
Delivers comprehensive, adaptive, highly efficient agentless and agent-based protection, including anti-malware, intrusion detection and prevention, firewall, web application protection, integrity monitoring, and log inspection.
Deep Security protects enterprise applications and data from breaches and business disruptions without emergency patching. Tightly integrated modules easily expand the platform to ensure server, application, and data security across physical, virtual, and cloud servers, as well as virtual desktops. This comprehensive, centrally managed platform helps you simplify security operations while enabling regulatory compliance and accelerating the ROI of virtualization and cloud projects.
Integrates new VMware vShield Endpoint APIs to provide agentless anti-malware protection for VMware virtual machines with zero in-guest footprint. Helps avoid security brown-outs commonly seen in full system scans and pattern updates. Also provides agent-based anti-malware to protect physical servers, Hyper-V and Xen-based virtual servers, public cloud servers as well as virtual desktops in local mode. Coordinates protection with both agentless and agent-based form factors to provide adaptive security to defend virtual servers as they move between the data center and public cloud.
Detects malicious and unexpected changes. Leverages an agentless configuration to add greater security to virtual machines without additional footprint. Also protects the hypervisor from exploits with the innovative new hypervisor integrity monitoring using Intel TPM/TXT technology. Event tagging and cloud-based whitelisting reduce the complexity of administrative operations. Also includes real-time, on-demand, or scheduled detection of change and provides auditable reports.
Helps achieve timely protection against known and zero-day attacks. Uses vulnerability rules shield a known vulnerability—for example those disclosed monthly by Microsoft—from an unlimited number of exploits. Offers out-of-the-box vulnerability protection for over 100 applications, including database, web, email and FTP servers. Automatically delivers rules that shield newly discovered vulnerabilities within hours, and can be pushed out to thousands of servers in minutes, without a system reboot.
Enables compliance with PCI Requirement 6.6 for the protection of web applications and the data that they process. Defends against SQL injections attacks, cross-site scripting attacks, and other web application vulnerabilities. Shields vulnerabilities until code fixes can be completed.
Increases visibility into, or control over, applications accessing the network. Identifies malicious software accessing the network and reduces the vulnerability exposure of your servers.
Centralizes management of server firewall policy using a bi-directional stateful firewall. Supports virtual machine zoning and prevents Denial of Service attacks. Provides broad coverage for all IP-based protocols and frame types as well as fine-grained filtering for ports and IP and MAC addresses.
Optimizes the identification of important security events buried in multiple log entries across the data center. Forwards suspicious events to a SIEM system or centralized logging server for correlation, reporting and archiving. Leverages and enhances open-source software available at OSSEC.
Deep Security is a comprehensive server security platform designed to protect dynamic data centers comprising physical, virtual, and cloud servers as well as virtual desktops. The solution consists of: the Deep Security Virtual Appliance, Deep Security Agent, and Deep Security Manager.
This virtual appliance provides agentless integrity monitoring, anti-malware, IDS/IPS, web application protection, application control, and firewall protection—coordinating with Deep Security Agent, if desired, for log inspection and defense in depth.
This small software component is deployed on the server or virtual machine being protected to help enforce security policies. Enables anti-malware, IDS/IPS, web application protection, application control, firewall, integrity monitoring, and log inspection.
This powerful management system has a centralized console for monitoring alerts and preventive actions taken in response to threats. The Manager can be configured to automate or distribute security updates to servers on demand. It also generates reports to gain visibility into activity and meet compliance requirements. Event Tagging functionality streamlines the management of high-volume events and enables workflow of incident response.
This dedicated team of security experts rapidly develops and delivers security updates that address newly discovered vulnerabilities. The Security Center manages the customer portal used for accessing these security updates and information. Security updates can be delivered to Deep Security Manager automatically, or on-demand for deployment to thousands of servers within minutes.
Get mature technology from the recognized leader in virtualization security. With integrated security designed for virtual servers, you can remain secure without sacrificing performance or management. Deep Security helps you secure your virtual environment for the increased efficiencies of cloud computing. VM-aware security preserves performance, and increase VM densities. Independent tests show an increase in consolidation rates of up to 3x without AV storms.
Get the latest insight from Gartner, Trend Micro and ABS, a customer already benefiting from virtualization security.
View On-Demand Gartner Webcast
Get comprehensive protection for virtual desktops while preserving performance and consolidation ratios. Built specifically to handle the rigors of virtual desktop environments, Deep Security maximizes protection for a broad spectrum of virtual desktop scenarios. With true agentless malware protection for zero-client deployment and agent-based security to protect virtual desktops in local mode, you can maximize both the security and ROI of your VDI investment.
Ogren Group recommends VDI aware security to avoid potential pitfalls.
Read analyst white paper
Hundreds of software vulnerabilities are exposed each month, and timely patching is expensive, prone to error and often impossible. Trend Micro virtual patching solutions deliver immediate protection while eliminating the operational pains of emergency patching, frequent patch cycles, and costly system downtime. Deep Security keeps your servers and endpoints protected while preventing costly emergency patching and upgrades as well as reducing the risk of breach disclosure costs. It even helps to extend the life of legacy systems and applications.
Learn cost saving strategies in an Ogren Group white paper on the economic advantages of virtual patching.
Download white paper
Whether you’re deploying a private, public, or hybrid cloud, Trend Micro provides you with total cloud protection that’s optimized for virtual and cloud environments.
Deep Security integrates with Trend Micro™ SecureCloud for encryption and policy-based key management for cloud environments. So you get better protection, less administrative complexity, and increased performance. Agentless and agent-based deployments provide flexible cloud implementation options with cross-cloud management to secure your servers, application, and data.
Gartner Research shares expert advice on how to move your data safely to the cloud.
Get research note
The complexity and fluidity of desktop and server virtualization pose security, compliance, and performance risks that require specialized, virtualization-optimized protection and performance. Deep Security provides integrated security and compliance for business systems operating in physical, virtual, and cloud environments. Deep Security addresses 8 PCI DSS requirements and provides core security controls with a unique approach that economically solves the toughest compliance challenges.
Principal ESG analyst discusses PCI DSS 2.0 and strategies for compliance in virtualized environments.
Watch analyst webinar
*Anti-malware not available on this platform at this time
*Only Integrity Monitoring and Log Inspection modules are available on these UNIX-based platforms.
** Protection via Deep Security Agent only
*** Protection via Deep Security Agent and Virtual Appliance for Firewall, IDS/IPS and Web application protection, via Agent only for other modules
**** Protection via Deep Security Agent only for Log Inspection, via Agent and Virtual Appliance for all other modules, separate license to vShield Endpoint required