Managing Change

Control change in your IT environment

Next Steps:

Overview

Managing change is a constant battle when you are dealing with multiple operating systems, networks, servers, desktops/laptops, users, applications, and databases. McAfee Risk Management solutions not only handle the change that is inherent in your environment, but also guide you in your patch management and policy enforcement efforts, minimizing the impact change has on your operations. Through continuous monitoring and management, you can automatically assimilate beneficial changes while preventing disruptive changes. Our goal is to keep your systems available and your users productive.

Key Benefits

  • Reduce risks from unauthorized applications
    Block unwanted applications and their risks. Users can unintentionally introduce software that installs malware, creates support issues, and violates software licenses — compromising systems and your overall business. McAfee Application Control allows only trusted applications to run on your endpoints and servers.
  • Enforce change policy and processes
    Ensure that only in-process changes are allowed. McAfee Change Control proactively blocks out-of-process and unwanted changes to systems before they occur.
  • Reduce operational costs
    Prevent unauthorized or inappropriately applied changes and reduce the manual effort to track and account for changes made to systems with Change Control. Change Control reduces outages, security breaches, and compliance violations that result in additional IT costs.
  • Automate audits and configuration assessments
    Get up-to-date data, powerful dashboards and reports, and built-in waiver management to simplify every step of your audit and configuration process.
  • Meet and sustain PCI DSS compliance
    Get continuous information about change events across the point-of-service infrastructure to comply with PCI DSS requirements. McAfee Integrity Control informs you on which server(s) originated the change, when it was made, which user made the change, how the change was made, what content inside the file changed, and whether the change was approved.
  • Simplify compliance coverage
    Automate compliance activities seamlessly with the industry's first integrated, agent-based and agentless solution for patch assessment, compliance reporting, and risk analysis.

Products

Risk & Compliance

McAfee Total Protection for Compliance
McAfee Total Protection for Compliance

McAfee Total Protection for Compliance makes compliance easy with the industry’s first integrated solution for vulnerability management, compliance assessment and reporting, and comprehensive risk management.

McAfee Application Control
McAfee Application Control

McAfee Application Control ensures only trusted applications run on servers and endpoints. It reduces risks from unauthorized software, boosts endpoint control, extends the viability of fixed-function systems without impacting performance, and lowers operating costs.

McAfee Change Control
McAfee Change Control

McAfee Change Control enforces change policies and provides alerts to file integrity issues, while providing options to easily block unauthorized changes to critical system files and directories.

McAfee Configuration Control
McAfee Configuration Control

McAfee Configuration Control prevents unauthorized changes on critical servers, boosts visibility into your environment, and streamlines internal and external IT audit processes.

McAfee Integrity Control
McAfee Integrity Control

McAfee Integrity Control combines industry-leading whitelisting and change control technology, ensuring that only trusted applications run on fixed-function devices, such as point-of-service (POS) systems, ATMs, and kiosks.

McAfee Policy Auditor
McAfee Policy Auditor

McAfee Policy Auditor automates data gathering and assessment processes required for internal and external system-level IT audits.

Security Management

McAfee ePolicy Orchestrator

McAfee ePolicy Orchestrator (ePO) is a key component of the McAfee Security Management Platform, and the only enterprise-class software, to provide unified management of endpoint, network, and data security. With end-to-end visibility and powerful automations that slash incident response times, McAfee ePO software dramatically strengthens protection and drives down the cost and complexity of managing risk and security.

Services

Data Loss Prevention Assessment

Detect and prevent the unauthorized transmission or disclosure of sensitive information. McAfee Strategic Security Services reduces your risk of exposure by identifying sensitive data copied or currently in transit from its original intended container.

Identity Theft Red Flags Rule Service

Meet compliance requirements and improve your organization’s overall security posture. McAfee Strategic Security Services experts help you implement an identity theft prevention program, analyzing data flow and risk, as well as developing policies for detecting, preventing, and mitigating identity theft.

Incident Management Check

Build a better, more effective incident response and management program. McAfee Strategic Security Services analyzes the gaps in your incident management program and offers recommendations to improve your emergency response protocol.

Vulnerability Management Check

Assess your vulnerability management program. McAfee Strategic Security Services analyzes the gaps in your program to ensure you have the right balance of people, process, and technology.

Resources

Reports

Risk & Compliance Outlook 2012

In this global study, independent research firm Evalueserve examines the dynamic risk and compliance market, including the state of the industry, the challenges faced by enterprises, and emerging trends that will impact both consumers and vendors.

Risk & Compliance Outlook 2011

In this global study, independent research firm Evalueserve examines the dynamic risk and compliance market, including the state of the industry, the challenges faced by enterprises, and emerging trends that will impact both consumers and vendors.

Community

Blogs

  • NCCDC 2013 – Red Team Recap
    Jim Walter - May 07, 2013
              This past April (4/19 to 4/21) I had the great pleasure and experience of joining the Red Team at 9th NCCDC competition.   It was actually my 2nd year on the Red Team and 4th year to attend in total (I judged in 2010 and 2011).  McAfee is actually a perpetual Read more...
  • RDP+RCE=Bad News (MS12-020)
    Jim Walter - March 14, 2012
    See March 15 and 16 updates at the end of this blog. —————————————————-   The March Security Bulletin release from Microsoft was relatively light in volume. Out of the six bulletins released, only one was rated as Critical. And for good reason. MS12-020 includes CVE-2012-0002. This flaw is specific to the Remote Desktop Protocol (RDP) present on Read more...
  • An Update on DNSChanger and Rogue DNS Servers
    Jim Walter - March 06, 2012
    In late 2011, the FBI released documents and data focusing on “Operation Ghost Click.” This malicious operation, leveraging a variety of DNSChanger-type malware, was defined by the FBI as an “international cyber ring that infected millions of computers.” Associated malware samples and events can be traced back several years, and multiple platforms were targeted. To this day many remain Read more...
  • McAfee Q4 Threats Report Shows Malware Surpassed 75 Million Samples in 2011
    David Marcus - February 21, 2012
    Today we released our Fourth Quarter 2011 Threat Report, revealing that malware surpassed the our estimate of 75 million unique malware samples last year. Although the release of new malware slowed a bit in Q4, mobile malware continued to increase and recorded its busiest year to date. Malware The overall growth of PC-based malware actually Read more...
  • Cultural Security: Promoting Security Policies Using Organizational Culture
    Steven Fox - September 06, 2011
    Most of us refer to security policies in much the same way as we refer to our car manuals – when something unexpected happens.  We know these documents have useful information.  However, their utility is tied to situations where answers do not present themselves readily. According to Chris Noel, SVP of Product Management at ANXeBusiness, Read more...

Blogs

No results found