What are you looking for ?
Infinidat
Articles_top

Cohesity Launches CyberScan Application That Leverages Backup Data to Assess Vulnerabilities or Risk Posture

Powered by Tenable, complements anti-ransomware solution that can be managed through same global security dashboard.

Cohesity, Inc. expanded its security offerings with CyberScan, an application that is a solution that leverages backup data to assess the vulnerabilities, or risk posture, of an enterprise’s IT environment.

Click to enlarge

Cohesity Cyberscan Vulscanner 1

This is significant because vulnerabilities often lead to cyberattacks – such as ransomware attacks or data breaches – and discovering these exposures is the first step in defending against online criminals.

Identifying and addressing vulnerabilities has become a major challenge for enterprises today. According to a recent survey, the majority of organizations that suffered a data breach in the past two years say it was caused by a known vulnerability that had not been patched. It also found that 37% of organizations say they don’t even scan for vulnerabilities.

The CyberScan application makes it to assess systems for vulnerabilities. Available on the firm’s MarketPlace, the application works by scanning backup copies on Cohesity DataPlatform (instead of the live production copy) to identify any vulnerabilities across an organization’s IT environment, including the OS, computer, network devices, and configurations. The application gives a global view of all vulnerabilities through an security dashboard along with actionable recommendations on how to address exposures before hackers exploit them.

Click to enlarge

Cohesity Cyberscan Vulscanner 2

This application utilizes Tenable.io for vulnerability management in the cloud to locate exposures against regularly published entries within the public Common Vulnerabilities and Exposures (CVE) database. The application also takes advantage of Cohesity’s architecture which allows organizations to run applications directly on the company’s cluster, where the data sits, rather than moving data to a separate application environment.

This is the first application we’ve seen that focuses on assessing systems for exposures, such as vulnerabilities, within backup data,” said Ray Komar, VP, technical alliances, Tenable, Inc.We believe this innovative approach provides enterprises with a novel and cutting-edge way to harden and improve their security posture across their IT environments.

The Cohesity CyberScan application offers a much more efficient way for us to discover vulnerabilities by scanning backup data within Cohesity rather than drawing resources from our production environment,” said Mike O’Rourke, director, IT, Lighthouse Resources Inc.Our DR is also more dependable now with this new ability to easily identify which backups are potentially compromised and which we can trust for instant recovery.

Additionally, the application helps IT professionals perform backup verification, ensuring that a given backup snapshot is recoverable. It also eliminates the risk of re-injecting known or previously addressed vulnerabilities back into the production environment when performing a recovery job.

The application also gives organization the ability to run scans on backup data on a frequent basis, instead of waiting for weeks or months to schedule scans in the production environment, which further reduces opportunities for data breaches. This process does not impact production performance or require that scans be run during a maintenance window.

Businesses today need an IT environment that runs 24-7 and want to avoid recovering VMs with known vulnerabilities,” said Raj Rajamani, VP, product management, Cohesity. “While we are focused on empowering customers to make backup data more produtive, we are also proud to introduce an industry-first solution that helps customers easily identify exposures, such as vulnerabilities and mis-configurations, without putting any additional burden on their mission-critical operations.

IT is measured by SLAs and with this new capability, Cohesity has addressed key obstacles to help organizations meet their security and recovery objectives,” said Phil Goodwin, research director, cloud data management for protection, IDC. “The CyberScan application leverages backup copies to provide important visibility into production systems, performs backup verification for ensuring recoverability, and helps IT avoid re-injecting vulnerabilities while recovering from any backup snapshot, all with no impact to their production environment or data.

Click to enlarge

Cohesity Cyberscan Vulscanner 3

Using backup data to protect across multiple fronts
This latest release builds on existing Cohesity security capabilities to protect across multiple fronts including vulnerability scans, a comprehensive anti-ransomware solution, and antivirus applications.

  • Comprehensive defense against ransomware: The company empowers organizations to prevent backup data from becoming a target while detecting and responding to ransomware attacks using its immutable file system, anomaly detection, and instant mass restores. Customers can access the anti-ransomware capabilities from the same security dashboard that houses the vulnerability scan, giving customers visibility and insights into ‘blind spots’ within their IT environment.

  • Antivirus applications without parallel infrastructure: The customers can defend their file infrastructure against attacks by running the ClamAV open-source application directly on file data stored on the Cohesity DataPlatform, instead of copying the data onto parallel infrastructure for analysis. SentinelOne, which is also available in the firm’s MarketPlace, provides up-to-date virus libraries based on machine-learning algorithms directly on the Cohesity DataPlatform.

CyberScan application is available to all company’s customers as part of the latest Pegasus 6.4 software release.

Resources:
Cohesity CyberScan Application
Video demonstration
Solution brief

Read also:
Cohesity: Runbook Workflow Automation Design Canvas Makes for Enterprises to Systematically Move Applications to Cloud   
Provide administrators with graphical design canvas that they can use to drag, drop, and design automation workflows so that right sequences happen in right order as workloads are moved from one location to another.
July 25, 2019 | Press Release
Backup and Recovery for Workloads on One Web-Scale Platform by Cohesity    
Protection and management of big data workloads, distributed databases, containers, and SaaS applications
May 17, 2019 | Press Release
Cohesity SaaS Solution Delivers Enterprise-Grade Backup and Recovery for Applications Running on Google Cloud Platform    
Snapshot integration with GCP provides native backup of Google Compute VMs.
April 18, 2019 | Press Release

Articles_bottom
AIC
ATTO
OPEN-E