SUBSCRIBE

Cisco expands network security to endpoints and the cloud

Cisco Systems is broadening its network security coverage by expanding the intrusion detection and prevention technology it gained through an acquisition, plus offering a new cloud-based managed Wi-Fi network access control service.

The goal of the new services, announced Monday at the annual Cisco Live conference, this year in San Diego, is to embed security from endpoints to the cloud, the company said.

The idea is to deliver โ€œnetwork as a sensor, network as an enforcer,โ€ CP Morey, director of product and solution marketing for Ciscoโ€™s security business group, said in an interview.

From the endpoint perspective, the advanced malware protection (AMP) technology Cisco gained from its 2013 acquisition of SourceFire has been integrated into Ciscoโ€™s AnyConnect 4.1 VPN client.

This means AnyConnect has expanded continuous threat protection, Morey, said. โ€œIts about giving customers the ability to quickly deploy AMP technology onto these 130 million (AnyConnect) endpoints either proactively or after a breach.โ€

AMP is already integrated into Ciscoโ€™s cloud security service, as well as many gateways, network devices and email and Web security appliances and mobile systems.

At the campus and branch level, the PowerFire threat defence technology also gained from SourceFire is now integrated into Ciscoโ€™s ISR routers.

As a result ISR customers can add optional next-generation firewall, URL filtering, application control, IPS and malware protection through licences. for ISR. โ€œItโ€™s great for edge or branch deployments,โ€ Morey said.

Third, Cisco [Nasdaq: CSCO] has added broader integration of its Identity Services Engine (ISE) and Netflow data with Lancope Inc.โ€™s StealthWatch network behaviour anomoly detection platform to expand the platformโ€™s alerting and alarming capabilities.

Netflow and ISE tell security pros who and what device is on the network. StealthWatch gives network visibility. By giving it access to Netflow and ISE data, network administrators will have faster notification about perceived threats, Brian Korn, Ciscoโ€™s senior manager of product and solution marketing.

It can take up to 80 days to discover an attack, he said. โ€œWe want to take that time window and dramatically shrink it.โ€

StealthWatch is sold separately through Cisco partners.

Finally, Cisco announced Hosted Identity Services for CSOs who want to outsource more of their functions. Harlan Parrott, director of customer solutions for Cisco Security Solutions, said in an interview that initially it will be pitched at large enterprises.

Using the companyโ€™s Identity Services Engine (ISE), the base service is for locking down Wi-Fi access to network-connected assets through policies. Customers can add other ISE-related capabilities โ€” ISE connects to a number of network monitoring platforms including Splunk, NetIQ, Ping Identity and others โ€” for an extra fee.

Cisco didnโ€™t release pricing, saying it depends on the capabilities customers want.

Eventually, Harlan said, Hosted Identity Services will be available to service providers for re-sale.

Tech Jobs

Categories