Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint...

37
1 Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Transcript of Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint...

Page 1: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

1

Holistic Approach to Endpoint SecurityESET Endpoint Protection

Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Page 2: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

HOLISTIC APPROACH

TO ENDPOINT SECURITY

Ευκολία εγκατάστασης

(Central Push method)

All-in-one solution

(Virus/Malware/Web-Device Control/Firewalling/Sandboxing)

Highly integrated Automation

(1 Control & Protection agent)

User Friendly Customer Experience

(Policies & Installers)

Extra Forensic

Capabilities & Diagnostics

(Log Collector)

Κεντρικός έλεγχος –

– audit & Control

(on premise/Cloud)

Page 3: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

PROTECTION LAYERS

Signature based Antivirus/antimalware

Pre-execution exploit blocker

Pre-execution Cloudsandboxing evaluation

Post-execution

memory

threat detection

(for encrypted code)

Page 4: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 5: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 6: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Virtual Appliances Topology

Security Management Console

(ESMC)

Mobile Device Connector

(ESMC-MDC)

Physical Host 1 Physical Host 2

Management/Inside Vlan Mobile Access DMZ

Internet

SIEM Server

Detailed

View

Page 7: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Workstations/Laptops/Mobiles

Windows Servers

Management/

Inside Vlan

Intranet

Page 8: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 9: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 10: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

SECURITY POLICIES FOR USERS & DEVICES

CREATE A PROFILEPRE-EXECUTION SANDBOXING – DYNAMIC THREAT DEFENSE

ESET HIPS – HOST-BASED INTRUSION PREVENTION

Post-Execution Memory Scan

Page 11: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

WEB Access Control – Internet surfing Rules

Page 12: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Endpoint Device Control

Page 13: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Firewall network protection

Page 14: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 15: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 16: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Step 2

ESET Sandboxing – Dynamic Threat Defense (Flow)

Step 1: Client

File sent from Endpoint to

sandbox Threat Defense

Page 17: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Step 2: On Premise Server

Step 3File safety status failed

Send to Quarantine

Page 18: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Step 3: Quarantine

Page 19: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 20: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 21: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Πλεονεκτήματα

ESET

Αξιολόγηση εγκατεστημένων

προγραμμάτων βάση rating

Endpoint Active Connections

Mail integration

Endpoint Diagnostic Logs

Αποστολή αρχείων για

έλεγχο

Low Agent Footprint

Προστασία από Web

Content/Web Control

Page 22: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Ενεργές συνδέσεις (Real time)

Page 23: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Αξιολόγηση εγκατεστημένων προγραμμάτων βάση φήμης

Έλεγχος φήμης στο Live Grid

Page 24: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Mail Integration

Page 25: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Αποστολή ύποπτων αρχείων για ανάλυση

Page 26: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Agent & Service footprint

Page 27: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Προστασία υπολογιστή από κακόβουλο περιεχόμενο ιστοσελίδων

Page 28: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 29: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 30: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

ESET MOBILE PHONE SECURITYAndroid App

Page 31: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 32: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Topology

& Design

Security

Policies

Advantages

Flow of

Sanboxing

Mobile

Phone

Security

Reporting

Page 33: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

ESET ESMC REPORTING

Page 34: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Λίστα υπολογιστών με προβλήματα

Page 35: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

ESET ESMC REPORTINGΤελευταία σύνδεση

Page 36: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

Endpoint Diagnostic Logs/ErrorsQuarantine

Page 37: Holistic Approach to Endpoint Security - CBS Presentation_v3.pdf · Holistic Approach to Endpoint Security ESET Endpoint Protection Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)

THANK YOU!!

0030-2106492828 [email protected] https://www.linkedin.com/in/aris-hatjipapas/

Aris Hatjipapas, BSc/MSc (DPO, ISO27001 Lead Auditor)