anytime – even offline.
Text the download link to your phone
Standard text messaging rates apply

Семинар по продуктам компании AlgoSec

440
views

Published on

Published in: Technology

0 Comments
1 Like
Statistics
Notes
  • Be the first to comment

No Downloads
Views
Total Views
440
On Slideshare
0
From Embeds
0
Number of Embeds
4
Actions
Shares
0
Downloads
0
Comments
0
Likes
1
Embeds 0
No embeds

Report content
Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate.

Cancel
No notes for slide

Transcript

  • 1. AlgoSecSecurity Management Suite
  • 2. The AlgoSec Security Management Suite (SMS) Результаты применения • До 60% снижения в стоимости внедрения изменений в сети МСЭ • До 80% снижения в стоимости проведения аудита соответствия стандартам в сети МСЭ • Повышение уровня безопасности сети МСЭ за счет закрытия «скрытых дыр» • Снижение времени на определение проблем доступа к услугам из-за проблем МСЭ и повышение доступности услуг • Повышение внутриорганизационного взаимодействия и снижение «трений» между ИБ и sys/app админами Confidential
  • 3. AlgoSec Firewall Analyzer (AFA) Анализ политик• Visibility across all leading firewalls, routers and secure web gateways• Network Topology Intelligence• Policy cleanup & optimization• Intelligent Policy Tuner™• Risk analysis• Regulatory Compliance Reports• Baseline Configuration Compliance• Change monitoring• Policy migration verification Confidential
  • 4. AlgoSec FireFlow Автоматизация рабочего процесса• Customizable, automated workflows• Intelligent change simulation and analysis• Proactive risk & compliance assessment• Optimal implementation design• Automatic policy push• Complete audit trail• SLA Monitoring• Integration with existing systems (BMC, HP, CA) Confidential
  • 5. Технологическая основа - Deep Policy Inspection Больше результатов. Более аккуратно.• Non-Intrusive• Анализ на основе топологии сетей МСЭ• Анализ отдельного устройства, группы устройств или “матрицы” устройств• Запатентованный алгоритм анализа всех вариаций трафика• Мониторинг изменений МСЭ в режиме nRT• Самая обширная встроенная база знаний (KB) для определения риска и соответствия стандартам Confidential
  • 6. DemoAlgoSec Firewall Analyzer
  • 7. Network Topology VisibilityTopology Map• Automatically generated• Visually Customizable• Can include any device with a routing table Confidential
  • 8. Traffic QueriesSee how the securitypolicy impacts traffic• Fast troubleshooting• “What-If” Analysis• Topology-Aware Confidential
  • 9. Политики оптимизации и очисткаUnclutter, Secure andOptimize your Policy• Identify covered rules• Discover unused objects• Consolidate similar rules• And much more… Confidential
  • 10. Политики оптимизации и очисткаIntelligent RuleReordering• Move frequently used rules to the top of the policy to boost performance• Policy logic remains intact Confidential
  • 11. Intelligent Policy Tuner™Tighten Permissive Rules• Identify overly permissive rules based on historical traffic analysis• Replace “ANY” with actual business requirements! Confidential
  • 12. Анализ рисковIdentify and mitigatefirewall policy risk• Broadest out-of-the-box risk knowledgebase• Easily build and edit custom risk profiles• Identifies all risky rules• Provides risk details and remediation guidance• Supports regulations• Security rating provides instant visibility of security posture (benchmarked against real-world configurations) Confidential
  • 13. Автоматические отчётыДо 80% снижения встоимости проведенияаудита соответствиястандартам• Экономия времени• Поддерживаемые правила регуляторов • PCI DSS • SOX • ISO 27001 • Basel II • NERC CIP • J-SOX Confidential
  • 14. Baseline Configuration ComplianceEnsure Compliant FirewallConfiguration• Define and customize platform/software/OS configuration policy• Report baseline compliance for each firewall Confidential
  • 15. Мониторинг измененийКонтроль всехизменений вполитикебезопасности• All changes are tracked in near real time• Receive automatic alerts on changes• Generate audit reports• Connect to virtually any network device using AlgoSec Extension Framework (AEF) Confidential
  • 16. Firewall MigrationSimplify MigrationProjects• Compare “old” policy to “new” policy• Compare any two firewall vendors• Validate correct policy migration Confidential
  • 17. FireFlowConfidential
  • 18. Today’s Change Management Process Plan the Execute the change change Verify correct Perform risk execution to assessment avoid outages Audit and Validate that govern the the change is change needed process Clarify user Manual Measure SLA request Process Confidential
  • 19. Tomorrow’s Change Management Process FireFlow – Intelligent Change Workflow Automation OptimalRequest Proactive Risk Verify Correct Audit the ImplementationAnalysis Assessment Execution Change Process Design Recertify Rules Security Operations Operations Measure SLAs Compliance Executive Confidential
  • 20. DemoAlgoSec FireFlow
  • 21. Гибкость рабочих процессовПолностью настраивается под ваши бизнес-процессы• Customizable, role-based workflows• Assign different workflows to different requests• Support for dynamic and parallel workflow logic• Out-of-the-box workflows for: • Adding rules • Removing rules • Changing objects • Recertifying rules • Web Proxy (Blue Coat) changes Confidential
  • 22. Intelligent Request Verification• Translate vague requests into technical requirements• Topology-aware analysis verifies change is needed and identifies relevant devices that need to be changed• Identifies and eliminates “already works” requests (20%-30% of requests) Confidential
  • 23. Proactive Risk and Compliance Assessment• Automatically assess the risk of each change• Broadest knowledgebase of regulations, best practices and your customized corporate policy• Optionally auto-reject risky requests Confidential
  • 24. Intelligent Implementation Design• The most secure and efficient implementation recommendation• Details on which rules and objects to add or modify• Sub-requests are created for every device that needs changing Confidential
  • 25. ActiveChange - Automated Policy Push• Save time and avoid manual error by automatically “pushing” the policy to Check Point firewalls (using OPSEC API)• Full policy backup to ensure safety and roll-back capabilities• Policy is NOT installed on the network Confidential
  • 26. Auto-validation• Validates that changes exist on the network to “get it right first time”• Prevents premature closing of tickets• Informs requestor of implementation Confidential
  • 27. Auto-Matching • All changes are automatically detected and matched to requests • Unaccounted changes and are discovered as well as changes that are “wider” than the request Confidential
  • 28. Complete Governance and SLA Tracking• Complete audit trail of all stages of the security change request• SLA and performance tracking Confidential
  • 29. Интеграция с другими системами• Integrate FireFlow with your existing change management systems (E.g. BMC Remedy, HP Service Manager)• Integration can work in either direction: • Relevant tickets in master CMS automatically open a FireFlow ticket • FireFlow ticket automatically opens a ticket in the master CMS• Integration can continuously update the ticket status. Confidential
  • 30. Deployment and Licensing
  • 31. Варианты развертыванияAlgoSec Appliance• Простая установка «под ключ»• Масштабируемость для поддержки больших сетей МСЭ• High-Availability и работа active/standby• Репликация данных• Балансирование нагрузок для обработки Optimal Max отчетов состояния сети Appliance #Firewalls #Firewalls 1020 50 150Virtual Appliance 1080 500 1000• Быстрая и простая установка 1160 1000 2000• Пре-инсталированные Linux OS и ПО AlgoSec• Идеально для консультантов и аудиторовПО AlgoSec• Устанавливается на сервера Linux Confidential
  • 32. Архитектура Enterprise-grade solution with support for: Geographical Distribution Load Sharing (Clustering) High-Availability/DR Slave Master Active Standby SlaveRemote appliances collect data For large environments: Automatic synchronizationand transmit it to a central Report generation workload Automatic failovermanagement appliance for shared across multiple appliances. Support for Disaster Recoveryprocessing.
  • 33. Licensing/EvaluationAlgoSec Firewall Analyzer• Licensed per device – firewall, cluster or router• Basic product: AFA Operations & Optimization – Perpetual license only• Add-On: AFA Risk & Compliance module (Basic or Advance) – perpetual license or 1-year term subscription*• Traveling licenses available for consultantsFireFlow• Base server license plus add-on per device – firewall, cluster or router• Perpetual license or 1-year term subscription*Тестирование демо-версии• Доступна 30-дневная демо-версия продукта All purchases are covered by the AlgoSec Money-Back Guarantee* Term Subscription includes support & maintenance Confidential
  • 34. Почему AlgoSec? ИнтеллектуальныеЛидер рынка технологии• Нам доверяет большинство компаний • Представляет самые действенные• Бесценный опыт и know-how, полученные результаты и высокую точность анализа в работе с ведущими мировыми • Простота в использовании с поддержкой организациями реальных бизнес-задачАвтоматизация Customer Satisfaction• Фокус на автоматизации трудоёмких • Гарантированный возврат средств на все ручных бизнес-процессов покупки, если продукт не отвечает• Встроенные автоматические workflow-ы требованиям – уникально для этой• Измеряемый и доказанный быстрый ROI области индустрии • С нами просто и надежно вести бизнес Confidential
  • 35. Нас выбрали более 900 заказчиков по всему мируFinancialTelecomMSSPConsultantEnergyOther Confidential
  • 36. Security Management. Made Smarter.Connect with AlgoSec on:

×