Risk Visibility

Complete visibility for risk management

Next Steps:

Overview

Ultimately, you want to continuously manage risk through real-time metrics. This gives you the ability to identify and assess risk, quantify the problem, and then take appropriate and immediate action based on that targeted knowledge. The challenge is balancing your risk with the right amount of security at the right cost. By consolidating security management to a central platform, McAfee provides the efficiency you need with continuous monitoring and management of your IT environment to control your risk. You get complete visibility into your risk posture while reducing the headaches, complexity, and expense of managing IT risk.

Key Benefits

  • Gain real-time visibility of your risk
    Display your risk profile in real time using the McAfee ePolicy Orchestrator (ePO) platform and McAfee Risk Advisor.
  • Focus on the most relevant risks
    Gain immediate insight on where to focus your security efforts. Reduce the volume of alerts down to only critical threats, and minimize the amount of time it would normally take to analyze and respond to attacks.
  • Save time and enhance accuracy with automated management
    Avoid time-consuming fire drills and ad hoc processes, eliminate errors, and protect more systems with automated monitoring and management of scanning, remediation, enforcement, and reporting.
  • Enjoy simplified, centralized risk reporting
    Improve data gathering and reporting for risk management with standardized templates that compile data across all your systems for a complete picture. Customize reports to suit management, executives, and board members.
  • Demonstrate measurable ROI for existing security products
    See which regulations are impacted by a specific threat, and what corrective actions need to be taken.
  • Stay compliant with regulations
    Leverage our status as a certified Qualified Security Assessor (QSA) and Approved Scanning Vendor (ASV) for a measured approach to compliance that helps you understand and prioritize your information risks.
  • Avoid “patch panic”
    Know exactly which critical systems are at risk and where to direct your remediation efforts.

Products

Endpoint Protection

McAfee Host IPS for server
McAfee Host Intrusion Prevention System for Server

McAfee Host Intrusion Prevention for Server delivers protection from complex threats instigated by cybercrooks. It helps you maintain business uptime by protecting critical corporate assets, including servers, applications, customer information, and databases.

Network Security

McAfee Network Security Platform
McAfee Network Security Platform

McAfee Network Security Platform is the industry's most secure network intrusion prevention system (IPS). Backed by McAfee Labs, it protects customers on average 80 days ahead of the threat. It blocks attacks in real time, before they can cause damage, and protects every network-connected device. With Network Security Platform, you can automatically manage risk and enforce compliance — while improving operational efficiency and reducing IT efforts.

Risk & Compliance

McAfee Risk Advisor
McAfee Risk Advisor

McAfee Risk Advisor saves you time and money by proactively correlating threat, vulnerability, and countermeasure information to pinpoint at-risk assets and optimize patching efforts.

McAfee Vulnerability Manager
McAfee Vulnerability Manager

McAfee Vulnerability Manager finds and prioritizes vulnerabilities and policy violations on your network. It balances asset criticality with vulnerability severity, enabling you to focus protection on your most important assets.

McAfee Vulnerability Manager for Databases
McAfee Vulnerability Manager for Databases

McAfee Vulnerability Manager for Databases evaluates risk from all know threat vectors and clearly classifies threats into distinct priority levels, provides fix scripts, and includes recommendations.

Security Management

McAfee ePolicy Orchestrator

McAfee ePolicy Orchestrator (ePO) is a key component of the McAfee Security Management Platform, and the only enterprise-class software, to provide unified management of endpoint, network, and data security. With end-to-end visibility and powerful automations that slash incident response times, McAfee ePO software dramatically strengthens protection and drives down the cost and complexity of managing risk and security.

Services

Identity Theft Red Flags Rule Service

Meet compliance requirements and improve your organization’s overall security posture. Foundstone experts help you implement an identity theft prevention program, analyzing data flow and risk, as well as developing policies for detecting, preventing, and mitigating identity theft.

Incident Management Check

Build a better, more effective incident response and management program. McAfee Foundstone analyzes the gaps in your incident management program and offers recommendations to improve your emergency response protocol.

Vulnerability Management Check

Assess your vulnerability management program. McAfee Foundstone analyzes the gaps in your program to ensure you have the right balance of people, process, and technology.

Resources

Reports

Risk & Compliance Outlook 2012

In this global study, independent research firm Evalueserve examines the dynamic risk and compliance market, including the state of the industry, the challenges faced by enterprises, and emerging trends that will impact both consumers and vendors.

Risk & Compliance Outlook 2011

In this global study, independent research firm Evalueserve examines the dynamic risk and compliance market, including the state of the industry, the challenges faced by enterprises, and emerging trends that will impact both consumers and vendors.

Community

Forums

No results found

Blogs

  • NCCDC 2013 – Red Team Recap
    Jim Walter - May 07, 2013
              This past April (4/19 to 4/21) I had the great pleasure and experience of joining the Red Team at 9th NCCDC competition.   It was actually my 2nd year on the Red Team and 4th year to attend in total (I judged in 2010 and 2011).  McAfee is actually a perpetual Read more...
  • RDP+RCE=Bad News (MS12-020)
    Jim Walter - March 14, 2012
    See March 15 and 16 updates at the end of this blog. —————————————————-   The March Security Bulletin release from Microsoft was relatively light in volume. Out of the six bulletins released, only one was rated as Critical. And for good reason. MS12-020 includes CVE-2012-0002. This flaw is specific to the Remote Desktop Protocol (RDP) present on Read more...
  • An Update on DNSChanger and Rogue DNS Servers
    Jim Walter - March 06, 2012
    In late 2011, the FBI released documents and data focusing on “Operation Ghost Click.” This malicious operation, leveraging a variety of DNSChanger-type malware, was defined by the FBI as an “international cyber ring that infected millions of computers.” Associated malware samples and events can be traced back several years, and multiple platforms were targeted. To this day many remain Read more...
  • McAfee Q4 Threats Report Shows Malware Surpassed 75 Million Samples in 2011
    David Marcus - February 21, 2012
    Today we released our Fourth Quarter 2011 Threat Report, revealing that malware surpassed the our estimate of 75 million unique malware samples last year. Although the release of new malware slowed a bit in Q4, mobile malware continued to increase and recorded its busiest year to date. Malware The overall growth of PC-based malware actually Read more...
  • Cultural Security: Promoting Security Policies Using Organizational Culture
    Steven Fox - September 06, 2011
    Most of us refer to security policies in much the same way as we refer to our car manuals – when something unexpected happens.  We know these documents have useful information.  However, their utility is tied to situations where answers do not present themselves readily. According to Chris Noel, SVP of Product Management at ANXeBusiness, Read more...