Educause Security Discussion mailing list archives

Advanced Threat Defence


From: Ross Screaton <screatr () ALGONQUINCOLLEGE COM>
Date: Wed, 28 Oct 2015 12:02:14 -0400

Algonquin College is reviewing approaches and technologies to rapidly detect and respond to advanced threats that 
bypass traditional security controls such as anti-virus. Two specific technologies being investigated are network 
sandboxes (e.g. FireEye, Cisco AMP for Networks, Trend Micro Deep Discovery Inspector) and endpoint threat detection 
and response (e.g. Carbon Black, Cisco AMP for Endpoints, Trend Micro Deep Discovery Endpoint Sensor). Does anyone else 
have experience implementing and operating these technologies in the higher ed environment and are willing to discuss 
their experiences with Algonquin?

Ross Screaton, CISSP, CISM, CISA
Consultant – Security Architect
Information Security and Data Privacy
Information Technology Services
Algonquin College
+1 (613) 727-4723 x6065
screatr () algonquincollege com<mailto:ross.screaton () algonquincollege com>


Current thread: