Cato Endpoint Protection (EPP) is the industry’s first SASE-managed EPP solution protecting endpoints against advanced malware, evasive attacks and zero-day threats. Cato EPP adds endpoint protection and detection to Cato’s multi-layer SASE architecture while reducing management overhead, increasing security teams efficiency, and improving the enterprise security posture.
Cato EPP scans over 300 file types for threats, including archives and packed files. It uses advanced rule-based analysis and machine learning algorithms, to identify known, polymorphic, and zero-day malware based on file characteristics analysis. Cato EPP uses heuristics and process behavioral analysis to detect suspicious and malicious activity in real-time. This capability enables the detection and prevention of fileless malware operating directly in the system memory, evasive exploits and zero-day attacks, and ”living-off-the-land” attacks that leverage legitimate tools for malicious purposes. To further minimize attack surface, Cato can block the use of USB drives with device control.
Responding to threats in real time is critical to minimizing the potential damage of a malware outbreak. However, delicate balance is often needed between automated response and user productivity. Cato provides administrators with the flexibility to adjust the containment policies to meet their organization security requirements including threat blocking, file quarantine, or process termination.
Cato EPP is fully managed through the Cato Management Application (CMA), seamlessly integrated with all other Cato SASE Cloud Platform capabilities. Administrators gain the advantage of overseeing the protected endpoints from a unified console, where user data, network information, and security policies are consolidated. Cato EPP saves administrators the need to integrate, maintain, and manage a standalone endpoint protection solution. Manual SIEM integration is also eliminated as all EPP events and alerts are now a native part of the Cato SASE Cloud platform.
Cato EPP is provisioned via the Cato Management Application (CMA) or through the Customer’s selected Mobile Device Management tool (MDM). Administrators can onboard and start protecting thousands of endpoints in a matter of minutes. Once installed, the Cato EPP agent runs in the background and is completely transparent to the end-user. No login is required, and users get instantly protected and alerted when a security event occurs on the endpoint. Ad-hoc malware scanning activities can be initiated by the user or by the administrator directly from the Cato Management Application.
Cato EPP events are stored in the same data lake with all other events generated by the various Cato SASE Cloud Platform engines. Cato XDR leverages high-quality endpoint data, alongside network-based sensors, for optimal AI/ML threat detection and investigation. Administrators can easily filter events by user or device seeing a unified list of all endpoint and network security events in one screen, enabling efficient incident investigation and response.
Cato를 사용하면 여러 보안 포인트 솔루션과 값비싼 네트워크 서비스로 구성된 복잡한 레거시 아키텍처가 더 이상 필요하지 않습니다.
Cato의 독특한 SASE 플랫폼은 어디서나 모든 사용자에게 안전하고 최적화된 애플리케이션 액세스를 일관적이며 자체적으로 제공합니다.
Cato Networks는 2024년 Gartner® Magic Quadrant™ 단일 공급업체 SASE 부문에서 리더로 선정되었습니다
“Cato Networks는 ZTE와 SASE의 상징입니다.”
SASE의 성장 및 혁신 리더로 인정받는 Cato Networks
GigaOm Radar 보고서에서 ‘리더’로 선정된 Cato SASE
글로벌 SSE 제품 리더로 인정받는 Cato Networks
SD-WAN을 통한 WAN 혁신: SASE 성공을 위한 성숙한 기반 구축
“Cato에서 침해 및 공격 시뮬레이터를 실행한 결과 감염률과 내부망 이동은 감소했지만 감지율은 급증했습니다. 이것이 Cato 보안을 신뢰할 수 있는 가장 큰 이유입니다.”
IT 팀이 바라던 솔루션입니다.
기대해주세요!