VMware Transforms Security for Applications Running on VMware vSphere(R)-Based Virtualized and Cloud Environments
Date : August 28, 2017"The growing frequency and cost of security incidents points to a fundamental flaw in security models that focus solely on chasing threats," said
An intent-based security model is made possible through:
- Increased use of automation in application and infrastructure provisioning
- Use of application frameworks that provide richer and more authoritative views of intended state
- Application of machine learning that enables the ability to reason about state and behavior across large populations
- Increased use of virtualization and cloud, which provides greater application context and isolation
Leveraging
"A security model concentrating on appropriate application behavior can help shrink the attack surface and improve the ability to pinpoint real threats," said
"Signature-based defenses alone are proving to be increasingly ineffective at preventing modern malware threats," said
AppDefense enables customers to improve the effectiveness of existing security controls. Endpoint security, security information and event management (SIEM) and Security Operations Center Analytics are able to integrate with AppDefense to gain unique application context, leverage the virtual infrastructure for remediation, and protect their own position on the endpoint. Managed Security Service Providers (MSSPs) are able to build new data center and cloud security offerings around AppDefense. Initial partners for AppDefense include:
- IBM Security: AppDefense plans to integrate with IBM's QRadar security analytics platform, enabling security teams to understand and respond to advanced and insider threats that cut across both on-premises and cloud environments like IBM Cloud. IBM Security and
VMware will collaborate to build this integrated offering as an app delivered via the IBM Security App Exchange, providing mutual customers with greater visibility and control across virtualized workloads without having to switch between disparate security tools, helping organizations secure their critical data and remain compliant. - RSA: RSA NetWitness Suite will be interoperable with AppDefense, leveraging it for deeper application context within an enterprise's virtual datacenter, response automation/orchestration, and visibility into application attacks. RSA NetWitness Endpoint will be interoperable with AppDefense to inspect unique processes for suspicious behaviors and enable either a Security Analyst or AppDefense Administrators to block malicious behaviors before they can impact the broader datacenter.
Carbon Black : AppDefense will leverageCarbon Black reputation feeds to help secure virtual environments. UsingCarbon Black's reputation classification, security teams can triage alerts faster by automatically determining which behaviors require additional verification and which behaviors can be pre-approved. Reputation data will also allow for auto-updates to the manifest when upgrading software to drastically reduce the number of false positives that can be common in whitelisting.- SecureWorks: SecureWorks is developing a new solution that leverages AppDefense. The new solution will be part of the SecureWorks Cloud Guardian™ portfolio and will deliver security detection, validation, and response capabilities across a client's virtual environment. This solution will leverage SecureWorks' global Threat Intelligence, and will enable organizations to hand off the challenge of developing, tuning and enforcing the security policies that protect their virtual environments to a team of experts with nearly two decades of experience in managed services.
- Puppet: Puppet Enterprise is integrated with AppDefense, providing visibility and insight into the desired configuration of VMs, assisting in distinguishing between authorized changes and malicious behavior.
Partner Commentary
"As attacks become more sophisticated, it's more important than ever for security analysts to have full visibility into potential security incidents at every layer of their IT infrastructure, both on-premise and in the cloud. The direct integration of AppDefense with IBM Security technologies will allow additional analysis of this data by Watson for Cyber Security, which can provide analysts with a clearer understanding of the scope of advanced attacks. It can also help bridge the gap between IT operations and security teams, allowing them to orchestrate incident response and quickly take action to defend their organization." -
"
"Securing virtual environments has become a critical imperative. With the combination of
"SecureWorks' position in the MSSP market has been driven by the ability to deliver the best results in protecting our clients' infrastructure. That requires richer visibility and context into the applications and data most critical to our customers. We will be delivering a new managed solution that leverages AppDefense for precisely that reason." -
"We're excited to be one of
Pricing and Availability
VMware AppDefense is initially available today in the
Additional Resources
- Read a perspective on today's VMworld news from
Chris Wolf , Vice President and CTO, Global Field and Industry,VMware , "Innovation from the Data Center to the Edge to the Cloud" - Go to the VMworld 2017 US Online Press Kit
- Read more about AppDefense here
- Connect with
VMware on Twitter and Facebook
About VMware Cloud
VMware Cloud™ gives customers maximum flexibility to select the best cloud environment to deploy and run applications on any device, with the ability to leverage development platforms and building blocks for new applications -- while also maintaining consistent operations that help ensure the integrity of the entire IT portfolio. VMware Cloud provides the essential software foundation that delivers a common operating environment spanning on-premises data centers and leading public/managed clouds. VMware Cloud delivers the optimal environment for all applications: custom-built applications, packaged apps, virtualized, cloud-native and SaaS. VMware Cloud creates an ideal environment for building, testing and deploying production applications and is supported by a broad ecosystem of partners.
About
Media Contact Roger T. Fortier VMware Global CommunicationsMobile: 408-348-1569rfortier@vmware.com
Source: