Websense Confidential web security | data security | email security © 2009 Websense, Inc. All...

Preview:

Citation preview

• Websense Confidential

• web security | data security | email security © 2009 Websense, Inc. All rights reserved.

• Websense Confidential

Websense Hosted Web Security

• Websense Confidential

• 2

About Websense

• Leading Provider of Web, Messaging and Data Security Solutions

• Annual Billings: $356m +

• Employees: 1,250

• 44 million subscription seats

• 5,000 value-add resellers, worldwide

• Award-winning partner program

• Global development with ~5 sites

• Global security research with >80 dedicated content researchers

• Global support and services

• “Today’s enterprises require a more holistic and integrated approach for Internet security—a Web security ecosystem—to combat emerging threats from the Internet… Websense is the worldwide leading vendor in the Web Security market.”

• -Brian Burke, Program Director Security Products, IDC

• “Today’s enterprises require a more holistic and integrated approach for Internet security—a Web security ecosystem—to combat emerging threats from the Internet… Websense is the worldwide leading vendor in the Web Security market.”

• -Brian Burke, Program Director Security Products, IDC

• Websense Confidential

Websense Integrated Solutions

• Websense Confidential

Forrester Wave™: Content Security Suites, Q2 2009

• The Forrester Wave is copyrighted by Forrester Research, Inc. Forrester and Forrester Wave are trademarks of Forrester Research, Inc. The Forrester Wave is a graphical representation of Forrester's call on a market and is plotted using a detailed spreadsheet with exposed scores, weightings, and comments. Forrester does not endorse any vendor, product, or service depicted in the Forrester Wave. Information is based on best available resources. Opinions reflect judgment at the time and are subject to change.

• “Websense alone leads the content security suite market because of its current functionality and suite-oriented product strategy.”

• Websense Confidential

Websense core differentiator

• 5

•URL & SecurityDatabase • Websense

•Security Labs

•100+M Websites• per day

•10+M emails• per hour

• 50M real-time•data collecting systems

•2+M posts• per day

•ThreatSeeker®

• TECHNOLOGY

• Websense•Hosted Security

•Websense HostedCustomers

• Threat detection/ probes

• Shared analytics/ feedback

• Security updates

• Websense•Email Security

• Websense Confidential

Why does this matter?

Websense Security Labs research enables our products to protect against the rapidly changing web threat environment

Websense security research is focused on new threats that traditional security research methods aren’t designed for

Websense is the recognized worldwide leader in Web security research– Websense products protect over 50,000 organizations and 50

million employees worldwide– Websense has been researching web based threats for 6+

years

• Websense Confidential

• © 2009 Websense, Inc. All rights reserved.

• 7

Security Effectiveness Center

Eg. Stuff AV missed that we caught

http://securitylabs.websense.com/content/EffectivenessvsAV.aspx

• Websense Confidential

Benefits of Websense Hosted Security

Reduce Business Costs and Complexity– No equipment to purchase or maintain– Eased administrative overhead

Increase Protection– Leading security from converged email and

Web 2.0 threats– Powered by the ThreatSeeker Network– Backed by industry-leading SLAs

Retain Control– Flexible customization of policies,

configuration settings, quarantine management, and reporting

– 24 x 7 Access

• 8Stop Threats in the Cloud

• Websense Confidential

• web security | data security | email security © 2009 Websense, Inc. All rights reserved.

• Websense Confidential

Introduction to Hosted Web Security

• Websense Confidential

• 10

What is Websense Hosted Security?

Web security delivered from the ‘cloud’

No on-site equipment

Customers have full policy control

Quality ensured through Service Level Agreements

• HQ Internal Users

• Roaming Users & Remote Offices

• Data Centers• Filter and block web traffic

• Data Centers• Filter and block web traffic

• Websense Confidential

• 11

Hosted Web Security Package Options

Hosted Web Security Gateway Real-time Virus and malware scanning Backed by 100% of known virus protection SLA And all functionality included in Hosted Web Security

Hosted Web Security: Leading protection and control over unwanted and

malicious web content Leverages real-time ThreatSeeker security updates for

zero day detection of malicious web content

Hosted Web Security GatewayIncludes:

Inbound + Outbound

Real-time scanning

Security Filtering

Standard URL Filtering

Hosted Web SecurityIncludes:

Security Filtering

Standard URL Filtering

• Websense Confidential

Hosted Service DeliveryHosted from 8 globally distributed data centers

– San Jose and Ashburn, United States– Heathrow and Feltham, UK– Dusseldorf, Germany– Paris, France– Hong Kong– Sydney, Australia

Resilient processing clusters

Automatic data center allocation and fail-over– Directs travelling users to nearest geographical data

center– Redirects to nearest alternate in case of failure

PerformanceService Level Agreements:– 100% protection against known viruses– 99.99% service availability

No noticeable latency: < 60ms average processing time

Accredited to ISO27001

• Websense Confidential

• 13

How it works

Web traffic is re-directed to nearest data center– PAC file or Chained proxy server– Geographic datacenter allocation for minimal latency– Built-in scalability and resilience

Proxies in the data center apply filtering policy– Websense URL database with extensive security categories– Updated by ThreatSeeker > 300 times per day

Real-time scanning for malware– AV tools scan page content for inbound and outbound web traffic

Hosted Service Data Centers

PAC File

• Chained Proxy

PAC File

• Port 8081

• Port 8081

• Websense Confidential

• 14

How it works

Configure and report using the services portal– No software installation required

Authentication/identification options– Transparent identification – Manual/basic authentication

Synchronize with local directories– MS Active Directory, Novell eDirectory– Small footprint client

Service scales

• Websense Confidential

• 15

Where would you use it?

Where ease of deployment is key– Remote sites/branch offices– Roaming users– Large distributed environments

Where IT shop is small or refocusing– No equipment/software maintenance– Easy to deploy new sites

Where traffic is being backhauled– Save bandwidth with local internet break-out

In conjunction with on-premise web security

• Websense Confidential

• web security | data security | email security © 2009 Websense, Inc. All rights reserved.

• Websense Confidential

Product TourDashboard

Filtering policy creationContent control

Notification pagesReporting

Tools

• Websense Confidential

• 17

Dashboard

Web Security and Email Security through one integrated management console

Easy administration, simplified security

• Websense Confidential

• 18

Filtering Policy Creation

Define acceptable use policy– Granular control with Security categories– Enable control for groups and individual users– Policy exceptions by user, group or time period– Create custom categories and blacklist/whitelists

• Websense Confidential

• 19

Content Control

Control inbound and outbound content– Prevent threats from entering the network– Control what information leaves

• Prevent the further spread of malware• Prevent infected computers from leaking data over the web

• Websense Confidential

Notification pages

Customizable content, look and feel

Alternative page options

Roaming user:

• Websense Confidential

• 21

Reporting

Easy to use reporting via services portal– Analyse browsing behaviour and traffic volumes– Identify malware detections– Tabular and graphical presentation– Export to CSV format file– Schedule account summary reports & delivery by email

• Websense Confidential

• 22

Tools

Assistance for Administrators and users

Query page– Am I using the service?

Performance monitor tool– compare to direct connect

Context Sensitive Help

• Websense Confidential

• web security | data security | email security © 2009 Websense, Inc. All rights reserved.

• Websense Confidential

Deployment Scenarios

• Websense Confidential

• 24

Deployment Scenarios

PAC File– Stored at data centers– Centrally configured

Chained Proxy– Local proxy server– Minimal access to

client settings

• Websense Confidential

• 25

PAC File Distribution

Point to PAC file in connections settings

Automatically created by the service

Manual config or MS Group Policy Objects

Hosted Service Data Center

Client System

PAC File

storePAC File

• Request for http://webdefence.global.blackspider.com:8082/proxy.pac

• Reply with proxy.pac specific to the customer and policy

PAC File

store

PAC File

store

• Websense Confidential

Deployment Types

Internet

Website Website

Website

Hosted Service Data Center

(Proxies, policy & reporting)

Client

Direct Connection

PAC File

storePAC File

Hosted Service Data Center

Roaming User

Client

PAC File

PAC File

storeHosted Service

Data CenterLocalProxy Server

Client

Chained ProxyPAC File

store

Local config

• Websense Confidential

Hybrid – Future Deployments

• Internet

• Websites

• Headquarters

• WSG

• V10000

• Regional Offices

• On-Premise Deployments

• Roaming Users

Component OP CloudPolicy Management Y Reporting/log storage Y Filtering/Security Y YReal-time Analytics Y AVNote: Web Security Gateway throughoutNo mixed deployments

• Hosted Service • Data Centers

• Logging and Policy

• Remote/Branch • Offices

• Hosted Deployments

• (in-the-cloud)

Component OP CloudPolicy Management Y Reporting/log storage Y Filtering/Security Y YReal-time Analytics Y AVNote: Web Security Gateway throughoutNo mixed deployments

• V10000

• Logging and Policy

• Websense Confidential

• SSL • Websense • SAAS

• Corporate Network

• V10000

• Web 2.0

• • Websense Virtual Application Platform

• Application Control

• Data LossPrevention

• Anti-Virus

• Real-time• Content and Threat Analysis

The Hybrid Web Security Advantage for Distributed Enterprises

• Branch

Office 1

• Branch

Office 2

• Mobile Workers

• Internet

• Centralized policy management and reporting

Hybrid – Filtering in the cloud

Advantages• Extended security coverage with no additional infrastructure or complexity• Reduced capital and maintenance costs

• Websense Confidential

• 29

Hybrid

On-premise and hosted deployments– Apply most appropriate deployment to each location

• Hosted for roaming users and remote offices• On-premise for HQ and regional offices• Policy management and reporting on-premise

Benefits– Comprehensive coverage of customer environment– Simplified deployment and management– Single point for Reporting/Policy management– Real-time analytics– Control of non HTTP protocol controls and applications– Extended data retention– Delegated reporting and policy admin

Target– Enhance WSG implementations - Remote office/roaming user

• Websense Confidential

Why SaaS Security from Websense?

Technology Expertise:– Websense is the leader in protecting customers from

converged email and Web 2.0 threats

Budget Savings:– Investing in the Websense Essential Information

Protection enables a consolidated security strategy

Strategic Partnership:– The Websense Essential Information Protection

portfolio delivers greater value and enables you to further leverage your investment from your trusted security partner

• 31

• Websense Confidential

Request free evaluation

Live and Video demos

http://www.websense.com/evaluations

Evaluations & Demos

• Websense Confidential

• 33

Resources

Hosted Web Security Getting Started Guide pdf– http://www.websense.com/content/Assets/PDF/Hosted_

Web_Security_Getting_Started_Guide.pdf

Administrators guide– From within the hosted services portal support page

Sales Portal– Case studies– Data sheets– Customer facing presentation

• Websense Confidential

Questions

• 34

Recommended