
Delivers comprehensive, adaptive, highly efficient agentless and agent-based protection, including anti-malware, intrusion detection and prevention, firewall, web application protection, integrity monitoring, and log inspection.
Deep Security provides advanced server security for physical, virtual, and cloud servers. It protects enterprise applications and data from breaches and business disruptions without requiring emergency patching. This comprehensive, centrally managed platform helps you simplify security operations while enabling regulatory compliance and accelerating the ROI of virtualization and cloud projects. The following tightly integrated modules easily expand the platform to ensure server, application, and data security across physical, virtual, and cloud servers, as well as virtual desktops.
open all
Integrates new VMware vShield Endpoint APIs to provide agentless anti-malware protection for VMware virtual machines with zero in-guest footprint. Helps avoid security brown-outs commonly seen in full system scans and pattern updates. Also provides agent-based anti-malware to protect physical servers, Hyper-V and Xen-based virtual servers, public cloud servers as well as virtual desktops in local mode. Coordinates protection with both agentless and agent-based form factors to provide adaptive security to defend virtual servers as they move between the data center and public cloud.
Integrates with the Trend Micro™ Smart Protection Network™ web reputation capabilities to safeguard users and applications by blocking access to malicious urls. Provides same capability in virtual environments in agentless mode through the same virtual appliance that also delivers agentless security technologies for greater security without added footprint.
Helps achieve timely protection against known and zero-day attacks. Uses vulnerability rules shield a known vulnerability—for example those disclosed monthly by Microsoft—from an unlimited number of exploits. Offers out-of-the-box vulnerability protection for over 100 applications, including database, web, email and FTP servers. Automatically delivers rules that shield newly discovered vulnerabilities within hours, and can be pushed out to thousands of servers in minutes, without a system reboot.
Helps achieve timely protection against known and zero-day attacks. Uses vulnerability rules shield a known vulnerability—for example those disclosed monthly by Microsoft—from an unlimited number of exploits. Offers out-of-the-box vulnerability protection for over 100 applications, including database, web, email and FTP servers. Automatically delivers rules that shield newly discovered vulnerabilities within hours, and can be pushed out to thousands of servers in minutes, without a system reboot.
Defends against web application vulnerabilities
Enables compliance with PCI Requirement 6.6 for the protection of web applications and the data that they process. Defends against SQL injections attacks, cross-site scripting attacks, and other web application vulnerabilities. Shields vulnerabilities until code fixes can be completed.
Identifies malicious software accessing the network
Increases visibility into, or control over, applications accessing the network. Identifies malicious software accessing the network and reduces the vulnerability exposure of your servers.
Centralizes management of server firewall policy using a bi-directional stateful firewall. Supports virtual machine zoning and prevents Denial of Service attacks. Provides broad coverage for all IP-based protocols and frame types as well as fine-grained filtering for ports and IP and MAC addresses.
Optimizes the identification of important security events buried in multiple log entries across the data center. Forwards suspicious events to a SIEM system or centralized logging server for correlation, reporting and archiving. Leverages and enhances open-source software available at OSSEC.
open all
Deep Security is a comprehensive agentless server security platform designed to protect dynamic data centers comprising physical, virtual, and cloud servers as well as virtual desktops. The solution consists of: the Deep Security Virtual Appliance, Deep Security Agent, and Deep Security Manager.
open all
This virtual appliance provides agentless integrity monitoring, anti-malware, IDS/IPS, web application protection, application control, and firewall protection—coordinating with Deep Security Agent, if desired, for log inspection and defense in depth.
This small software component is deployed on the server or virtual machine being protected to help enforce security policies. Enables anti-malware, IDS/IPS, web application protection, application control, firewall, integrity monitoring, and log inspection.
This powerful management system has a centralized console for monitoring alerts and preventive actions taken in response to threats. The Manager can be configured to automate or distribute security updates to servers on demand. It also generates reports to gain visibility into activity and meet compliance requirements. Event Tagging functionality streamlines the management of high-volume events and enables workflow of incident response.
As organizations move to the cloud, they take on shared risk with their cloud partner. For those using Amazon Web Services, Trend Micro Deep Security as a Service provides the most complete set of recommended security capabilities, delivered in AWS with tight integration to make it fast and easy to realize the full benefits of the cloud. Learn more
This dedicated team of security experts rapidly develops and delivers security updates that address newly discovered vulnerabilities. The Security Center manages the customer portal used for accessing these security updates and information. Security updates can be delivered to Deep Security Manager automatically, or on-demand for deployment to thousands of servers within minutes.
Industry: Healthcare
Location: Boston, Massachusetts
# Employees: 350 primary care physicians, 1150 specialists
http://www.bidpo.orgCHALLENGE: Secure new SaaS electronic healthcare services for physician network
RESULTS: Increased security and reduced costs for virtualized cloud applications
Industry: Municipal Government
Location: Oulu, Finland
# Employees: 10,000
http://www.ouluntietotekniikka.fiCHALLENGE: Merge infrastructures of four surrounding cities, while reducing costs and complexity
RESULTS: Protection of virtual desktop infrastructure (VDI) that is easy to deploy, administer, and scale
Jussi Tarkkonen talks about merging multiple municipal security infrastructures. [05:13 min]
Industry: Healthcare
Location: Columbus, Ohio
# Employees: 12,000+
CHALLENGE: : Introduce virtual desktop infrastructure (VDI) without compromising protection of patient data
SOLUTION: Deploy Deep Security, extending agentless security to VDI endpoints
RESULTS: Protection automatically extended to virtual endpoints, plus improved performance
CHALLENGE: : Secure virtualized data center with a software solution that could use VMware vShield APIs and that would have minimal impact on server performance.
RESULTS: The investment paid off. After ICDAS examined total investment and maintenance costs, it found Deep Security to be 40% more economical.
Industry: State Government/Healthcare
Location: Columbus, Ohio
# Employees: 3,200
http://odmrdd.state.oh.usCHALLENGE: Minimize user complaints by providing thin-client users with a desktop experience equivalent to traditional PCs.
RESULTS: Transparent security, with no user complaintsdue to slowing of applications
Industry: Finance
Location: Levent-Istanbul Besiktas, Turkey
# Employees: 17,000
http://www.yapikredi.com.trCHALLENGE: Secure virtual environment, maintain compliance, and maximize consolidation
RESULTS: Excellent performance and consolidation with strict security controls for compliance
CHALLENGE: Block continually changing threats that could compromise customer data
RESULTS: Improved protection, enhanced visibility, and minimized performance impact
Industry: Retail Food
Location: Greenville, South Carolina
# Employees: 100,000, 800 stores, 35,000 systems
http://www.ahold.comCHALLENGE: Maximize point-of-sale protection without impacting critical sales transactions
RESULTS: Data security and integrity, cost savings, and PCI compliance
*Support for Windows 8, 2012 available in 2013
Red Hat 4, 5, 6 (32-bit and 64-bit)
SuSE 10, 11
Ubuntu 10.04, 12.04** LTS (64-bit),
CentOS 5, 6 (32-bit and 64-bit)
Amazon Linux (see the latest Agent release notes for supported versions).
Oracle Linux 5**, 6** (32-bit and 64 bit, Redhat kernel only)
*Anti-Malware support for Linux for on-demand scan. RHEL 5, 6 (64 bit only), SLEX 10, 11 (32 and 64 bit)
**Support for Ubuntu 12.04 LTS, Oracle Linux available in 2013
*Only Integrity Monitoring and Log Inspection modules are available on these UNIX-based platforms.
* Protection via Deep Security Agent only
** Agent-less protection on firewall and DPI only