Palo Alto Networks – Digital IT News https://digitalitnews.com IT news, trends and viewpoints for a digital world Mon, 26 Feb 2024 20:05:13 +0000 en-US hourly 1 https://wordpress.org/?v=5.4.15 Palo Alto Launches Private 5G Security Solutions with Private 5G Partners https://digitalitnews.com/palo-alto-launches-private-5g-security-solutions-with-private-5g-partners/ Mon, 26 Feb 2024 18:00:16 +0000 https://digitalitnews.com/?p=10187 Palo Alto Networks has announced end-to-end private 5G security solutions and services for private 5G networks, in partnership with key Private 5G partners. By combining Palo Alto Networks’ enterprise-grade 5G Security solutions with integrations and services from Private 5G partners, organizations can efficiently deploy, oversee, and protect networks across their entire 5G deployment process. This [...]

The post Palo Alto Launches Private 5G Security Solutions with Private 5G Partners appeared first on Digital IT News.

]]>
Palo Alto Networks has announced end-to-end private 5G security solutions and services for private 5G networks, in partnership with key Private 5G partners. By combining Palo Alto Networks’ enterprise-grade 5G Security solutions with integrations and services from Private 5G partners, organizations can efficiently deploy, oversee, and protect networks across their entire 5G deployment process. This initiative responds to the demand for verified 5G integrations and advances Palo Alto Networks’ strategic goal of an integrated, ecosystem-driven approach to ensuring the security of 5G deployments.

“5G holds boundless potential to revolutionize our future. At the same time deploying these networks is complex and presents significant security risks. True digital transformation requires a robust cross-platform ecosystem where comprehensive solutions and innovative partner integrations ensure strong 5G security. Our best-in-class platforms and strategic coalition of trusted Private 5G partners create a holistic offering to help customers realize the benefits of 5G.” Anand Oswal, Senior Vice President and General Manager, Palo Alto Networks

The speed, reliability, and flexibility of 5G networks are essential to national infrastructure and mission-critical environments; however, the massive amounts of data transmitted across 5G networks provide a target for threat actors seeking to exploit vulnerabilities. C-Level executives agree – in a recent Palo Alto Networks study, almost 70% of executives identified 5G-connected devices as a growing threat vector in operational technology (OT).1 With 5G also expected to contribute $1 trillion to the global economy in 20302, there is urgency to better protect today’s more complex networks, cloud-native solutions, and distributed environments to facilitate this growth.

Fueled by a convergence of AI, Zero Trust, regulatory, and compliance mandates, Palo Alto Networks 5G Security helps organizations protect themselves against the latest threats, ensuring comprehensive security across evolving network landscapes. Combining industry-leading security solutions with disruptive Private 5G partner technologies and services enables customers to build security into their networks from the ground up, protecting the entire 5G infrastructure and mission-critical traffic it carries.

Palo Alto Networks Private 5G partners are vetted via lab testing and have proven success with customers with Private 5G networks. Initial Private 5G partners include Celona, Druid, Ataya, NETSCOUT, NVIDIA, and NTT DATA.

  • Celona, Druid, Ataya: Organizations building new private 5G networks with these partners can easily secure radio networks through integrations with Palo Alto Networks 5G Security.
  • NETSCOUT: Pervasive, packet-level network visibility will combine at scale with Palo Alto Networks 5G Security, helping security teams gain deep visibility to make intelligent policy decisions.
  • NVIDIA: Scalable 5G security ensures that AI-powered applications are optimized for speed, security, traffic accuracy, and data isolation to maintain data sovereignty and achieve multi-terabit, cost-effective security for mobile networks.
  • NTT DATA: An innovative and complete technology stack, network infrastructure capabilities, and trusted IT consulting and global system integration services help customers quickly and easily deploy, manage, and secure their private 5G networks.

Private 5G partners highlighted how, together with Palo Alto Networks, they will help organizations safeguard the backbone of the future digital economy:

“As private 5G networks become imperative for mission-critical applications and handling of their sensitive data, they are prime targets for cyber attacks. Our unique integration with Palo Alto Networks provides comprehensive visibility and secure access for enterprise devices connected over private 5G cellular wireless infrastructure. We are thrilled to join Palo Alto Networks Private 5G partners to continue delivering solutions that secure customer networks in the 5G space.” Rajeev Shah, CEO and Founder, Celona

“Zero Trust security is key to securing private 5G traffic, but without visibility into all applications, services, subscribers, and devices, a Zero Trust solution isn’t possible. Our integration with Palo Alto Networks provides customers with elevated security posture, unparalleled visibility, policy enforcement, mobile user control, and threat detection for all IoT and user devices connecting to their cellular networks. We are pleased to join the Private 5G partners, further advancing the mission of providing comprehensive private 5G networks.” Liam Kenny, CEO, Druid Software

“Together with Palo Alto Networks, we can address a broad spectrum of security concerns ranging from 5G network-specific scenarios to advanced threat detection scenarios, leveraging device intelligence to optimize Zero Trust postures. We’re thrilled to further our collaboration as a Private 5G partner, enabling customers to realize simplified management, robust security, and application-awareness by unifying their multiple networks.” Rajesh Pazhyannur, CEO and Co-Founder, Ataya

“5G networks can potentially transform the world as we know it, but given their complexity, enterprises need help. Ensuring end-through-end service visibility is critical to assuring an exceptional customer experience and monetizing device and end-user behavior. NETSCOUT has expansive visibility across the world’s largest IP networks. We help enterprises combat cyber threats through our pervasive, packet-level network visibility at scale and our open data model. This Visibility without Borders is exactly what we provide through our integrations with Palo Alto Networks and look forward to extending them to include 5G.” Bruce Kelley, CTO and SVP, Service Provider, NETSCOUT

“Private 5G enables enterprises to collect, transfer and analyze massive amounts of data from the prevalent connected sensors and edge devices in today’s enterprise networks. NVIDIA technologies accelerate Palo Alto P5G ecosystem solutions to help create a fast, secure and AI-ready private 5G infrastructure for modern enterprises.” Ash Bhalgat, Senior Director of Cloud, Telco and Cybersecurity Market Development, NVIDIA

“The computational demands of Generative AI applications deployed at the edge have made private 5G networks more critical than ever. To fully tap into the potential of private 5G, a key enabler of Industry 5.0, organizations need complete, fully managed solutions as well as trusted advisors with the right capabilities to facilitate the deployment, management, and security of private 5G networks. We look forward to building on our collaboration with Palo Alto Networks and delivering the power of private 5G to our clients’ current and future business.” Shahid Ahmed, Group EVP, New Ventures and Innovation, NTT Ltd.

See what Palo Alto Networks and their Private 5G Partners have in store for 5G at Mobile World Congress Barcelona.

Related News:

New SSDL Offered by Deloitte and Palo Alto Networks Alliance

ThreatDown by Malwarebytes Enhances Value for Sherweb MSPs

1 State of OT Security: A Comprehensive Guide to Trends, Risks, and Cyber Resilience, Palo Alto Networks, 2024.
2 The Mobile Economy 2023, GSMA Intelligence, 2023.

The post Palo Alto Launches Private 5G Security Solutions with Private 5G Partners appeared first on Digital IT News.

]]>
New SSDL Offered by Deloitte and Palo Alto Networks Alliance https://digitalitnews.com/deloitte-and-palo-alto-networks-expand-strategic-alliance-with-new-ssdl-offering/ Thu, 03 Aug 2023 14:49:20 +0000 https://digitalitnews.com/?p=8575 Deloitte and Palo Alto Networks have announced a new product and service offering, Secure Software Development Lifecycle™ (SSDL), to help clients reduce “alert fatigue,” increase operational efficiency and decrease time to market. SSDL is a modular orchestration platform powered by Palo Alto Networks Prisma Cloud and Cortex XSOAR that enables shared clients to reinforce their cloud environments with enhanced security measures from code to [...]

The post New SSDL Offered by Deloitte and Palo Alto Networks Alliance appeared first on Digital IT News.

]]>
Deloitte and Palo Alto Networks have announced a new product and service offering, Secure Software Development Lifecycle™ (SSDL), to help clients reduce “alert fatigue,” increase operational efficiency and decrease time to market.

SSDL is a modular orchestration platform powered by Palo Alto Networks Prisma Cloud and Cortex XSOAR that enables shared clients to reinforce their cloud environments with enhanced security measures from code to cloud. This helps them to mitigate risks and promote a secure development and deployment lifecycle that adheres to their unique cloud security and compliance requirements. The platform helps clients address cybersecurity requirements from design to tactical build/deploy, as well as manage ongoing cloud observability and optimize operational efficiency. SSDL can be efficiently integrated as an overall solution or integrated into an organization’s existing Continuous Integration/Continuous Delivery (CI/CD) pipeline, cloud security infrastructure and compliance ecosystem — and scales across all major cloud platforms.

“Our new Secure Software Development Lifecycle solution helps organizations address cloud security complexities with confidence,” said Kieran NortonDeloitte Risk & Financial Advisory’s transformation and emerging technology leader and principal, Deloitte & Touche LLP. “As our strategic alliance with Palo Alto Networks expands, we’re excited to continue to help our shared clients achieve their cloud and business goals by driving successful cybersecurity outcomes.”

Deloitte and Palo Alto Networks shared clients can leverage the platform for streamlining account provisioning, enabling secure build and deployment processes, implementing robust logging and monitoring mechanisms, enforcing custom security guardrails and auto remediation.

“Organizations today need help securing constantly changing, cloud-native applications and infrastructure from development to deployment,” said Prem Iyer, SVP Global Ecosystems, Palo Alto Networks. “We are pleased to further expand our collaboration with Deloitte by offering clients a transformative solution that provides continuous security across the software development lifecycle, helping them address compliance requirements and increasing efficiency with embedded security and automated remediation.”

The existing alliance between Deloitte and Palo Alto Networks focuses on jointly developing and offering integrated, end-to-end Zero Trust and multi-cloud cybersecurity solutions to their mutual enterprise and government customers.

For more information visit deloitte.com.

Related News:

Netwrix MSP Sector Report Finds Data and Network Security Top Priorities

Trend Vision One Announced for Optimized Security for Endpoints

The post New SSDL Offered by Deloitte and Palo Alto Networks Alliance appeared first on Digital IT News.

]]>
SSPM Reduces Data Breaches with Prisma SASE https://digitalitnews.com/sspm-reduces-data-breaches-with-prisma-sase/ Mon, 05 Sep 2022 08:30:30 +0000 https://digitalitnews.com/?p=6648 With hybrid work well established as the norm for the post-pandemic workforce and vast amounts of sensitive data now stored in SaaS apps, the risk of SaaS misconfiguration poses a serious security threat to businesses. According to Statista, as of 2021 the average business now has over 110 SaaS applications (apps) that must be secured. [...]

The post SSPM Reduces Data Breaches with Prisma SASE appeared first on Digital IT News.

]]>
With hybrid work well established as the norm for the post-pandemic workforce and vast amounts of sensitive data now stored in SaaS apps, the risk of SaaS misconfiguration poses a serious security threat to businesses. According to Statista, as of 2021 the average business now has over 110 SaaS applications (apps) that must be secured.

Misconfigurations in SaaS apps are a common problem. To address this, Palo Alto Networks announced new innovations in Prisma® SASE that enable customers to identify and remediate misconfigurations in SaaS apps using SaaS Security Posture Management (SSPM) capabilities.

“SaaS apps have given organizations the freedom to have their workforce work from wherever they are most productive. The vast amounts of sensitive data being created, held, and shared via SaaS applications, however, expose a serious risk of data breach due to SaaS misconfiguration. Simply put, the world needs a SASE solution that can manage the configuration and security of SaaS applications,” said Anand Oswal, senior vice president, Network Security at Palo Alto Networks. “With today’s Prisma SASE updates, we are significantly strengthening the security posture of SaaS apps through the Palo Alto Networks Next-Gen CASB, which allows customers to easily view and configure security settings for multiple SaaS apps in a single place.”

In addition to SSPM, the company announced new ZTNA 2.0 security inspection capabilities, including ML-powered Advanced URL Filtering and Advanced Threat Prevention as well as the industry’s first natively integrated artificial intelligence for IT operations (AIOps) solution for SASE, simplifying networking and security operations for customers.

The full set of product announcements are:

  • SaaS Security Posture Management (SSPM): Powered by Palo Alto Networks Next-Gen CASB, the SaaS Security Posture Management capabilities go beyond CIS and NIST compliance checks and move to comprehensive security, allowing customers to configure security settings for multiple SaaS apps in one location. In an effort to reduce remediation time, SSPM can help fix misconfigurations with a single click and helps prevent configuration drift by allowing users to lock critical security settings in place.
  • Advanced URL Filtering: Prevents new, highly evasive phishing attacks, ransomware and other web-based attacks through the use of inline deep learning, rather than a URL database — preventing 40% more threats and detecting 76% of malicious URLs up to a full day before traditional web filtering solutions.
  • Advanced Threat Prevention: Provides the only intrusion prevention system (IPS) solution that can stop unknown command-and-control (C2) attacks in real time — 48% more than other IPS solutions. New capabilities bring security analysis from “offline” to “inline” using machine learning techniques — improving detection rates for zero-day threats without sacrificing performance.
  • AIOps for SASE: Palo Alto Networks natively integrated AIOps into its secure access service edge to significantly reduce manual operations and enable faster troubleshooting. AIOps for SASE provides automated root cause analysis, rapid problem remediation and guided best practice adoption. Predictive analytics enable more efficient capacity planning and anomaly detection, preventing business disruptions. A simple query-based interface empowers the IT service desk with automated troubleshooting and change analysis.

In addition to these software enhancements, Palo Alto Networks is introducing new hardware appliances — ION 1200-S and ION 3200 — to help organizations modernize their small to midsize branches. These new appliances include a fully integrated switch and Power over Ethernet (PoE) ports to connect and power endpoints within the local area network. Additionally, integrated WAN capabilities like 5G and LTE on the ION 1200-S and fiber ports on the ION 3200 allow customers to improve WAN availability, performance and speed. ION 1200-S and ION 3200 can help significantly reduce operational complexity by eliminating multiple point products while providing power redundancy with a built-in dual power supply that ensures network uptime and consistent connectivity.

“As one of the largest cinema chains and theme park operators in Australia, we started our journey with Palo Alto Networks by deploying Prisma SD-WAN to improve the reliability and throughput of our WAN connections,” said Michael Fagan, chief transformation officer, Village Roadshow. “Since then, we have added Prisma Access to complete our SASE architecture and secure both our remote locations and our hybrid employees. We are pleased to see the introduction of 5G and PoE switching into the Prisma SD-WAN appliances to help us further consolidate our branch infrastructure, and simplify our operations with AIOps for SASE. Our team loves the fact that they no longer need to remember usernames, pins, passcodes, tokens and have different multi-factor authentication apps. Performance and uptime has improved to allow our staff to continue working without disruption to services, thereby reducing the amount of calls through to our service desk team.”

“Protecting sensitive data, especially data in SaaS applications, is paramount for us. As we continued to utilise more cloud services we knew we needed to implement a SASE framework and provide Zero Trust Network Access to protect our users and applications,” said Simon Hibbert, general manager of IT, Chemist Warehouse Group. Implementing Prisma SASE has enabled our employees to do their jobs more efficiently, and enabled new ways for us to engage with our customers. Not only has it improved our security posture, but it also provides highly reliable and smooth connectivity.”

“The usage of SaaS applications continues to expand at a faster rate than security teams can keep pace with. As more applications are introduced and ownership becomes distributed across organizations, the risk of misconfigurations grows, which increases the likelihood for security incidents to occur. A SASE solution like Prisma SASE by Palo Alto Networks provides a logical consolidation point for all the capabilities needed for complete SaaS security, including SSPM. However, functionality cannot be sacrificed for efficiency,” said John Grady, ESG senior analyst. “Palo Alto Networks provides comprehensive SaaS security through its security-focused SSPM capabilities coupled with comprehensive application coverage and a history of analytics-led threat prevention.”

Availability

SaaS Security Posture Management and most of the new SD-WAN appliances are generally available worldwide now — the ION 1200-S 4G/LTE will be available outside of North America in November. Advanced URL Filtering and Advanced Threat Prevention will be available in October 2022. AIOps for SASE will be available in November 2022.

More Information

More information on Prisma SASE is available here. Additionally, Palo Alto Networks will be hosting SASE Converge 2022, the premier summit for SASE, September 13-14 to discuss what’s next for SASE, and more.

Image licensed by freepik.com

Related News:

WhiteHat Security SaaS Application Security Now Part of Synopsys

AI Adoption Expands Across Enterprises States Juniper Networks

The post SSPM Reduces Data Breaches with Prisma SASE appeared first on Digital IT News.

]]>
Palo Alto Networks Introduces Enterprise-Grade Cybersecurity, Okyo Garde, for Work-From-Home Employees and Small Businesses https://digitalitnews.com/palo-alto-networks-introduces-enterprise-grade-cybersecurity-okyo-garde-for-work-from-home-employees-and-small-businesses/ Mon, 13 Sep 2021 22:10:02 +0000 https://digitalitnews.com/?p=4788 Palo Alto Networks, the global cybersecurity leader, announced Okyo™ Garde, an enterprise-grade cybersecurity solution delivered through a premium mesh-enabled Wi-Fi 6 system — addressing the risks of a world in which the workplace is as likely to be a kitchen table or spare bedroom as an office cubicle. Okyo Garde combines hardware, software and security [...]

The post Palo Alto Networks Introduces Enterprise-Grade Cybersecurity, Okyo Garde, for Work-From-Home Employees and Small Businesses appeared first on Digital IT News.

]]>
Palo Alto Networks, the global cybersecurity leader, announced Okyo™ Garde, an enterprise-grade cybersecurity solution delivered through a premium mesh-enabled Wi-Fi 6 system — addressing the risks of a world in which the workplace is as likely to be a kitchen table or spare bedroom as an office cubicle. Okyo Garde combines hardware, software and security services into one seamless, simple subscription.

“As the world moved to remote work a year and a half ago, it became clear that cybersecurity would need to follow workers home. We quickly and quietly assembled a team of some of the best consumer tech engineers and put them together with the exceptional teams who built Palo Alto Networks top security products. The result is Okyo Garde. It shows up as beautiful hardware and an easy app. But under the hood, it’s pure world-class security with constantly updated threat intelligence — the same technology that secures some of the world’s largest companies, banks, hospitals and the rest of our 85,000 worldwide customers,” said Mario Queiroz, executive vice president, Palo Alto Networks.

Okyo Garde for Work-From-Home Employees
In many cases, the home is quickly becoming a “branch of one,” with multiple devices but without IT teams, and without a deep set of cybersecurity protections. Now these homes face the same threat landscape as any enterprise — threat actors may even see them as vulnerable entry points into the corporate network. Okyo Garde was designed to help protect these homes.

For larger companies looking to protect employees who are working from home, Okyo Garde will be integrating with Prisma® Access, Palo Alto Networks’ cloud-delivered security platform. By combining Okyo Garde and Prisma Access, corporations will be able to extend their corporate networks and bring unified security policy management and SASE (secure access service edge) to work-from-home employees, while offering employees a premium Wi-Fi experience in a beautiful package. The work-from-home employee can also use Okyo Garde to enable an additional separate, private Wi-Fi network for the rest of their home and family’s needs. This network will also have advanced security capabilities designed for consumers and will be solely under the control of the employee or other family members.

Okyo Garde for Small Businesses
Because the number and frequency of cyberattacks have increased significantly, small businesses also need to ensure they are protected with the best available security — but they also need to be able to install and manage that security as easily as using their favorite app. Okyo Garde gives small businesses the cybersecurity protection they need with unparalleled malware and ransomware prevention, phishing protection, infected device detection, along and suspicious activity monitoring and control — all while delivering ultra-fast Wi-Fi. The Okyo Garde mobile app makes it easy for businesses to have comprehensive control and visibility over their digital security and Wi-Fi network activity, and it helps make setup simple. Okyo Garde can also be ordered with the Okyo Concierge service, designed to provide peace of mind for small businesses or for anyone wishing extra attention for installation, 24/7 support or on-site troubleshooting.

“The changing nature of work from home is transforming the home network into a new, unmanaged enterprise edge,” said Zeus Kerravala, founder and principal analyst, ZK Research. “Securing and managing the home as a branch extension of the enterprise network, at scale requires a new security, networking, and management paradigm. An approach that delivers enterprise-grade cybersecurity with consumer simplicity and is built upon the principles of Zero Trust.”

With Okyo Garde, enterprises, small businesses and work-at-home employees can all have world-class security and be ready for what comes next.

Pricing and Availability
Okyo Garde subscriptions for small businesses start at $349/year and include a mesh-enabled Wi-Fi 6 system. Starting today, in the U.S., Okyo Garde can be pre-ordered on okyo.com, with estimated ship date this fall. For pre-orders through September 30, 2021, we offer Okyo Concierge with Pro subscription tier at no cost, a value of up to $148. Expanded distribution is expected from Palo Alto Networks NextWave partners later this year. Okyo Garde Enterprise Edition, with Prisma Access integration, is expected to be available from Palo Alto Networks and Palo Alto Networks NextWave partners in the U.S. in early 2022.

More Information
More information about Okyo Garde for small business is available at okyo.com and for enterprises at paloaltonetworks.com/okyo as well as in our blog.

Tune into our Okyo special event at okyo.com to hear CEO Nikesh Arora and founder Nir Zuk discuss Okyo and how it helps secure remote work and small businesses.

Image licensed by pixabay.com

Related News:

Palo Alto Networks Introduces Complete Zero Trust Network Security

Palo Alto Networks Launches NextWave 3.0 to Help Partners Build Expertise in Dynamic, High-Growth Security Markets

The post Palo Alto Networks Introduces Enterprise-Grade Cybersecurity, Okyo Garde, for Work-From-Home Employees and Small Businesses appeared first on Digital IT News.

]]>
Prisma Cloud Launches ML-Powered Next-Generation Cloud Security Posture Management Capabilities, Helping Organizations Accelerate Cloud Adoption https://digitalitnews.com/prisma-cloud-launches-ml-powered-next-generation-cloud-security-posture-management-capabilities-helping-organizations-accelerate-cloud-adoption/ Wed, 23 Jun 2021 08:01:46 +0000 https://digitalitnews.com/?p=4247 New updates to Prisma Cloud, Palo Alto Networks Cloud Security Posture Management (CSPM) solution, help eliminate dangerous cloud blind spots and free security teams from the burden of alert fatigue. These critical features are available to the 2,000+ enterprises that trust Prisma Cloud, as well as future customers. Cloud environments are growing ever more complex [...]

The post Prisma Cloud Launches ML-Powered Next-Generation Cloud Security Posture Management Capabilities, Helping Organizations Accelerate Cloud Adoption appeared first on Digital IT News.

]]>
New updates to Prisma Cloud, Palo Alto Networks Cloud Security Posture Management (CSPM) solution, help eliminate dangerous cloud blind spots and free security teams from the burden of alert fatigue. These critical features are available to the 2,000+ enterprises that trust Prisma Cloud, as well as future customers.

Cloud environments are growing ever more complex as organizations add more cloud providers, users, applications and resources. Most security solutions are not designed for this new world and lack the end-to-end visibility needed to accurately assess risks and alert security teams of advanced attacks, leaving them to deal with both unsecured cloud resources and the cacophony of false-positive alerts. Today’s Prisma Cloud CSPM updates help security teams address these issues.

“Companies don’t want to slow down to secure the cloud, and they shouldn’t have to,” said Varun Badhwar, senior vice president, Prisma Cloud at Palo Alto Networks. “An ideal CSPM solution needs to offer coverage for all cloud resources, should stay up to date as new resources are introduced, and must effectively detect real attacks while minimizing unnecessary false positives. Prisma Cloud addresses these issues and allows organizations to move quickly while staying secure.”

The five new features of Prisma Cloud are:

  • True Internet Exposure
    • Legacy CSPM solutions generate alerts for any overly permissive security group — even if the security group is not publicly exposed. True Internet Exposure provides end-to-end network path visibility between any source and destination, eliminating needless alerts associated with unexposed cloud instances and security groups.
  • Visibility-as-Code
    • Cloud service providers release and update hundreds of new services for their platforms each year. When organizations use these new services before their CSPM solution supports them, they are left with security blind spots. With Visibility-as-Code, Prisma Cloud can now support new cloud services in days, providing development teams with the freedom to take advantage of the latest cloud services while giving the security teams the security measures they need.
  • Network Data Exfiltration Detection
    • Many basic security solutions solely focus on detecting misconfigurations based on static rules, so they may not be effective when it comes to real security attack objectives, such as data exfiltration. Prisma Cloud uses machine learning to analyze vast amounts of network flow logs and understand the typical traffic pattern of each customer, which is then used to detect and alert on abnormal egress traffic to any IP address, including TOR exit nodes. This allows security teams to focus their remediation efforts on the most dangerous data exfiltration attacks and avoid unnecessary alert storms.
  • Anomalous Compute Provisioning Detection
    • Security teams need an effective way to detect cryptojacking and other abnormal provisioning of compute resources. Anomalous Compute Provisioning Detection can identify the provisioning of an abnormal number of VMs, which can often be attributable to either cryptojacking or resource misuse. The machine learning-based policy also alerts security teams if a user appears to jump from one location to another or tries to hide behind a TOR exit node.
  • Customizable Object-Level Scanning for AWS S3
    • Prisma Cloud assesses resource configuration and enables customers to scan objects in their S3 buckets for public exposure, identify sensitive data and detect malware. Customizable Object-Level Scanning now gives customers a la carte scanning, freeing them to self-select specific scanning capabilities. This saves time and cost while reducing the volume of alerts.

“Gaining visibility into misconfigurations and identifying cloud infrastructure threats across dynamic public cloud environments is a continued challenge for organizations,” says ESG Vice President and Group Director, Cybersecurity, Doug Cahill. “The new capabilities in Prisma Cloud allow security teams to do this with greater breadth than before and lessen the overall amount of alerts that must be addressed by security teams.”

Availability
Anomalous Compute Provisioning Detection is available now. Visibility-as-Code for OCI is available now. True Network Exposure for AWS, Customizable Object-Level Scanning for AWS S3 and Network Data Exfiltration Detection will be available in the next two months. Availability of some features on additional clouds will follow.

Image licensed by pexels.com

Prisma Cloud Now Secures Apps with the Industry’s Only Integrated Web App Firewall (WAF), API Security, Runtime Protection, and Bot Defense Platform

Palo Alto Networks Achieves New FedRAMP Authorization including Prisma Cloud, Cortex XDR and Cortex Data Lake

The post Prisma Cloud Launches ML-Powered Next-Generation Cloud Security Posture Management Capabilities, Helping Organizations Accelerate Cloud Adoption appeared first on Digital IT News.

]]>
Checkov 2.0 Launches as the First Open-Source Cloud Infrastructure Scanner With Dependency Awareness https://digitalitnews.com/checkov-2-0-launches-as-the-first-open-source-cloud-infrastructure-scanner-with-dependency-awareness/ Wed, 14 Apr 2021 18:21:01 +0000 https://digitalitnews.com/?p=3911 Palo Alto Networks, announced the second generation of Checkov, the market-leading static analysis tool for infrastructure as code (IaC). The open-source project was created by Bridgecrew, which was acquired by Palo Alto Networks in March 2021. Checkov has exploded in popularity since its initial launch in 2019, helping developers identify misconfigurations in IaC frameworks such as Terraform, CloudFormation, [...]

The post Checkov 2.0 Launches as the First Open-Source Cloud Infrastructure Scanner With Dependency Awareness appeared first on Digital IT News.

]]>
Palo Alto Networks, announced the second generation of Checkov, the market-leading static analysis tool for infrastructure as code (IaC). The open-source project was created by Bridgecrew, which was acquired by Palo Alto Networks in March 2021. Checkov has exploded in popularity since its initial launch in 2019, helping developers identify misconfigurations in IaC frameworks such as Terraform, CloudFormation, Kubernetes, Azure Resource Manager (ARM) and Serverless Framework. With Checkov 2.0, developers can now scan for cloud misconfigurations in environments with complex dependencies across resources and modules.

“This release is the most significant update to Checkov since it launched in 2019,” said Matt Johnson, Bridgecrew developer advocate lead at Palo Alto Networks. “Dependency awareness means developers have even more context earlier in the development lifecycle, helping companies around the world better secure their cloud infrastructure.”

According to a recent survey produced by Secure Code Warrior, 70% of organizations recognize the importance of secure coding practices, indicating an industry-wide shift from reaction to prevention and an embrace of DevSecOps. Unlike other static code analysis tools that rely on interim ad hoc modeling, Checkov is now built on a graph-based model that provides an entirely new way of modeling configuration risk in cloud native software composition. That context awareness ensures more relevant and reliable scan results, making it easier for developers to prioritize and understand the impact of identified misconfigurations.

“Policies that take into account interdependencies within IaC are critical to understanding the impact of misconfigurations,” said Rob Eden, a Checkov contributor. “It’s not enough to know that a security group has ports open to the world; we need to know if that misconfiguration is in production or just a test environment in order to prioritize it appropriately. It’s awesome to have an open-source tool providing that level of context.”

Highlights

  • Over 200 new policies making it the most robust open-source IaC scanner.
  • Built using NetworkX, the popular Python package for analysis of complex networks.
  • Dockerfile misconfiguration scanning secures container build tasks in continuous integration (CI) workflows.
  • Graph-based mapping enables scanning of complex inventory and configuration errors that require parsing and storing data with their full contextualized relationships intact.

Checkov 2.0 includes over 200 new policies and a Dockerfile scanner that help ensure container images are built securely, without misconfigurations. According to Unit 42’s most recent Cloud Threat Report, 51% of Docker containers use insecure defaults. Checkov 2.0 identifies these concerns directly within the developer’s integrated development environment (IDE) via the recently released VS Code extension, making it easy to quickly patch and build more secure applications in Kubernetes and other containerized environments.

For further details, see Palo Alto Networks’ blog post: Announcing Checkov 2.0: Deepening Open Source IaC Security.

Image licensed by Pexels.com

Related News:

Palo Alto Networks Achieves New FedRAMP Authorization including Prisma Cloud, Cortex XDR and Cortex Data Lake

Skybox Security Delivers Industry’s Most Advanced Exposure Analysis

 

 

The post Checkov 2.0 Launches as the First Open-Source Cloud Infrastructure Scanner With Dependency Awareness appeared first on Digital IT News.

]]>
Palo Alto Networks Launches NextWave 3.0 to Help Partners Build Expertise in Dynamic, High-Growth Security Markets https://digitalitnews.com/palo-alto-networks-launches-nextwave-3-0-to-help-partners-build-expertise-in-dynamic-high-growth-security-markets/ Thu, 25 Feb 2021 17:00:56 +0000 https://digitalitnews.com/?p=3688 Palo Alto Networks,  the global cybersecurity leader, unveiled NextWave 3.0, a significant set of enhancements, incentives and training to its award-winning NextWave Partner Program. Designed to help partners leverage all of Palo Alto Networks technologies, NextWave 3.0 will help partners differentiate their services, build new security expertise and grow profitable businesses as they meet customers’ [...]

The post Palo Alto Networks Launches NextWave 3.0 to Help Partners Build Expertise in Dynamic, High-Growth Security Markets appeared first on Digital IT News.

]]>
Palo Alto Networks,  the global cybersecurity leader, unveiled NextWave 3.0, a significant set of enhancements, incentives and training to its award-winning NextWave Partner Program. Designed to help partners leverage all of Palo Alto Networks technologies, NextWave 3.0 will help partners differentiate their services, build new security expertise and grow profitable businesses as they meet customers’ needs in a dynamic security market.

Enterprises everywhere are expanding connectivity, growing their cloud capabilities and turning to automated solutions to protect themselves against sophisticated cyberattacks. Palo Alto Networks continues to expand its integrated platform of cloud, network and AI-driven threat protection capabilities to meet these market and customer dynamics. Its partner ecosystem has been instrumental in providing complementary solutions to help customers implement the best security architectures.

As digital transformation fuels the demand for specialized security expertise and creates a new economy of services, Palo Alto Networks is committed to delivering the products, programs and resources to enable its NextWave partners. Developed in consultation with the company’s partners, NextWave 3.0 will:

  • Enable differentiation with new specializations. Partners can build their security expertise through three new Prisma SASE (Prisma Access and Prisma SD-WAN, formerly CloudGenix), Prisma Cloud and Cortex XDR/XSOAR specializations. These new specializations include corresponding partner training and certifications.
  • Enhance partner profitability with three new specialization incentives for Prisma SASE, Prisma Cloud and Cortex XDR/XSOAR deals, along with other new incentives, deal boost and new rebates for its NextWave Diamond Innovator partners.
  • Expand partner opportunities by boosting existing deal referral incentives on all Palo Alto Networks products, extending partner-delivered support across more of Palo Alto Networks’ technologies and offering new education credits. Further, NextWave partners can now resell Prisma Cloud via a two-tier go-to-market strategy.
  • Empower partner success. NextWave 3.0 includes a host of new enablement resources and ways for partners to earn or maintain NextWave status, expanding Certified Professional Services certification to include the new specializations, Technology Education credits and technology adoption discounts.

“The future of our business and that of our partners are fundamentally linked,” said Karl Soderlund, senior vice president of Worldwide Channels. “The NextWave partner of tomorrow will enable digital transformation for our customers by embracing new technology, offering product-specific expertise, and leading with services. NextWave 3.0 helps our partners do just that. It is the most sweeping set of enhancements we have done to help our partners become security experts across our entire technology portfolio.”

About the NextWave Partner Program

  • Palo Alto Networks NextWave partner program includes approximately 6,500 partners who help 80,000 customers around the world succeed with the company’s technologies. In FY’20, 900 NextWave partners doubled their business through Palo Alto Networks.
  • In the company’s most recent Partner Satisfaction survey, more than 3,300 NextWave partners ranked Palo Alto Networks No. 1 in Partnership, Growth, Enablement and Profitability, when measured against top competitors.
  • Today, more than 18,000 partner engineers hold over 40,000 Palo Alto Networks technical certifications.

Partner Quotes

WWT

“As enterprises accelerate digital transformation, the need for agile and adaptable security solutions has never been greater,” said Mike McGlynn, Vice President and General Manager of Global Security, World Wide Technology (WWT). “Palo Alto Networks’ NextWave 3.0 offers a comprehensive security suite that enables WWT to help organizations construct and evolve their security infrastructures in the cloud, at the edge, and through AI-driven automation, tailored to their unique transformation needs.”

Sirius

“As a national integrator of technology-based business solutions that span the enterprise, including the data center, Sirius builds solutions on products and services from the world’s top technology companies through our dedicated teams of highly-certified experts,” said Deborah Bannworth, Senior Vice President of Partner Alliances, Inside Sales, Maintenance Sales & Services, Sirius. “NextWave 3.0 supports Sirius in aligning its world-class expertise to the Palo Alto Networks platform of technologies and will help us continue to meet the needs and priorities of its customers, which have shifted in 2020.”

Presidio

“More than ever, our customers in every industry are looking for IT to transform businesses with advanced technologies – to drive innovation, connectivity, lower costs, and optimize processes,” said Chris Barney, Senior Vice President, Cyber Security Practice, Presidio. “We are very pleased to partner with Palo Alto Networks, and to leverage NextWave 3.0, which will help us build our security services and expertise across the lifecycle of security needs for our customers.”

Image licensed by pixabay.com

Related News:

IGEL Expands Zoom, Cloud Printing and Webcam Support for Windows Virtual Desktop (WVD) Environments

39% of Healthcare Organizations Suffered Ransomware Attacks in the Cloud in 2020

The post Palo Alto Networks Launches NextWave 3.0 to Help Partners Build Expertise in Dynamic, High-Growth Security Markets appeared first on Digital IT News.

]]>
Prisma Cloud Now Secures Apps with the Industry’s Only Integrated Web App Firewall (WAF), API Security, Runtime Protection, and Bot Defense Platform https://digitalitnews.com/prisma-cloud-now-secures-apps-with-the-industrys-only-integrated-web-app-firewall-waf-api-security-runtime-protection-and-bot-defense-platform/ Mon, 01 Feb 2021 20:48:36 +0000 https://digitalitnews.com/?p=3512 Palo Alto Networks announced a number of enhancements to Prisma® Cloud, the industry’s only comprehensive Cloud Native Security Platform. With these enhancements, Prisma Cloud now has the industry’s most accurate web application firewall (WAF) capabilities. When securing cloud native applications, Prisma Cloud ensures scalability, automated protection and integrated protection for defense in depth. “Customers want as much protection as possible, [...]

The post Prisma Cloud Now Secures Apps with the Industry’s Only Integrated Web App Firewall (WAF), API Security, Runtime Protection, and Bot Defense Platform appeared first on Digital IT News.

]]>
Palo Alto Networks announced a number of enhancements to Prisma® Cloud, the industry’s only comprehensive Cloud Native Security Platform. With these enhancements, Prisma Cloud now has the industry’s most accurate web application firewall (WAF) capabilities. When securing cloud native applications, Prisma Cloud ensures scalability, automated protection and integrated protection for defense in depth.

Prisma Cloud Now Secures Apps with the Industry’s Only Integrated Web App Firewall (WAF), API Security, Runtime Protection, and Bot Defense Platform. Comprehensive Platform Allows Organizations to Develop, Deploy and Protect Cloud Native Applications Without the Complexity, Risks, and Problems Introduced by Using Multiple Point Products

“Customers want as much protection as possible, delivered as simply as possible across the cloud native continuum – securing hosts, containers and Kubernetes, and serverless functions – both at runtime and across the application lifecycle. Many organizations are moving to the cloud and need to protect applications end-to-end, starting from infrastructure and going all the way to the application layer,” said Varun Badhwar, senior vice president for product, Prisma Cloud, at Palo Alto Networks. “Prisma Cloud delivers the best-of-breed and comprehensive solution designed to protect these organizations from third-party attacks.”

Prisma Cloud delivers cloud workload protection capabilities through a number of distinct modules including Host Security, Container Security, and Web Application and API Security (WAAS). The enhancements to these modules include:

  • Bot Risk Management: Prisma Cloud Web Application and API Security (WAAS) customers can now manage web bots and decide how to handle access for different bot types. Users have customizable visibility and protection covering known, unknown and user-defined bots.
  • Advanced DoS Protection: Prisma Cloud WAAS now includes the ability to defend against application-layer denial-of-service (DoS) attacks by applying rate controls.
  • Host Security With Custom Compliance Policies: Prisma Cloud enhances compliance for virtual machines with custom compliance checks for operating systems, orchestrators and runtime configurations.
  • Container Security With Enhanced Kubernetes Cluster Awareness and CRI-O Compliance Checks: Prisma Cloud now has deeper Kubernetes® integration with enhanced Kubernetes cluster awareness. This makes it simpler to gain quick visibility, manage security policies and view runtime audits via Kubernetes cluster filters. For CRI-O, Prisma Cloud maps 25 specific compliance checks to CRI-O across containers, images and host configurations.

“Today’s security teams need to ensure their web applications, especially those running on cloud native architectures like containers and Kubernetes, are protected from threats and attacks,” says Doug Cahill, vice president and group director, Cybersecurity, ESG. “With an integrated approach to web application and API security, Prisma Cloud is addressing that concern head-on.”

Accuracy
WAAS accuracy was measured across six competitors in an internal benchmark analysis of 200,000 legitimate web transactions. Prisma Cloud WAAS produced the lowest false positive rate to deliver the highest accuracy.

Availability
All the aforementioned features are available today in Prisma Cloud Compute Edition, with general availability in Prisma Cloud Enterprise Edition by early February.

Image licensed by Pixabay.com

Related News:

Palo Alto Networks Achieves New FedRAMP Authorization including Prisma Cloud, Cortex XDR and Cortex Data Lake

Trend Micro Announces World’s First Cloud-Native File Storage Security

The post Prisma Cloud Now Secures Apps with the Industry’s Only Integrated Web App Firewall (WAF), API Security, Runtime Protection, and Bot Defense Platform appeared first on Digital IT News.

]]>