Shavlik Technologies June 2009 Presenters Angelo Rivano Technical

  • Slides: 21
Download presentation
Shavlik Technologies June 2009

Shavlik Technologies June 2009

Presenters Angelo Rivano Technical Services Manager - EMEA arivano@shavlik. com +46 -(0)709 -280969 Shavlik

Presenters Angelo Rivano Technical Services Manager - EMEA arivano@shavlik. com +46 -(0)709 -280969 Shavlik EMEA Strawinskylaan 1003, Toren A-10 1077 XX Amsterdam

Shavlik Security Suite delivers Rapid Readiness so enterprise IT organizations can rapidly accelerate and

Shavlik Security Suite delivers Rapid Readiness so enterprise IT organizations can rapidly accelerate and continuously improve their security and compliance readiness.

Intimate knowledge of Microsoft platform security requirements Mark Shavlik Eric Schultze CEO CTO •

Intimate knowledge of Microsoft platform security requirements Mark Shavlik Eric Schultze CEO CTO • Former Windows NT Kernel Team • Defined and developed what is known today as MBSA, the Microsoft Baseline Security Analyzer “The world’s most downloaded security tool” • Acknowledged as founder of patch industry Copyright 2008 Shavlik Technologies, LLC All Rights Reserved • Inaugural member of MSFT’s Trustworthy Computing Team • Was secure@microsoft. com drafting MSFT’s own security bulletins and issuing patches • Deemed “Mr. Patch” by Redmond Magazine • Founded patchmanagement. org

Corporate Timeline Founded as Security Company 1993 Industry’s first automated remediation solution for patch

Corporate Timeline Founded as Security Company 1993 Industry’s first automated remediation solution for patch Shavlik becomes industry standard platform 2004 2001 2003 1996 Builds Inspector. Scan for Secure Computing 1999 Develops first patch scanner for Copyright 2008 Shavlik Technologies, LLC All Rights Reserved New Partnerships Update. EXPERT acquired 2007 2006 Shavlik delivers enterprise AVM solutions SSI Released 2008 EMEA Headquarters Established Shavlik First to Patch Offline VMs

World-leading companies trust Shavlik Government/Contractors • Boeing • Dept of State • Forestry &

World-leading companies trust Shavlik Government/Contractors • Boeing • Dept of State • Forestry & Fisheries (AU) • FEMA • Lockheed Martin • Military Services • Veterans Affairs Financial/Auditing • Accenture • Barclays • Capital One • Citi. Group • CSFB • De La Rue • E*Trade • Fidelity • HBOS • Merrill Lynch Copyright 2008 Shavlik Technologies, LLC All Rights Reserved Manufacturing/Retail • Anheuser Busch • Bacardi • BMW • Capita • Chevron • Cintas • Daimler Chrysler • Fed-Ex • GE • Georgia Pacific • Goodyear Tire • Heinz • Intel • Johnson Controls • Motorola • Nestle • Office Depot • Office Max • Siemens • Wal-Mart • Weyerhaeuser • Xerox • Yule Catto • 3 M Medical/Chemical • Chiron • Du. Pont • Ecolab • Eli Lilly • Merck • Pfizer Telecom/Communications • AOL • Acxiom • Austria Telecom • BT Global • Deutsch Telecom • France Telecom (Orange) • Getronics • O 2 • Reuters • Time Inc. • Virgin …… and 10, 000 more!

World-leading vendors incorporate Shavlik technology in their offerings Copyright 2008 Shavlik Technologies, LLC All

World-leading vendors incorporate Shavlik technology in their offerings Copyright 2008 Shavlik Technologies, LLC All Rights Reserved

Shavlik Philosophy Simplicity q Easy to deploy/manage q Direct route to compliance q Fully

Shavlik Philosophy Simplicity q Easy to deploy/manage q Direct route to compliance q Fully automate vulnerability lifecycle q Operationalize security/free up critical IT staff Accuracy q Best coverage q Best in class scanning q Used to audit other solutions for mistakes q First to market with patch data Flexibility q Multiple deployment options q Non-intrusive q Agent management not required Scalability q Distributed architecture q Centralized management q Agent/Agentless to address myriad connectivity Copyright 2008 Shavlik Technologies, LLC All Rights Reserved options

Why Customers Choose Shavlik • “We brought in the Shavlik solution to better meet

Why Customers Choose Shavlik • “We brought in the Shavlik solution to better meet our internal service level targets. A few of our business units were not hitting our required ‘ 95% compliant’ requirements, and Shavlik brought them back” – Risk Management Director, Global Investment Banking Firm • “We no longer have to pull operational resources to gather data for upcoming audits. Shavlik’s solution has provided us with push-button audit preparation” – Director of Information Security, Global E-Commerce Solutions Provider • "In addition, the advanced reporting capabilities provided by Shavlik Net. Chk Protect provide CDW with a more accurate view of their overall security posture, allowing the CDW security team to more easily mandate and enforce stricter compliance to security policy across the enterprise. " – Manager of Information Security, CDW Copyright 2009 Shavlik Technologies, LLC All Rights Reserved

Patch Management Landscape • Shavlik is the leading Purpose-Built Patch Management Solution • Microsoft

Patch Management Landscape • Shavlik is the leading Purpose-Built Patch Management Solution • Microsoft is the largest single purveyor of patch management solutions…WHY? ? ? – Incumbency – It’s “free” – Perception that it’s “Good enough” – Patch management is not viewed as strategic; “it’s just an IT task” A recent Gartner report titled The Patch Management Market: Collision or Coexistence? dated March 3, 2008, states: “Organizations accepting WSUS as 'good enough' have significantly higher labor costs for content analysis, testing and deployment. " Copyright 2009 Shavlik Technologies, LLC All Rights Reserved

Why Free Isn’t Good Enough “We purchased Net. Chk Protect with the intention of

Why Free Isn’t Good Enough “We purchased Net. Chk Protect with the intention of patching our servers first and then moving towards also patching our workstations early next year. Before using Net. Chk Protect we used both SMS and WSUS for patching and both programs were difficult to use and still left many processes that needed to be done manually. ” Brian P. Frank, Senior IT Systems Administrator for Access Group, Inc. “Microsoft’s WSUS comes as part of our University Select Agreement, but WSUS is limited and does not provide the application coverage we need. Different software tools are used by different departments to resolve and manage the patching process, such as custom-built scripts, in order to handle applications not supported by WSUS - which add to IT cost and resources. ” Pritpal S. Rehal, Senior IT Systems Administrator for University of York Copyright 2009 Shavlik Technologies, LLC All Rights Reserved

Why Free Isn’t Good Enough System that is ‘fully’ patched with Windows Update

Why Free Isn’t Good Enough System that is ‘fully’ patched with Windows Update

Product Coverage For a complete list of supported products, please see http: //xml. shavlik.

Product Coverage For a complete list of supported products, please see http: //xml. shavlik. com/data/supportedproducts 60. htm

Intelligent Machine Grouping • Scan by: – Machine name – Domain – Offline Virtual

Intelligent Machine Grouping • Scan by: – Machine name – Domain – Offline Virtual Image – Organizational Unit – IP Addresses/Ranges – Any combination of the above. • Apply distinct credentials and automated mailing.

Detailed Control over Scans • Multi-tiered filters allow for granular control of scans. •

Detailed Control over Scans • Multi-tiered filters allow for granular control of scans. • Scan for just the products or patches that are dictated in your policy. No unwanted data. • Fully automated reporting configurable to unlimited multiple recipients. • Create Patch Groups for rapid results on particular items.

Flexible Deployment Options • Detailed control over reboots. • Configure scripted tasks to run

Flexible Deployment Options • Detailed control over reboots. • Configure scripted tasks to run at deployment time. • Reduce network usage with Distribution Servers.

Clear Results • Concise reporting provides rapid access to the fundamental data. • Easily

Clear Results • Concise reporting provides rapid access to the fundamental data. • Easily pinpoint trouble areas • Clearly see why patches are reported as missing. • Audit ready!

Scheduling • Highly flexible scheduling of scans, deployments or both. • Automate business processes.

Scheduling • Highly flexible scheduling of scans, deployments or both. • Automate business processes. • Define multiple automated scans with automated reporting. • Track scheduled events through the Scheduled Tasks Manager.

Added value • Custom Patching – patch any application running on a Windows platform.

Added value • Custom Patching – patch any application running on a Windows platform. • Administrative Roles – control users access to the console. • Agents – for those machine where Agentless scanning is not an option. • Disconnected network patching. • Net. Chk Tracker – follow deployments in real-time. • Application Control – remove unwanted applications.

What’s new in Net. Chk Protect 7. 0? • Multi-Tasking GUI • Secure and

What’s new in Net. Chk Protect 7. 0? • Multi-Tasking GUI • Secure and Extensible Agent Infrastructure with Enhanced Functions • Threat Protection • Active Protection with On-Access File Scanning • Auto Sync of Distribution Servers • Scheduled Data File Downloads • Enhanced Support for Large Networks • Improved Machine Group Management • Enhanced Patch Group Interface • Enhanced Machine View Copyright 2009 Shavlik Technologies, LLC All Rights Reserved

Technical Services • Short, solution specific webinars – 30 minute, 1 or 2 hours.

Technical Services • Short, solution specific webinars – 30 minute, 1 or 2 hours. • Customer-centric workshops – ½ or 1 day events. • Onsite training – Typically 1 full day. • Implementation assistance – Varies depending on size of deployment.