180 likes | 486 Views
The Evolution of the Kaspersky Lab Approach to Corporate Security. Petr Merkulov, Chief Product Officer, Kaspersky Lab Kaspersky Lab Cyber Conference, Cancun, February 5-9, 2012. Global IT Trends…. ….bring additional c ustomer IT security challenges. External threats. Growing malware.
E N D
The Evolution of the Kaspersky Lab Approach to Corporate Security Petr Merkulov, Chief Product Officer, Kaspersky Lab Kaspersky Lab Cyber Conference, Cancun, February 5-9, 2012
Global IT Trends…. ….bring additional customer IT security challenges External threats Growing malware Consumerization & Mobility Deployment/ Management Sensitive data leakage/loss IncreasingSecurity Demand Compliance Diversity of devices Cloud &Virtualization IT Infrastructure Complexity Growing digital data
Kaspersky Endpoint Protection ….from Customer challenges to product directions Dynamic multi-layer security External threats Sensitive data leakage/loss Deployment/ Management Data Protection Manageability Diversity of devices Platforms/ environments
Enhancing depth of protection Evolution of multi-layered security 67 mln samples Signatures New Threats Every Day 5,000,000 70,000 4,000,000 Whitelisting 3,000,000 KSN HIPS 2,000,000 Emulation Traditional Heuristics 1,000,000 Signatures 0 2005 2006 2007 2008 2009 2010 2011
Our response to a growing threat Dynamic multi-layer protection • Malware and phishing filtering • Script heuristics • Web-AV/Control • Device Control I Penetration II Store 5. Signatures scanner III Run attempt • Cloud whitelisting/blacklisting • Emulator heuristics • Security rating (patented) IV Execution • Application control
Maximum Usage of Security Cloud Global cloud distributed intelligence network – Kaspersky Security Network • 50 mln users The Kaspersky Security Network • Real-time information collection Kaspersky Global Users • 1 000 000new files added every day Your Office • 280 million file reputations Kaspersky Global Users
Whitelisting as an essential part of Application Control Whitelisting is crucial because there are too many files out there to be checked by traditional scanning approach • More than 300mln. • trusted files …
Kaspersky Endpoint Protection ….from Customer challenges to product directions: Data Protection Dynamic multilayer security Manageability Data Protection Platforms/ environments
Kaspersky Endpoint Protection Data Protection evolution Content aware DLP DLP-lite Content aware DLP 2011 2009 Beyond 2012 2012 Removable media & full disk encryption • Encryption File/folder encryption Complexity of deployment Advanced device control Basic device control • Device Control Successful Adoption rate
Endpoint Protection Philosophy and direction ….from Customer challenges to product directions: Platform Support Dynamic multi-layer security Manageability Data Protection Platforms/ environments
Kaspersky Endpoint Security Platform support evolution Beyond 2012 2012 2009 2010 Macintosh, Linux Symbian, Android, Windows Mobile KSV (vShield) MDM (agentless) Hyper-V, Citrix, etc Advanced MDM (agent based) Basic virtualization support (VMWare ready) ✚
Kaspersky Security for Virtualization • Works with VMware’s vShield Endpoint • Antimalware functions offloaded • Managed component of Kaspersky Security Center VM VM VM KSV Virtual Appliance VMware ESX and ESXi VMware vShield Physical Host
Endpoint ProtectionPhilosophy and direction ….from Customer challenges to product directions: Manageability Dynamic multi-layer security Manageability Data Protection Platforms/ environments
Kaspersky Endpoint Security Manageability philosophy • Single-Pane for administrators • Automatic recognition • Broad platform coverage: Physical, Virtual, Mobile • Intuitive deployment, management & reporting Agentless Virtual Deployment Agent Based Virtual Deployment Laptop Kaspersky Security Center Desktop Smartphone
Kaspersky Endpoint Security Manageability evolution: systems & security management synergy • System management Security • Software deployment • Antivirus Software and Hardware discovery and inventory • Patch management • Host Intrusion Prevention System • License Management Vulnerabilities management • Power management • Application control • OS deployment • & migration • Data protection IT RISK MANAGEMENT AND REPORTING Repots and dashboards • Security compliancy • Remote control
Kaspersky Endpoint Security Manageability evolution: Mobile Device Management (MDM)
The Evolution of Kaspersky Endpoint Protection Encryption, DLP Enabling customers to adopt advanced technologies Always staying focused on providing immediate value App. Control and Whitelisting Vulnerability and Patch Management Systems management Signature- and Pattern-based Detection Heuristics, Self Defense, Emulators DATA PROTECTION PROACTIVE CUSTOMIZABLE CONTROLS CLOUD REACTIVE Cloud-assistedSecurity Networks
Peter Merkulov, Chief Product Officer, Kaspersky Lab Kaspersky Lab Cyber Conference, Cancun, February 5-9, 2012