Sangfor Endpoint Secure

Additional Info

CompanySangfor Technologies
Websitehttps://www.sangfor.com/
Company size (employees)5,000 to 9,999
Headquarters RegionAsia
Type of solutionSoftware

Overview

Sangfor’s Endpoint Protection and Response platform (Endpoint Secure) provides the endpoint with a more detailed isolation policy, enabling more accurate search and destroy capabilities, sustainable detection capabilities and faster processing capabilities including prevention, defense, detection and response. Endpoint Secure is constructed through cloud linkage and coordination, threat information sharing and multi-level response mechanisms. Advanced threat response is immediate, with Endpoint Secure providing users with assistance dealing with any endpoint security problems by way of its new, light-weight, intelligent and instantaneous endpoint security system.

Endpoint security has evolved over the years from providing preventive capabilities, namely antivirus (AV) and next-generation AV, to a solution capable of correlating security events and performing investigation and response (EDR). Sangfor Endpoint Secure is a Modern Endpoint Protection Platform (EPP) that integrates NGAV, EDR, and endpoint management capabilities into a single solution. With Endpoint Secure, organizations can take preventive measures by scanning their endpoints for risky configurations and vulnerabilities, conduct investigations when security threats occur, and respond quickly with an easy-to-use solution. Endpoint Secure’s endpoint management capabilities include vulnerability & patch management to mitigate risks and improve compliance. Centralized policy management and remote troubleshooting further help operations teams streamline and simplify O&M.

Key Capabilities / Features

- Phishing and web intrusion protection with automated response
Enhanced protection against phishing and web intrusion attacks to counter the rising number of incidents worldwide. Accurate detection of phishing and web intrusion attacks, with detailed insights, including a comprehensive visual kill chain to pinpoint the origin and associated behaviors of the attack. Users can configure Sangfor Endpoint Secure to respond automatically to such attacks, such as terminating malicious processes and deleting malicious files to prevent lateral movement.


- Ransomware Protection and Recovery
-- Protects against all types of ransomware through static and dynamic AI-based detection engines.
-- Detects suspicious ransomware-related processes and blocks them in as little as 3 seconds to ensure minimal impact on users’ assets.
-- Ransomware indicators of compromise are collected from over 12 million devices deployed with Sangfor Endpoint Secure, allowing it to achieve a detection accuracy rate of 99.83%.
-- In addition to existing ransomware protections, such as honeypot and RDP two-factor authentication, Sangfor Endpoint Secure provides ransomware recovery capabilities. These include file recovery and recovery via Windows Volume Shadow Copy Service (VSS) snapshot backup to fully secure and restore your data in case of ransomware encryption.


- Synergy with Network and Cloud
Endpoint Secure integrates with Sangfor NGAF, IAG, and Cyber Command to enable advanced and coordinated threat detection and response. Threat correlation between endpoint, network, and cloud makes it possible to detect sophisticated threats that are missed by point solutions and produce an integrated evidence chain to streamline post-attack threat hunting and weakness remediation.


How we are different

- Protects against all types of ransomware through static and dynamic AI-based detection engines.
- Detects suspicious ransomware-related processes and blocks them in as little as 3 seconds to ensure minimal impact on users’ assets. Ransomware indicators of compromise are collected from over 12 million devices deployed with Sangfor Endpoint Secure, allowing it to achieve a detection accuracy rate of 99.83%.
- In addition to existing ransomware protections, such as honeypot and RDP two-factor authentication, Sangfor Endpoint Secure provides ransomware recovery capabilities. These include file recovery and recovery via Windows Volume Shadow Copy Service (VSS) snapshot backup to fully secure and restore your data in case of ransomware encryption.