Mission Critical Systems Mission Critical Systems Header
Mission Critical Systems - Upcoming Events
Search Our Site




Product Offerings

Authentication

Aladdin eToken

eToken is a fully portable USB key / password management tool the size of an average house key that can be used to generate and provide secure storage for passwords, digital certificates, secure strong authentication, digital signing and encryption. eToken provides data security based on Smartcard technology but requires no special readers.

RSA Authenticaton Manager and SecurIDRSA SecurID two-factor authentication is based on something you know (a password or PIN) and something you have (an authenticator) providing a much more reliable level of user authentication than reusable passwords.

RSA Authentication Manager is the management component of the RSA SecurID solution   It is used to verify authentication requests and centrally administer authentication policies for enterprise networks.  This solution is also interoperable with more network, remote access, VPN, Internet, wireless and application solutions than any other system available today.

Client-Based Security

Check Point Integrity

Check Point Integrity endpoint security protects PCs and the enterprise networks they connect to from worms, spyware, and intrusion attempts that evade other security products. By defeating PC-borne threats, Integrity mitigates the risk of major financial loss that can occur when information confidentiality or network availability is compromised. It’s the only solution that delivers Total Access Protection, ensuring that both IT-managed and guest PCs are secure before they are allowed to connect to the network.

eEye Blink

eEye Digital Security’s Blink Unified Client Security solution addresses today's most pressing security challenge: preventing the attack. No longer is shielding assets from individual attacks sufficient; they must be protected from vulnerabilities, becoming resilient to attacks, even when patches aren't available or installed.

Blink’s integrated layers of endpoint security work hand-in-hand to provide the most comprehensive protection from targeted and propagated attacks, all in a single agent. Blink's intrusion prevention system protects network assets from both known and undefined vulnerabilities, through periodic vulnerability assessments and non-intrusive process activity monitoring, helping eliminate zero-day attacks.
Kaspersky
Anti-Virus

Kaspersky Anti-Virus combines traditional anti-virus defense methods with the latest proactive technologies to provide solid and dependable protection against malicious programs. This award-winning antivirus software includes protection against viruses, spyware, Trojans, worms and keyloggers and features automated hourly updates.

Kaspersky Anti-Virus scans email traffic for viruses according to the protocol used. The product supports Microsoft Outlook or centralized scanning from Exchange. All HTTP Internet traffic is scanned for viruses in real-time, ensuring that infected objects are not saved to the computer’s hard disk. In addition, individual files, catalogues and disks can be designated for anti-virus scanning. Users can limit anti-virus scanning to critical areas of the operating system and startup objects to ensure that attention is focused on the most vulnerable areas of the system

Content Filtering

FaceTime

FaceTime Enterprise Edition provides comprehensive solution for secure end-to-end instant messaging management, P2P control, and other real-time communications compliance requirements. FaceTime Internet Security Edition enables the safe and productive use of Internet including web browsing, IM, P2P, Skype and other real-time communications applications.
SurfControl Web Filter

SurfControl Web Filter allows you to actively monitor network use and abuse anywhere in your organization. The solution provides unequalled protection from inbound and outbound malicious content, including spyware, adware, phishing, and viruses, as well as catching inappropriate Web usage, including streaming media, file downloads, pornography, and copyright violations.

SurfControl’s Real-Time Monitor gives you an understanding of Internet traffic on your network, instantly and in real-time, so that if needed, remedial action can be quickly taken.

Websense Enterprise

 

Websense Enterprise web filtering solution improves employee productivity, reduces legal liability, and optimizes the use of IT resources. It integrates with leading network infrastructure products to offer unqualified flexibility and control.

At the heart of all Websense solutions is the Websense Master Database, in addition, it uses a combination of proprietary classification software and human inspection techniques to ensure the most complete coverage. The Websense Master Database contains more than 15 million sites in over 50 languages.

Email Security and Anti-Spam

Aladdin eSafe Mail & Advanced Anti−Spam

eSafe Mail is a secure email relay providing complete and integrated mail security with fast performance. It protects all incoming and outgoing SMTP and POP3 traffic. Known viruses are blocked with eSafe's high-speed anti-virus engine. Unknown viruses and other malicious active code (ActiveX, Java) are blocked by eSafe's various proactive technologies. eSafe detects attempts to exploit security holes and blocks this activity by removing macros and embedded objects arriving from untrusted sources.

Spam is a major nuisance, wasting time and resources. eSafe's Advanced Anti-spam software module stops more than 95% of spam with less than 0.5% false positives and making it easier than ever to block spam email. The eSafe anti spam filter software module contains enhanced anti-spam, quarantine management, and spam tagging features.
Barracuda Spam Firewall

The Barracuda Spam Firewall is an integrated hardware and software solution that has the power of an enterprise-class solution, and the ease-of-use and affordability that businesses of all sizes demand.

The Barracuda Spam Firewall includes all the features needed to eliminate your spam and completely protect your email server from all forms of attack. Email may be blocked, quarantined, tagged, or delivered based on the policies of the organization or the preferences of the individual user.

Secure Computing IronMail

Secure Computing IronMail protects enterprise email systems from inbound threats: spam, viruses; or hackers trying to take down or take over the e‑mail system. IronMail protects enterprise email systems from outbound threats: regulatory compliance violations, corporate policy violations, or theft (“leakage”) of confidential information or intellectual property. IronMail protects enterprise email systems from threats that haven’t even been identified yet.

IronMail delivers the most accurate, effective, scalable and easy-to-manage anti-spam protection available. IronMail was the first product to integrate and correlate signature- and content-based techniques into a single, combined detection engine.

IronMail’s Zero Day Virus protection takes anti-virus protection to the next level by leveraging global threat intelligence to close the window of vulnerability that occurs between when an attack first emerges and when a signature is available – protecting your network from threats that don’t yet exist.

Encryption

Ingrian Database Encryption

 

Ingrian DataSecure Platforms are the only appliance-based encryption solution available today that features granular, field-level encryption capabilities and that can be integrated at the Web server, application server, or database layer. In addition, DataSecure centralizes cryptographic processing, key and policy management, and security administration, which yields tremendous advantages in terms of security, scalability, and manageability. By delivering intelligent encryption capabilities, Ingrian helps enterprises cost-effectively address many of their most critical security gaps.
PGP Encryption

 

The PGP Encryption Platform enables organizations to address a broad range of business and regulatory data security and privacy requirements with solutions that are flexible, scalable, and easily deployed and managed from a single, unified management console.

PGP solutions allow enterprises to deploy gateway- and desktop-based encryption based on specific requirements for data security within the organization. PGP products can secure internal and external communications, data stored on servers, desktops, and laptops, and automated backups and data transfers

Pointsec Device Encryption

Pointsec for PC gives you full-disk encryption with access control. It is FIPS and Common Criteria certified, and works with Linux or Windows . Centrally managed so that configuration and control of your security policy cannot be changed by end users.

You can use Pointsec Media Encryption for portable storage media, or files and folders such as e-mail attachments. You can use it along with Pointsec for PC, or as a stand-alone. It can also read memory cards encrypted with your smartphone or wireless handheld.

Secure Computing IronMail

 

While few will debate the value of encrypting messages that contain sensitive information, many security officers have resisted installing an encryption solution on their enterprise e-mail network due to the multiple incompatible technologies available, difficulty in communicating encryption requirements to end users, and challenges of getting end users to enforce the corporate policies.

IronMail solves these problems with an integrated, policy-based encryption solution that automates and enforces corporate IP protection policies with no end-user intervention. Just ask Network World Magazine, who in September 2005, named the IronMail Encryption solution the “Clear Choice Test” winner for enterprise email encryption.

Firewalls & VPNs

Check Point VPN−1 UTM
Security Gateway

 

VPN-1 UTM delivers unified threat management that scales to enterprises of all sizes, helping customers to simplify security deployments by consolidating proven security functions within a single solution. It combines firewall, intrusion prevention, antivirus, anti-spyware, Web application firewall, and both IPSec and SSL VPN, in a fully integrated and easy-to-manage solution.

Check Point’s SmartCenter management interface gives administrators centralized control of all security components across the entire network, resulting in reduced management overhead and complexity.

VPN-1 UTM is supported by SmartDefense Services, which maintain the most current preemptive security for the Check Point security infrastructure. To help you stay ahead of emerging threats and attacks, SmartDefense Services provide real-time updates and configuration advisories for defenses and security policies.
Check Point VPN−1 Power
Security Gateway

 

Check Point VPN-1 Power provides you the most intelligent, reliable security for stopping attacks while ensuring secure, reliable business communications using the latest applications. A tightly integrated combination of Check Point’s firewall, VPN and intrusion prevention technologies, VPN-1 Power also delivers security acceleration without compromise using SecureXL. Additionally, SmartCenter, Check Point's centralized management solution, provides unified security management of your security infrastructure.
Check Point VPN−1 UTM Edge & Edge Wireless

 

VPN-1 UTM Edge solves the branch office paradox by delivering total security within a simple solution that can be deployed by non-technical personnel in less than 5 minutes. With integrated firewall, VPN, intrusion prevention, and antivirus technologies based on Check Point’s enterprise-class solutions, it ensures a consistent level of security across the entire network. As part of Check Point’s Unified Security Architecture, VPN-1 UTM Edge can enforce a global security policy as defined in SmartCenter or Provider-1. VPN-1 UTM Edge ensures that the branch office is no longer the back door to your network.

VPN-1 UTM Edge Wireless (W) security appliances deliver the same security found in VPN-1 UTM Edge X appliances and add the highest levels of security for wireless networks. VPN-1 UTM Edge W appliances support multiple security protocols, including 802.1x, IPSec over WLAN, RADIUS, WPA2, and WEP authentication. They also have dedicated WLAN interfaces from which administrators can set specific security rules for WLAN segments. This protects wireless interfaces by granting access only to authorized users, preventing hackers from attacking corporate resources and applications.

Firewall Add-Ons

Check Point FloodGate-1

Flood-Gate 1 optimizes network performance by assigning priority to business-critical applications and end users. Employee productivity remains high, your business is properly supported, and online experiences are positive. FloodGate-1 can be deployed with VPN-1/FireWall-1 or act as a standalone solution.

Check Point SmartDefense

SmartDefense Services maintain the most current preemptive security for the Check Point security infrastructure. To help defenses stay continuously ahead of today's constantly evolving threat landscape, SmartDefense Services provide ongoing real-time updates and configuration advisories for defenses and security policies.

.

Check Point Management and Add-ons

Based on Check Point's unified security architecture, SmartCenter solutions enable organizations to perform all aspects of security management via a single, unified console. This comprehensive approach delivers the industry's best security management and lowest total cost of ownership for network security deployments. SmartCenter solutions support Check Point offerings for perimeter, internal, Web and endpoint security solutions
Check Point Web Intelligence

 

Check Point Web Intelligence monitors Web applications to prevent buffer overflows, heap overflows, and other malicious executable code attacks that target Web servers and other applications. The Malicious Code Protector technology can detect malicious executable code within Web communications. It identifies both known and unknown attacks and offers preemptive attack protection, preventing the hostile from reaching a target host. Inspection occurs at the kernel level, delivering wire-speed throughput.
Check Point VPN Client Options

 

Check Point offers a wide variety of VPN client options, including IPSEC clients and SSL-based clients.

VPN-1 SecureClient strengthens enterprise security by ensuring client machines cannot be configured to circumvent the enterprise security policy. Using Secure Configuration Verification (SCV), managers can specify SCV checks—a set of predefined or custom conditions for a securely configured client system.

SSL Network Extender is a browser plug-in that provides clientless remote access, while delivering full network connectivity for any IP-based application. Integrated into VPN-1 gateways, SSL Network Extender enables combined IPSec and SSL VPN in one solution, simplifying your remote access deployments while providing maximum flexibility for your diverse remote access requirements. SSL Network Extender is also available with Connectra.

Check Point Integrity endpoint security protects PCs and the enterprise networks they connect to from the worms, spyware, and intrusion attempts that evade other security products. By defeating PC-borne threats, Integrity mitigates the risk of major financial loss that can occur when information confidentiality or network availability is compromised. It’s the only solution that delivers Total Access Protection, ensuring that both IT-managed and guest PCs are secure before they are allowed to connect to the network.

Check Point Connectra

Check Point Connectra is a complete Web Security Gateway that provides both SSL VPN and integrated Web security as a single, unified solution. By combining both connectivity and security in a single solution, Connectra allows organizations to deploy SSL VPNs safely and securely.

Through an integrated Connectra Web portal, users can access Web applications and resources, file shares, and email. Additionally, an organization can customize the design of the portal. Connectra can adapt the access rights of the remote user based on the trust and security of the endpoint.

Included with Connectra, SSL Network Extender is a Web plug-in that tunnels traffic from endpoint applications over SSL. It supports any IP-based application, including TCP and UDP, with-out requiring complex configuration to support each application. And because it is capable of tunneling any IP application, it even supports applications like FTP and VoIP that create unique problems with their use of dynamic ports.

Nokia IP Security Appliances

Nokia delivers industry-leading solutions across Nokia IP Security Platforms that meet stringent customer security needs with the IP Security Appliances meet stringent customer security needs with best-of-breed UTM and firewall security solutions. The Nokia IP Security Appliance line of firewall platforms extends from the IP260 branch office platform to the IP2255 platform—optimized for large core enterprise applications.

The network-optimized appliance hardware is designed to speed packet processing. The solution simplifies security deployments by offering a range of security functions in a single appliance, managed by a single user interface. The appliance supports both disk- or flash-based options and can be used in diverse environments.

Designed with security in mind, Nokia’s purpose-built operating system, IPSO, features security hardening, sustainable reliability, advanced routing, high availability (HA) and core clustering capabilities.

Intrusion Prevention

Check Point IPS-1

 

Check Point IPS-1 is a dedicated intrusion prevention system (IPS) that delivers mission-critical protection with unmatched management and granular forensic analysis capabilities and flexible deployment. The IPS-1 Hybrid Detection Engine delivers active detection and prevention at the network perimeter while the IPS-1 Dynamic Shielding Architecture drives preemptive functions to protect the network interior. Additional prevention is enabled through Confidence Indexing, which delivers unmatched flexibility in deploying prevention across the network. All these IPS-1 functions are controlled by powerful centralized management that readily supports both small- and large-scale deployments.

eEye Secure IIS

 

Web servers provide a portal to your internal network, so they require a more formidable and customized level of protection above and beyond what network firewalls or IDS can provide. SecureIIS provides web server security for the Microsoft IIS platform, with windows server firewall protection from both known and unknown vulnerabilities. SecureIIS works within the IIS web server, actively inspecting all incoming requests at each stage of data processing to prevent potentially harmful network traffic — whether encrypted or not — from penetrating your server. Even un-patched web servers security needs are addressed and protected from potentially damaging "known" and "unknown" attacks.

ForeScout CounterACT

CounterACT provides an unparalleled level of access control and policy enforcement over all devices connected to the enterprise network, regardless of whether they are company owned (802.1x enabled or not), personal, or non-user based (i.e., printers, fax, VoIP phones, etc). This clientless, transparent system allows for non-disruptive deployment and appropriate enforcement of network policies. And, the ForeScout solution controls and enforces polices at the network level enabling enterprise wide scalability.

ISS Proventia

Proventia Network IPS stops malicious Internet attacks before they impact your organization, the only effective way to preserve network availability, reduce the burden on your IT resources and prevent security breaches. Deployed in-line on your network, Proventia Network IPS stop threats before they impact your business.

Proventia Network IPS offers preemptive protection with more than 950 out of the box recommended blocking actions that neutralize threats. Internet Security Systems is number one in the overall worldwide intrusion prevention and detection market and has been number one for six consecutive years, according to the industry analyst firm, IDC.

Reporting and Compliance

eEye Iris Network Traffic Analyzer

 

The Iris Network Traffic Analyzer is eEye's award-winning vulnerability forensics solution addressing the network traffic analysis and reporting needs that security professionals face today. Iris provides the technology for continuous, automated problem identification, reporting, and integrated filtering capabilities that go beyond the capture, filter, and decode capabilities of traditional network analysis.

Iris captures network traffic and can automatically reassemble it to its native format, making it much easier to analyze the data going across the network. Security and IT professionals can read the actual text of an email exactly as it was sent, or reconstruct exact HTML pages that a user has visited. Iris also provides a variety of statistical measurements allowing companies to proactively identify — and take the steps to eliminate — performance issues before they can result in downtime.

eEye Retina & REM

 

Retina Network Security Scanner identifies known network security vulnerabilities and assists in prioritizing threats for remediation. Featuring fast, accurate, and non-intrusive scanning, users are able to secure their networks against even the most recent of discovered vulnerabilities. Users can also leverage Retina for security risk assessment, project risk management and enforcing standards-based registry settings through custom policy audits. And, because the majority of Retina scans can be conducted without administrator rights, Retina is the easy to use and cost-effective to deploy.

REM Security Management Console provides a single point of visibility for security risk management solutions, managing critical data specific to network vulnerabilities and machine resiliency, providing the overall network security posture of an organization. REM can immediately assess and improve an organization’s risk profile, enabling security teams to focus their efforts on the areas that matter most. REM's vulnerability management portal allows for the rapid identification and prioritization of threats, thus optimizing resources to focus on the most critical vulnerabilities first. Advanced workflow capabilities also allow groups to collaborate in ongoing remediation efforts, increasing operational efficiency as security and IT work to a common goal – eliminating network vulnerabilities.

RSA enVision

To truly assure security policy and corporate compliance, one must create a platform that transforms enterprise-wide data into automated compliance and security information. RSA enVision provides a complete view of activity surrounding all the data on the network.

Enterprises today are increasingly concerned managing logs for compliance and security. As enterprise networks and data traffic grow, the volume and sensitivity of log files continues to multiply exponentially, and capturing this data becomes more and more challenging. RSA enVision addresses these challenges, with a best-in-breed solution.

SpiDynamics WebInspect

 

SPI Dynamics WebInspect application security assessment tool identifies known and unknown vulnerabilities within the Web application layer. WebInspect also performs checks that validate that the Web server is configured properly. With WebInspect, auditors, compliance officers, and security experts can perform security assessments on Web applications and Web services.

Enterprises with Web services implementations can automatically assess a Web service by discovering all XML input parameters and performing parameter manipulation on each XML field looking for vulnerabilities within the service itself.

WebInspect complements firewalls and intrusion detection systems by identifying Web application vulnerabilities – defects or bugs with a Web server security implication. By implementing Web application, Web service and Web server security assessment practices at the initial steps in the development lifecycle, enterprises can remediate vulnerabilities before Web applications and Web services are placed into production, saving time and money.

Virtualization

VMware

 

Optimize and manage your IT infrastructure, from the desktop to the data center, by virtualizing your computing, storage and networking systems with VMware software. VMware products provide enterprise-class virtual machines that increase server and other resource utilization, improve performance, increase security and minimize system downtime, reducing the cost and complexity of delivering enterprise services. By leveraging your existing technology, VMware enables the roll out of new applications with less risk and lower platform costs.

Virus & Spyware Protection

Aladdin eSafe Gateway & eSafe Mail

 

eSafe Mail is a secure email relay providing complete and integrated mail security with fast performance. It protects all incoming and outgoing SMTP and POP3 traffic and can be installed as a stand-alone secure mail relay or as part of eSafe Gateway. eSafe mail provides built-in mail security mechanisms against attacks such as Denial of Service (DoS), relaying, email spoofing, attachment spoofing and manipulation.

eSafe’s integrated content security is fast and proactive, preventing known and unknown malicious code, spam, non-productive and inappropriate content from entering your network.

Check Point Integrity

 

Check Point Integrity Anti-Spyware detects, quarantines, and removes Trojans, keystroke loggers, and other undesirable software from enterprise PCs. By defeating spyware, it stops confidential information exposure, reduces network congestion, and minimizes IT time spent cleaning infected endpoints. Integrity Anti-Spyware can stop the newest spyware before it can cause damage because Check Point receives continual detection reports from millions of Internet-connected PCs worldwide. And because it’s a module in the Integrity endpoint security suite, Integrity Anti-Spyware minimizes deployment and maintenance time by not requiring a new management server or separate client software.
Kaspersky
Anti-Virus

 

Kaspersky Anti-Virus combines reactive antivirus and spyware detection methods with the latest proactive technologies to provide your computer with the most effective protection against malicious programs. The product is simple to install and set up, while offering advanced users a range of versatile settings for fine-tuning the program.

Wireless Security & Infrastructure

AirDefense Enterprise

 

AirDefense Enterprise is a scalable wireless LAN security platform for protection, performance & policy compliance. As a key layer of security, AirDefense Enterprise complements wireless VPNs, encryption & authentication. By monitoring all 802.11 activity and correlating events from across the wireless network, AirDefense provides a complete, enterprise view of everything happening in the airwaves.

Powered by the industry’s most advanced IDS engines, policy manager and correlation engines, AirDefense accurately detects and protects the network against all wireless threats and unauthorized devices. The solution incorporates stateful, 24x7, real-time tracking of wireless LAN traffic – providing continuous monitoring of the "state" of communication between all access points and stations transmitting on the airwaves and understanding the full context of wireless LAN traffic.

AirDefense correlates events across the network and its intrusion detection engines analyzing all activities with a complete, encompassing view of the airwaves. In most environments, more than one sensor may recognize the same access points and wireless devices. Threats and policy violations against these devices are correlated to provide accurate alerts and eliminate false positives.

Aruba Mobile Edge System

 

Aruba's Mobile Edge System allows users and devices to connect over the air and across any network, to securely gain access to enterprise resources. It logically sits on top of existing fixed networks and fulfills the requirements of security, mobility and convergence without requiring major upgrades to the existing network. The mobile edge is architected to securely work over existing IP network facilities, and extends across both private enterprise networks as well as the public Internet.

The Mobile Edge supports true mobility where users can seamlessly and securely roam across multiple locations. In addition, it delivers voice convergence through multimedia mobile devices and Voice over Wireless LAN (VoWLAN) handsets with high quality and reliability. This eliminates the significant expense of adding powered VoIP ports to the fixed edge.

The mobile edge is built on the notion of identity-based security. Mobile users and devices, by definition, do not connect to the network through a fixed port. For this reason, the network must identify every user and device that joins the network. Once this identity is known, custom security policies may be applied to the network so that only access appropriate to the business needs of the user or device is provided.

Check Point Wireless EdgeVPN-1 UTM Edge appliances deliver unified threat management to enterprises with branch offices and simplify security deployments and manageability. VPN-1 UTM Edge appliances consolidate proven enterprise-class technology into a single branch office solution that does not compromise the corporate network and eliminates the branch office as your weakest link. As part of Check Point's Unified Security Architecture, VPN-1 UTM Edge can enforce a global security policy and allows administrators to manage and update thousands of appliances as easily as managing one. VPN-1 UTM Edge appliances are also available in wireless models that support multiple security protocols, including 802.1x, IPSec over WLAN, RADIUS, WPA2, and WEP authentication. Integrated ADSL is also available for both wired and wireless VPN-1 UTM Edge appliances.