Neustar Security Services UltraDDR

Additional Info

CompanyNeustar Security Services
Websitehttps://neustarsecurityservices.com/
Company size (employees)100 to 499
Headquarters RegionNorth America
Type of solutionCloud/SaaS

Overview

UltraDDR (DNS Detection and Response) is a recursive DNS-based protection service that combats network breaches, ransomware attacks, phishing and supply chain compromise while enforcing enterprise acceptable-use policies for its users.

UltraDDR provides a Protective DNS solution that enables enterprises to circumvent threats by blocking communication before damage can occur. Protective DNS analyzes DNS queries and takes action to mitigate threats. Using years of historical domain data to deliver real-time observability of outbound network communication, UltraDDR allows enterprises to detect and stop attacks before they cause damage. If a user is compromised, it blocks their outbound connections to malicious sites on the internet, preventing an infected device from remotely loading malware or taking any actions to further compromise infrastructure. UltraDDR observes, analyzes, and blocks suspicious communications while mapping attacker assets and behaviors to generate detailed insights into the complete threat. Alerts can be correlated with those from EDR and NDR solutions to minimize the noise and distraction of false positives, allowing security teams to focus on real threats.

Consisting of a highly reliable, 27 node global recursive DNS resolution network, UltraDDR is a full DNS resolver solution, complete with advanced security features like DNSSEC, DNS over HTTPS (DoH), and DNS over TLS (DoT). It includes built-in DDoS protection, via Neustar Security Services’ UltraDDoS Protect, to quickly defend against attacks towards the UltraDDR DNS resolver network and ensure availability is not compromised.

UltraDDR provides comprehensive DNS firewall capabilities to enforce acceptable use policies for enterprise users. Administrators can choose categories of internet traffic that are not acceptable under company policy and opt to block or flag this traffic, providing a simple, unobtrusive way of enforcing policy.

Deployable in minutes, UltraDDR can integrate always-on DNS intelligence into security information and event management systems, firewalls, endpoint solutions, and more to improve existing security investments.

How we are different

• UltraDDR (DNS Detection and Response) is a recursive DNS-based protection service that enables enterprises to detect and stop malware, ransomware, phishing, and supply chain attacks before they can do damage.
• Using years of historical domain data, UltraDDR delivers real-time observability of outbound network communication. If a user is compromised, UltraDDR blocks their outbound connections to malicious sites on the internet, preventing an infected device from remotely loading malware or taking any actions to further compromise infrastructure. UltraDDR not only observes, analyzes, and blocks suspicious communications, it also maps attacker assets and behaviors, generating detailed insights into the complete threat. UltraDDR alerts can be correlated with alerts from EDR and NDR solutions to minimize the noise and distraction of false positives, allowing security teams to focus on real threats.
• UltraDDR also provides comprehensive DNS firewall capabilities to enforce acceptable use policies for enterprise users. Administrators can choose categories of internet traffic such as adult, gambling, gaming, social media, etc., that are not acceptable under company policy and choose to block or flag this traffic to provide a simple unobtrusive way of enforcing policy.