McAfee Threat Intelligence Exchange delivers a cohesive framework where security products collectively pinpoint threats and act as a unified threat defense system providing security resilience and immunity to infections. Threat Intelligence Exchange significantly optimizes threat prevention by narrowing the gap from encounter to containment from days, weeks, and months down to milliseconds.
Apply the power of knowledge — Threat Intelligence Exchange makes it possible for administrators to easily tailor comprehensive threat intelligence from multiple intelligence data sources. This customization empowers administrators to assemble, override, and tune the intelligence source information so that they can modify protection for their environment and organization.
Orchestrate in real time — Threat Intelligence Exchange is the first solution to use the McAfee data exchange layer, a bidirectional communications fabric enabling security intelligence, and adaptive security through product integration simplicity and context sharing. The data exchange layer (DXL) supports the automatic configuration of products, reducing errors and eliminating effort to lower implementation and operational costs of integration.
Supercharge existing endpoint protection — Threat Intelligence Exchange provides breakthrough endpoint protection, using McAfee VirusScan Enterprise to make accurate file execution decisions. Endpoints will also be protected based on malware detected by network gateways, while network gateways block access based on endpoint convictions.
McAfee Threat Intelligence Exchange makes it possible for administrators to easily tailor comprehensive threat intelligence from global data sources, such as McAfee Global Threat Intelligence (GTI) and third-party feeds, with local threat intelligence sourced from real-time and historical event data coming from endpoints, gateways, and other security components.
The McAfee data exchange layer enables security components to dynamically join the McAfee Threat Intelligence Exchange. Shared insights bring deeper awareness of the threats targeting an organization. Attacks are discovered through the endpoints, gateways, and other security components united in providing real-time surveillance.
Threat details collected from malware encounters at endpoints and network gateways can propagate through the data exchange layer in milliseconds, educating all security components to proactively immunize against newly detected threats.
While increasing security resiliency, security cost of ownership is lowered by extending existing McAfee security detection, prevention, and analytic technology investments to proactively and efficiently protect your organization as soon as a threat is revealed.
McAfee Threat Intelligence Exchange consists of the following components:
Additional requirements for McAfee Threat Intelligence Exchange include:
McAfee Threat Intelligence Exchange integrates, automates, and simplifies to decisively reduce TCO and optimize enterprise security. It eliminates complexity, provides instantaneous speed, and illuminated knowledge that can lower operating costs while streamlining protection and response ― all while freeing valuable security team resources.
For a technical summary on the McAfee product listed above, please view the product data sheet.
Stop emerging threats with applied knowledge — everywhere, instantly.
This paper explores the use of analytics and intelligence today and exposes the impediments to successful implementation. Organizations that are deploying analytics and intelligence properly are experiencing faster response and detection times, as well as greater visibility. However, many are confused about how to integrate and automate their intelligence collection processes.
There’s no doubt that organizations face significant challenges protecting their intellectual property and critical assets from the emerging threats that target their environments. This solutions brief highlights how McAfee® Enterprise Security Manager and McAfee Threat Intelligence Exchange work together to provide organizations with exactly what they need to fight today’s advanced threats.
McAfee Threat Intelligence Exchange and McAfee Advanced Threat Defense work together to provide enterprises with automated, adaptive threats response, which reduces time-to-containment of malicious files. The moment a file is convicted, the entire security infrastructure is informed and updated immediately, providing greatly enhanced visibility and control, from endpoint to network.
McAfee Threat Intelligence Exchange and McAfee Advanced Threat Defense work together to provide enterprises with automated, adaptive threat response, which reduces time-to-containment of malicious files. The moment a file is convicted, the entire security infrastructure is informed and updated immediately, providing greatly enhanced visibility and control, from endpoint to network.
How do we get more visibility into attacks across our environments, improve our response, and reduce response time? The solution is automating functions that should be automated and connecting the dots between detection systems and response. Connecting these dots and applying intelligence provides responders rich context into the observed behaviors for taking action. Integrating these processes improves accuracy, while reducing time, manpower, and costs involved in detecting and managing events. This white paper explores how to achieve this.
Adaptive intelligence and real-time communications orchestrate protection in the McAfee Security Connected Platform.
New year = new attack vectors. With the holidays in full swing and 2014 coming to a close, McAfee Labs has produced their latest Threats Report. In it, key security predictions for the coming year are discussed, including forecasts around increases in cyber espionage, more frequent attacks on the Internet of Things, and the ‘explosion’ […]
The post Ransomware to Target Cloud Storage in 2015 – Are You Ready? appeared first on McAfee.
We have looked at the current capabilities of DXL and some of the initial functionality that our partners are delivering. Now I would like to speculate on some of the interesting near-term possibilities that DXL enables. When analyzing potential cyber threats, the current device, location, and application provide contextual information that helps make correct decisions […]
The post Possible Use Cases for DXL: Sharing Conflicts and Contexts in Real Time appeared first on McAfee.
Hello everyone, This is Greg Blaum again with the Microsoft Patch Tuesday newsletter for December 2014. Well, this is the last Patch Tuesday update for 2014. If you recall from last month, one of the patches (MS14-075) was held back from the November release and not released in an out-of-band patch. It is included this […]
We all know that 2014 has been marked by a huge uptick in high-profile data breaches in both the public and private sectors. What everyone is asking is this: How do we avoid a repeat of this situation in 2015? This is an especially important question in government. With the sensitivity of the data government […]
The post McAfee SIEM Offers Real Time Information on Data Breaches – When Minutes Count appeared first on McAfee.
Much has been written in a variety of news, financial, and political publications about the effects upon the populace and economy as a result of the October 2013 government shutdown. From thousands of children having their “Head Start” programs terminated to poultry and meat inspections potentially not occurring, to a $2 billion to $6 billion […]