Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Endpoint Security

Symantec Adds New Features, Services to Endpoint Security Offering

Symantec on Tuesday announced significant improvements to its endpoint security offering, including new Endpoint Protection features, and the launch of a Managed Endpoint Detection and Response (MEDR) service.

Symantec on Tuesday announced significant improvements to its endpoint security offering, including new Endpoint Protection features, and the launch of a Managed Endpoint Detection and Response (MEDR) service.

According to Symantec, the updates made to Endpoint Protection should help organizations reduce the attack surface by allowing only whitelisted applications to run, improve risk assessment and app discovery, and prevent stealthy attacks.

The whitelisting capabilities are part of Symantec Endpoint Application Control, which automatically generates application-specific rules, continuously tracks apps, and provides comprehensive application discovery.Symantec improves endpoint protection solutions

Symantec Endpoint Application Isolation restricts apps to safe and authorized activities. It can not only prevent attackers from carrying out malicious actions, but also ensure that hackers don’t tamper with good applications, the cybersecurity giant said.

The new capabilities also include a smart VPN designed to protect users when surfing the web through risky mobile connections and Wi-Fi. Named Cloud Connect Defense, it should provide an extra layer of protection for Windows 10 users, Symantec said.

The last new product is a result of Symantec’s acquisition of Javelin Networks. Threat Defense for Active Directory is designed to prevent hackers from exploiting AD to access critical systems. It does this by using AI, obfuscation and forensics techniques to prevent credential theft and lateral movement.

These products can be acquired as add-ons for Symantec Endpoint Protection or as part of new suites.

Symantec also unveiled a Managed Endpoint Detection and Response (MEDR) service that should help organizations quickly discover attacks and respond to them. The service uses EDR 4.0 technology, which includes new features for detecting attacks that involve living-off-the-land and fileless elements, automated playbooks for quick investigations, and new EDR tools.

“Many customers simply can’t find enough cyber security experts to meet demand. Our MEDR service provides access to Symantec’s elite SOC analysts and advanced machine learning techniques to reduce the burden on staff and shrink the time it takes to investigate incidents,” explained Art Gilliland, EVP and GM of Enterprise Products at Symantec. “For organizations with robust security response teams, EDR 4.0 is now available on any device, anywhere, before or after an attack occurs to provide comprehensive detection and response.”

Advertisement. Scroll to continue reading.

Related: Symantec Unveils Evolutionary Update to Endpoint Protection Offering

Related: Symantec Adds Machine Learning to Endpoint Security Lineup

Related: Symantec Enhances Endpoint Protection Capabilities

Written By

Eduard Kovacs (@EduardKovacs) is a managing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Kim Larsen is new Chief Information Security Officer at Keepit

Professional services company Slalom has appointed Christopher Burger as its first CISO.

Allied Universal announced that Deanna Steele has joined the company as CIO for North America.

More People On The Move

Expert Insights

Related Content

Endpoint Security

Today, on January 10, 2023, Windows 7 Extended Security Updates (ESU) and Windows 8.1 have reached their end of support dates.

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Endpoint Security

Gigabyte has announced BIOS updates that remove a recently identified backdoor feature in hundreds of its motherboards.

Endpoint Security

Several major companies have published advisories in response to the Downfall vulnerability affecting Intel CPUs.

Application Security

Microsoft on Tuesday pushed a major Windows update to address a security feature bypass already exploited in global ransomware attacks.The operating system update, released...

Endpoint Security

When establishing visibility and security controls across endpoints, security professionals need to understand that each endpoint bears some or all responsibility for its own...

Endpoint Security

Apple has launched a new security research blog and website, which will also be the new home of the company’s bug bounty program.

Endpoint Security

The Zero Day Dilemma