DigitalEra Home Page

Vulnerability Management

foundstone

McAfee Foundstone Enterprise™ is a priority-based, enterprise-class security solution that automates, simplifies and integrates your existing vulnerability management processes. Foundstone protects your critical network infrastructure with a consistent, measurement-based approach that incorporates asset discovery, inventory, and prioritization; threat intelligence and correlation; regulatory compliance measurement; remediation tracking and reporting. This award-winning, appliance-based solution ensures business continuity by reliably protecting any size network, including the largest, most complex, and globally distributed networks.

With Foundstone’s extensive flexibility and customization options, the application will conform to meet your network, compliance, and business requirements. There is no need to modify your processes to accommodate the application.

Foundstone's update service automatically keeps the Foundstone Enterprise application, as well as the operating system and the database running on the appliances current. The McAfee development team tests all updates and then delivers them to your systems via the FSUpdate service, eliminating the need for you to spend any time for updating.

Take Action on Critical Threats

Knowing the risks across your organization is only part of the story. When critical events occur, you must respond decisively and effectively. Foundstone's optional Threat Correlation Module enables you to see how breaking threats affect your existing risk profile instantly, with the click of a single button. The Threat Correlation Module delivers up-to-the-minute Threat Intelligence Alerts from McAfee research so you can respond immediately to breaking events such as worms and wide-scale attacks. The Threat Correlation Module creates a risk-ranking for each threat by correlating events to asset and vulnerability information about your enterprise, giving you the information you need to respond quickly when and where it matters most.

Foundstone's Threat Compliance View automatically tracks and graphs your organization's threat response efforts by business unit and platform, compares it against the established remediation goals or policies. This up-to-date dashboard benchmarks and trends threat response so you can ensure that your team's remediation progress is hitting the mark.

Measure Regulatory Compliance

Foundstone’s regulation-specific templates enable you to measure your ability to meet vulnerability and configuration-related requirements for Sarbanes-Oxley, HIPAA, ISO17799/BS7799, FISMA and PCI. These templates help prepare you to pass certification audits and document regulatory compliance by identifying where you are out of compliance with specific elements of the regulations.

Fix and Track Remediation

The tightly integrated optional Remediation Module automatically opens and assigns tickets based on discovered vulnerabilities, and automatically verifies and closes them once the vulnerabilities are fixed.

McAfee Foundstone Enterprise is powered by the FoundScan Engine, found in both the FS850 remote scan engine and the FS1000 appliance. Smaller deployments require a single FS1000 appliance, as it contains the scan engine, database and management software in a single unit. Larger deployments that require more than one scan engine can deploy remotely managed FS850 scan engines that report into a single FS1000..

The FS850 enable you to deploy Foundstone technology in remote locations, as its simple three-step installation process requires no local IT expertise. Foundstone appliances give you the flexibility you need to satisfy geographic or technical requirements, while maintaining centralized management and reporting capabilities.

protects critical digital assets

Foundstone Enterprise employs a methodology that simplifies security processes and protects critical digital assets and includes the following important features:

  • Comprehensive map of the entire network, including wireless access points and load balancers.
     
  • Regular, in-depth analysis of the full spectrum of vulnerabilities and misconfigurations on operating systems, network devices, commercial applications, databases, wireless devices, and custom web applications.
     
  • Threat correlation capabilities to focus resources on important, breaking events.
     
  • Fix the highest priority vulnerabilities, based on asset value and security policies.
     
  • Metrics and reports to evaluate and communicate cost/benefits and measure improvement.
     
  • Foundstone Enterprise Consists of Following Components:
     
  • Foundstone Enterprise Manager -This Web portal provides a centralized view of the entire vulnerability management process: asset discovery, prioritization, monitoring, remediation, and reporting.
     
  • FoundScan Engine - The core scanning technology enables asset discovery and vulnerability analysis across the enterprise with unprecedented management and control.
     
  • Foundstone Database - This scalable, frequently updated repository integrates organization-specific data (assets, vulnerabilities, and threats) with Foundstone's knowledge-base built from years of real-world experience.

Copyright © 2006 DigitalEra Group, LLC. All rights reserved.