Cloud Security

Cisco Unveils Innovations Driving New Security Cloud Strategy English

Cisco | June 07, 2022

Cisco
RSA Conference – Cisco, the leader in enterprise networking and security, unveiled its plan for a global, cloud-delivered, integrated platform that secures and connects organizations of any shape and size. The company is designing the Cisco Security Cloud to be the industry's most open platform, protecting the integrity of the entire IT ecosystem - without public cloud lock-in.

"With the complexity of hybrid work, continued acceleration of cloud adoption, and the ever-advancing threat landscape, organizations are looking for a trusted partner to help them achieve security resilience. We believe Cisco is uniquely positioned due to its scale, breadth of solutions and cloud-neutral business model to meet their needs," said Jeetu Patel, Executive Vice President and General Manager of Security and Collaboration at Cisco. "Cisco is already delivering upon key tenets of our cloud platform vision. We're excited to increase our innovation velocity to truly deliver on the vision of the Cisco Security Cloud."

The Security Cloud will provide an integrated experience for securely connecting people and devices everywhere to applications and data anywhere. With unified management, the open platform will provide threat prevention, detection, response, and remediation capabilities at scale. Cisco has been on the journey toward the Security Cloud for some time and is sharing additional progress with new innovations across its security portfolio.

Secure Access

Ushering in the next generation of zero trust, Cisco is building solutions that enable true continuous trusted access by constantly verifying user and device identity, device posture, vulnerabilities, and indicators of compromise. These intelligent checks take place in the background, leaving the user to work without security getting in the way. Cisco is introducing less intrusive methods for risk-based authentication, including the patent-pending Wi-Fi fingerprint as an effective location proxy without compromising user privacy.

To evaluate risk after a user logs in, Cisco is building session trust analysis using the open Shared Signals and Events standards to share information between vendors. Cisco unveiled the first integration of this technology with a demo of Cisco Secure Access by Duo and Box.

"The threat landscape today is evolving faster than ever before, We are excited to strengthen our relationship with Cisco and deliver customers with a powerful new tool that enables them to act on changes in risk dynamically and in near real-time. You can expect to see more innovation and execution from Box and Cisco that help businesses protect their content across any location, application, or device."

Aaron Levie, CEO and Co-founder of Box

Secure Edge

To radically simplify how organizations connect and protect users, things, and applications, anywhere, Cisco is excited to introduce Cisco+ Secure Connect Now, a unified Secure Access Service Edge (SASE) solution. Cisco+ Secure Connect Now is a turnkey offer available in several countries that allows customers to quickly deploy SASE and ease day-to-day operations through a cloud-managed platform. The as-a-service subscription is optimized for value and managed through a unified dashboard.

Cisco offers unmatched breadth and depth in its networking and security capabilities, which is why Telefonica Tech will add Cisco's SASE suite to its service portfolio.

"As businesses shift to support hybrid work and work from anywhere models, we are committed to helping them adapt to the increased demand for high performing and secure connectivity," said Rames Sarwat, Director of Cyber Security & Cloud Products and Services at Telefonica Tech. "Together with Cisco, we will offer customers an innovative, managed service that will combine SD-Branch with Cisco SASE to address a complete set of next-generation connectivity and security use cases for the branch and the hybrid worker."

Secure Operations

Cisco added a new Talos Intel On-Demand service offering custom research on the threat landscape unique to each organization. To help accelerate incident detection and response, Cisco announced enhancements to Cisco Secure Cloud Analytics with its ability to automatically promote alerts into SecureX and map those alerts to MITRE ATT&CK. This follows the general availability of SecureX device insights to aggregate, correlate, and normalize data about the devices in their environment, and the integrations of Kenna and Secure Endpoint to better prioritize vulnerabilities. Cisco also introduced the Secure Firewall 3100 Series, designed for hybrid work with a new encrypted visibility engine that uses artificial intelligence and machine learning to detect hidden threats.

Simplification

Cisco is introducing simplification across the portfolio with the new unified Secure Client. Streamlining how administrators and users manage endpoints, half of Cisco Secure agents, including AnyConnect, Secure Endpoint, and Umbrella, will be unified by mid-year 2022 with additional agents to be added over time. This follows the new cloud-delivered Secure Firewall Management Center, which is enabled through the Cisco Defense Orchestrator and unifies management of both cloud and on-premise firewalls.

About Cisco
Cisco is the worldwide leader in technology that powers the Internet. Cisco inspires new possibilities by reimagining your applications, securing your data, transforming your infrastructure, and empowering your teams for a global and inclusive future. Discover more on The Newsroom and follow us on Twitter. Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries.

Spotlight

Enterprise networks are on the verge of a major tipping point, driven by the shift from employees working at a corporate office to working from anywhere. Enterprises are quickly realizing that legacy network and security architectures are inadequate. They must evolve toward a unified networking and security service that increase


Other News
Cloud App Management

Google Cloud Teams Up with StackPath to Expand Edge-Forward Cloud

StackPath | September 20, 2023

StackPath Edge Compute is now accessible via the Google Cloud Marketplace, allowing Google Cloud customers to expand their environment to the internet's edge. StackPath, a leading edge computing platform, has made its Edge Compute Virtual Machines and Containers available on the marketplace, with purchases counting towards users' committed Google Cloud expenditure. StackPath offers cloud computing instances at edge points of presence within 38 major global markets, ensuring proximity to data sources and destinations. This proximity enhances application distribution options. Tom Reyes, Chief Product Officer for StackPath, emphasized the synergy between edge and cloud computing, highlighting the cost and performance benefits of utilizing Google Cloud for latency-neutral workloads and StackPath for latency-sensitive tasks. Dai Vu, Managing Director at Google Cloud, reportedly stated, As a part of their digital transformation strategies, many enterprises are seeking solutions that help them optimize their workflows. With its solutions now available on Google Cloud Marketplace, StackPath is enabling companies of all types and sizes to achieve the speed, security, and efficiency they require. [Source: PR Newswire] Additionally, StackPath recently added support for Virtual Kubelet in StackPath Edge Compute, facilitating seamless integration of StackPath Edge Compute Containers into multi-cloud Kubernetes (K8s) clusters. K8s, born on Google Cloud, remain popular among Google Cloud users. Key features of StackPath Edge Compute include deploying VMs with certified Linux distributions, image capture for autoscaling and rollbacks, deploying compliant container images, and rapid provisioning in StackPath Edge locations. About StackPath StackPath is an edge cloud platform offering cloud services in close proximity to end users compared to core cloud providers. Its edge compute solutions, including virtual machines and containers, along with edge applications such as CDN and WAF, are strategically positioned in densely populated areas. These services are connected through a secure private network fabric and managed through a single system. Clients, ranging from Fortune 50 enterprises to startups, rely on StackPath to optimize the performance, security, and efficiency of their latency-sensitive workloads and applications. Headquartered in Dallas, TX, StackPath was founded in 2015 and specializes in SECaaS, CDN, WAF, and various other cloud-related services.

Read More

Cloud Security

Orca Security Simplifies Cloud Asset Discovery with AI Technology

Orca Security | September 14, 2023

Orca Security, a leader in agentless cloud security, has unveiled a groundbreaking AI-driven cloud asset search feature within its Orca Cloud Security Platform. This innovation positions Orca as the first provider to offer an AI-powered cloud asset search that's as simple as asking a question. This development empowers not only security professionals but also developers, DevOps teams, cloud architects, and risk governance and compliance teams to swiftly and effortlessly gain insights into their cloud environments. Building upon its existing integrations with ChatGPT and Microsoft Azure OpenAI GPT-4 for generating remediation instructions, Orca's new AI-driven search functionality revolutionizes accessibility by enabling users to pose natural language queries like, ‘Do I have any Log4j vulnerabilities exposed to the public?’ or ‘Are there any unencrypted databases with sensitive data accessible on the internet?’ This democratizes cloud security, making it accessible to individuals across the organization, regardless of their expertise, to rapidly respond to zero-day risks, optimize cloud assets, and assess exposure to threats. Gil Geron, CEO and co-founder of Orca Security, emphasized the platform's user friendliness, stating, With our latest AI-powered cloud asset search, we are delivering on our promise to provide cloud security that is easy to operate. We built the industry’s first agentless cloud security platform to eliminate lengthy and labor-intensive deployments. Now we are focused on democratizing cloud security by introducing solutions that do not require reading through lengthy documentation or extensive training to operationalize, allowing security teams, developers, and DevOps teams to get value from day one. [Source: Business wire] Cloud asset discovery is a critical process involving the identification, categorization, and mapping of all digital assets within a cloud environment. This includes virtual machines, databases, storage instances, containers, networking components, and applications. Yet many organizations lack access to this vital information. Orca's patented SideScanning technology offers 100% visibility for asset discovery and is now presenting this data intuitively to various teams across organizations, enabling a comprehensive understanding of their cloud environments. This capability is particularly crucial during zero-day threats, where speed is essential, facilitating faster and more effective mitigations. Orca's solution also eliminates the need for users to understand different naming conventions for each cloud provider. Instead, users can ask general questions, and Orca will automatically search for the relevant status names for each provider, streamlining the search process and ensuring accurate results. The AI-powered cloud asset search feature is immediately available through a feature request in the Orca Cloud Security Platform. About Orca Security Orca Security is a leading provider of cloud security solutions that offer full-stack visibility of the complete cloud infrastructure. It provides deep insights into vulnerabilities, malware, misconfigurations, and more across various platforms, including AWS, Azure, Google Cloud, Alibaba Cloud, and Kubernetes. The platform is designed to provide complete visibility of the entire cloud estate, from development to production, without requiring an agent. The company is known for innovative SideScanning technology that delivers instant-on, workload-level security.

Read More

Cloud Deployment Models

Mirantis’ Lens AppIQ: Upgrading Kubernetes Application Management

Mirantis | September 22, 2023

Mirantis has introduced Lens AppIQ, a new tool designed to simplify Kubernetes application management. Available directly to the 50,000 organizations using Lens, Lens AppIQ offers application intelligence, making it accessible for non-Kubernetes specialists to oversee applications across multiple clusters. Lens AppIQ aggregates information from various configuration files and sources, presenting it in a user-friendly tabbed display. This feature allows cloud-native developers to streamline the deployment and management of Kubernetes applications, offering web-based tools for viewing application details, configuring security measures, and automating deployment processes. With a quick launch time of under a minute, Lens AppIQ swiftly identifies applications in connected clusters and maps their components. Developers can access application architecture, metadata, logs, events, and more through Lens Desktop’s new 'Applications' view or the Lens AppIQ web portal, simplifying debugging, accelerating code releases, and enhancing performance optimization. DevOps professionals, platform engineers, and operators can utilize Lens AppIQ to define, monitor, and enforce policies related to application performance, security, and compliance. Automation features in Lens AppIQ facilitate repeatable deployments and enable effortless application migration to new Kubernetes environments. Miska Kaipiainen, Vice President of Engineering at Mirantis, reportedly stated, While Lens Desktop already provides an incredibly user-friendly experience for Kubernetes management, we understand that cloud-native development doesn't end there. That's why we've created Lens AppIQ. Lens AppIQ complements Lens Desktop by offering real-time intelligence and additional insights into the apps running on your Kubernetes clusters. This not only makes debugging, operation, and security easier but also opens up Kubernetes to a broader audience of developers who can benefit from streamlined processes without having to become Kubernetes experts. [Source – Businesswire] Lens AppIQ is available for free for small-scale and trial use, accommodating up to 10 nodes, two clusters, and two users. A Pro plan is available for larger-scale use, supporting up to 100 nodes, 10 clusters, and 50 users, priced at $35 per node monthly, inclusive of 8 hours/5-day business hours support. Enterprises can opt for a bespoke version with 24/7 support and custom pricing. Lens AppIQ is accessible within Lens Desktop for the 50,000 organizations currently using Lens and is also available as a Software as a Service (SaaS) solution. About Lens With over 1 million users worldwide, Lens Desktop is a leading tool for boosting productivity in Kubernetes application development and management. This desktop application breaks down barriers for newcomers to Kubernetes while significantly enhancing the efficiency of experienced users. Lens supports all certified Kubernetes distributions on any infrastructure and seamlessly runs on Linux, macOS, and Windows. As the world's largest and most advanced Kubernetes platform, it provides real-time workload management, development, debugging, monitoring, and troubleshooting across multiple clusters. Built on open-source principles, Lens enjoys a strong community with over 20,000 stars on GitHub. About Mirantis Mirantis is a leading company streamlining code delivery on public and private clouds with a ZeroOps approach to Kubernetes. It serves global enterprises, enhancing developer productivity and offering secure cloud solutions. Its clients include Adobe, DocuSign, PayPal, and others across diverse industries. Mirantis contributes to open-source projects like Lens and Kubernetes, empowering businesses to tackle complex challenges.

Read More

Cloud Security

Tenable Acquires Ermetic to Boost Cloud Security with CNAPP and CIEM

Tenable | September 11, 2023

Tenable Holdings, Inc. is strengthening its focus on cloud security through the acquisition of Ermetic Ltd., a cloud-native application protection platform (CNAPP) company specializing in cloud infrastructure entitlement management (CIEM). This strategic move aims to enhance Tenable's Exposure Management Platform by providing improved risk visibility, prioritization, and remediation solutions for both cloud and on-premises environments. Ermetic's CNAPP offers comprehensive contextual analysis, simplifying the identification of critical issues like privileged access to exposed, vulnerable workloads. The integration of Ermetic's capabilities into Tenable One will broaden Tenable's offerings for hybrid environments, addressing the complex challenge of managing identity-based threats in the cloud. According to the Cloud Security Alliance's 2022 Top Cloud Threats report, identity-based threats are a top concern in cloud security. Tenable's acquisition of Ermetic seeks to simplify the process of understanding access risks and permissions in the cloud, making it more accessible for security professionals with varying levels of expertise. “We will have an opportunity to put additional market-leading cloud security capabilities into the hands of tens of thousands of customers,” said Amit Yoran, Chairman and Chief Executive Officer, Tenable. “Together, we will be able to deliver a holistic view of the modern attack surface and help organizations reduce exposure and risk, using identity as an essential foundation,” he further added. [Source: Globe News Wire] The combined offerings of Tenable and Ermetic will include a unified CNAPP solution for asset discovery, risk analysis, remediation, and compliance, as well as a robust CIEM solution for managing human and service identities in cloud infrastructure. The integration will provide context-aware risk prioritization across all cloud and on-premises resources and simplify the remediation process. The acquisition, valued at approximately $240 million in cash and $25 million in restricted stock and RSUs, is expected to close in early Q4 2023. Tenable will finance the cash portion of the acquisition using existing funds. However, Ermetic's financial results in Q4 2023 are not anticipated to significantly impact revenue or billings but are expected to increase non-GAAP operating expenses by $4–6 million. The combination of Tenable and Ermetic is poised to offer unparalleled visibility and value in managing cloud environments, simplifying the complexity of cloud security management. About Tenable Tenable is a prominent player in the computer and network security industry, headquartered in Columbia, MD. With a global footprint, the company serves approximately 40,000 organizations worldwide, including Fortune 500 giants, Global 2000 firms, and government agencies. Leveraging its renowned Nessus vulnerability expertise, Tenable offers a pioneering platform for comprehensively securing digital assets across various computing platforms. Its specialties encompass vulnerability management, continuous network monitoring, compliance, and a range of security solutions for web applications, containers, the cloud, industrial technology, IoT, and more.

Read More

Spotlight

Enterprise networks are on the verge of a major tipping point, driven by the shift from employees working at a corporate office to working from anywhere. Enterprises are quickly realizing that legacy network and security architectures are inadequate. They must evolve toward a unified networking and security service that increase

Resources