fireeye hx series

2
HX Series Endpoint Threat PreventionPlatform tha t Detects, Analyzes, andResolves Securit y Incidents on theEndpoint HIGHLIGHTS • Integrated network and endpoint security: Validate and analyze network alerts by finding matching activity on endpoints. • Reachendpoints anywhere: Innovative Agent Anywhere technology reaches remote endpoints outside the corporate network and behind NAT. • Detect threats usingrobust threat intelligence: Apply threat intelligence from FireEye to find advanced threats in your IT environment. • Contain compromised devices within a single click workflow: Isolate compromised devices with a single mouse click to deny attackers access to systems while still allowing remote investigation. • Quickly investigate all endpoints:Investigate tens or hundreds of thousands of endpoints in a matter of minutes. DATASHEET SECURITY REIMAGINED Overview Organizations invest millions of dollars ontop-knotch securityteams aswell as securitysystems to prevent threats and keepattackers out.Despite these investments, determinedattackers still manageto compromiseorganizations andsteal their intellectual propertyand financialassets. The Endpoint Threat Prevention Platformequipssecurity teams to confidently detect, analyze, andresolveincidents inafraction of the timeit takeswhen using traditional approaches. Search for advanced attackers and APTs Host-baseddetectionIndicators of Compromise (IOCs) identifythreats missed byAV,including advanced attackersandadvanced persistent threats (APTs).Users areimmediately notified when an IOC identifies a compromiseddevice. Extend FireEye Detection to Your Endpoints Seamlesslyextend the visibility of other FireEye ® Threat Prevention Platforms, such asFireEye Network Threat Prevention Platform(NXSeries), to the endpoint. The endpoint agents are updatedautomatically with indicators of compromise,providing integrated “defenseindepth”for the most important threats: those that are occurring right now. Validate Network Alerts Confirm whether attacks seen on the network actuallycompromisedan endpoint. For eachalertfrom another FireEye product,identifyall impacted endpoints. Analysts canfurther analyze what caused anynetwork alert(including those from aSIEM) byviewing anautomatically collected timelineof eventsfrom the impactedagent . Complete Coverage with Agent Anywhere Drivecoverageto remote endpoints outsidethe corporatenetwork using the Agent Anywhere technologyno matterwhat kind of Internet connectiontheyhave.Indicators from current attacks arepushed to remote endpoints that aren’t on networks protectedbyFireEye products. This allows analysts to investigateand contain endpoints anywhere inthe world, with no additional VPN connectionneeded. Contain endpoints Securityprofessionalscantake immediate actionto isolate compromiseddevices, thus denying attackers access to thosesystems to continue their attack. This allows the securityteamaccess to conduct a completeinvestigation of anincident without further riskof infection. Cipherwire.net Fireeye Prices Security Gateways

Upload: jim-meulemans

Post on 07-Nov-2015

67 views

Category:

Documents


0 download

DESCRIPTION

Endpoint Threat Prevention Platform that Detects, Analyzes, and Resolves Security Incidents on the Endpoint. Cipher Networks is an Authorized Value Added Reseller for Network Security Products such as Fireeye. You can contact CipherWire with the contact details below. CipherWire Networks - http://cipherwire.net/ Tel#: 866-421-9522 | Email: [email protected] Contact Person: Jim Meulemans Tel#: 434-534-6989 Email:[email protected]

TRANSCRIPT

  • HXSeriesEndpointThreatPreventionPlatformthatDetects,Analyzes,andResolvesSecurityIncidentsontheEndpoint

    HIGHLIGHTS

    Integratednetwork andendpoint security:Validate andanalyzenetwork alerts by findingmatching activity on endpoints.

    Reachendpoints anywhere: Innovative Agent Anywhere technology reaches remote endpoints outside the corporate network andbehind NAT.

    Detect threats usingrobust threat intelligence:Apply threat intelligence fromFireEye to find advancedthreats in your ITenvironment.

    Contain compromised devices within a singleclick workflow: Isolate compromised deviceswith a singlemouse click to denyattackers access to systemswhile still allowing remoteinvestigation.

    Quickly investigate all endpoints:Investigate tens or hundredsof thousands of endpoints in amatter of minutes.

    D A T A S H E E T

    SECURITYREIMAGINED

    OverviewOrganizations investmillionsofdollarsontop-knotchsecurityteamsaswellassecuritysystemstopreventthreatsandkeepattackersout.Despitetheseinvestments,determinedattackersstill managetocompromiseorganizationsandstealtheir intellectualpropertyandfinancial assets. The Endpoint Threat PreventionPlatformequipssecurityteams to confidently detect, analyze,andresolveincidents inafractionofthetimeit takeswhenusingtraditionalapproaches.

    Searchfor advancedattackersandAPTsHost-baseddetectionIndicatorsofCompromise(IOCs) identifythreatsmissedbyAV,includingadvancedattackersandadvancedpersistentthreats(APTs).Usersareimmediatelynotifiedwhen an IOC identifies acompromiseddevice.

    ExtendFireEyeDetectiontoYour EndpointsSeamlesslyextendthevisibilityofotherFireEyeThreatPreventionPlatforms,suchasFireEyeNetworkThreatPreventionPlatform(NXSeries), totheendpoint.Theendpointagentsareupdatedautomaticallywithindicatorsofcompromise,providingintegrateddefenseindepthfor themostimportant threats: thosethatareoccurringrightnow.

    ValidateNetworkAlerts Confirmwhether attacks seen on the networkactuallycompromisedanendpoint.ForeachalertfromanotherFireEyeproduct,identifyall impactedendpoints.Analysts canfurtheranalyzewhatcausedanynetworkalert(including thosefromaSIEM)byviewinganautomaticallycollectedtimelineofeventsfromtheimpactedagent.

    Complete CoveragewithAgent AnywhereDrivecoveragetoremoteendpointsoutsidethecorporatenetworkusingtheAgentAnywhere technologynomatterwhatkindofInternetconnectiontheyhave.Indicators fromcurrentattacksarepushedtoremoteendpointsthatarentonnetworksprotectedbyFireEyeproducts.Thisallowsanalyststoinvestigateandcontainendpointsanywhere intheworld,withnoadditionalVPNconnectionneeded.

    Contain endpointsSecurityprofessionalscantakeimmediateactionto isolatecompromiseddevices, thusdenyingattackersaccesstothosesystemstocontinue theirattack.Thisallowsthesecurityteamaccesstoconductacompleteinvestigationofanincidentwithoutfurther riskof infection.

    Cipherwire.net Fireeye Prices Security Gateways

  • 2DATA SHEET HXSeries:EndpointThreatPreventionPlatformthatDetects,Analyzes,andResolvesSecurityIncidentsontheEndpoint

    Howit worksTheEndpointThreatPreventionPlatformenablessecurityoperationsteamstocorrelatenetworkandendpointactivity.Organizations canautomatically investigatealertsgeneratedbyFireEyeThreatPreventionPlatforms, logmanagement,andnetworksecurityproducts,applyintelligencefromFireEyetocontinuously validateIOCsontheendpointsandidentifyifacompromisehasoccurredandassessthepotentialrisk.Further,organizationscanquickly triagetheincident tounderstandthedetailsandcontaincompromisedendpointswithasingleclick andcontaincompromiseddeviceswithinasingle clickworkflow.

    Automatically investigatealertsfrom network-devicesCreateIOCsautomatically fromalertsgeneratedinnetworkdevices. Confirm threat alerts at all endpoints to identify critical issues.RapidinterrogationofallendpointsInvestigate tensorhundredsofthousandsofendpoints inamatterofminutes.

    Agent Anywhere -Investigateanyendpointevenwhentheyrenotonyournetwork.EasytounderstandinterfaceTransformfront-lineanalysts intoinvestigatorsbymakingit simpleandstraightforwardtoquickly interpretdataandfollowupappropriately.

    Technical Specifications

    FireEye,Inc. | 1440McCarthyBlvd.Milpitas,CA95035 | 408.321.6300 | 877.FIREEYE(347.3393) | [email protected] | www.fireeye.com

    2015 FireEye, Inc.All rights reserved.FireEye is a registered trademarkof FireEye,Inc.All other brands,products,or servicenamesareor maybe trademarksor service marksoftheirrespectiveowners.DSHXDEP.EN-US.032015

    HX 4400/HX 4400D

    Network Interface Ports 2x 10/100/1000BASE-T Ports

    IPMI Port (rear panel) Included

    Front Panel LCD & Keypad Included

    PS/2 Keyboard andMouse,DB15 VGAPorts (rear panel) Included

    USB Ports (rear panel) 2x Type A USBPorts

    Serial Port (rear panel) 115,200 bps, No Parity, 8 Bits, 1 Stop Bit

    Storage Capacity 4x 600 GBHDD,RAID 10, 2.5 inch, FRU

    Enclosure 1RU, Fits 19 inch Rack

    Chassis Dimensions (WxDxH) 17.2 x 27.8 x 1.7 (437 x 706 x 43.2 mm)

    AC Power Supply Redundant (1+1) 750 watt, 100 -240 VAC,9 4.5A, 50-60 Hz, IEC60320-C14 inlet, FRU

    DC Power Supply Not Available

    Power Consumption Maximum (watts) 313 watts

    Thermal Dissipation Maximum (BTU/h) 1068 BTU/h

    MTBF (h) 35,200 hAppliance Alone /AsShipped Weight lb. (kg)

    32 lb. (15 kg) /47 lb. (21 kg)

    Safety Certifications IEC 60950-1:2005 (Second Edition) + Am1:2009 CSA C22.2 No. 60950-1/UL 60950-1,Second Edition CE Marking

    EMC/EMI Certif ications FCC (Part 15 Class-A), CE (Class-A), CNS, AS/NZS,VCCI(Class A)

    Regulatory Compliance RoHS, REACH, WEEE

    Operating Temperature 10 C to 35 C

    Operating Relative Humidity 10% to 85% (non-condensing)

    Operating Altitude 5,000 f t.

    ERSTETRHIAILGFEE

    FireEye NX Series FireEye HX Series

    Integrationexistingworkflow

    RapidAssessmentofsecurityincidents

    Isolate affecteddevices

    Comprehensivedatasynchronization

    Cipherwire.net Fireeye Prices Security Gateways

    Slide Number 1Slide Number 2