Fortinet
Addressing the entire Attack Surface
Compliments AWS security (VPC)
- Security group architecture customize to fit eh network access structure that is defined
- 3rd party firewall compliments
Next Generation Firewall W – Enhanced Security
Application Control
Antivirus
Antivirus
IPS
VPN
Web Filtering
DLP
Threat Research
Enable the advanced threat Protection
NGFW application control ex, AWS management access
FortiSandbox Cloud Function
**One of the biggest challenges organizations face is identifying and responding to zero-day threats, such as new ransomware for which there is currently no anti-virus signature available.
Any technology control that your using to protect cyber assets priority (ex. Antivirus, Malware)
How does threat get into it
Prescription breach is what the next step is detect,analyse, respond, recover, actual systems of breach
FortiSandbox
Sandbox makes your security architecture greater by validating threats in a separate secure environment
A powerful combination of advanced detection, automated mitigation, actionable insight, and flexible deployment,to stop targint attack and subsequent data loss
Objects Behaviour is observed in a simulated environment before it impacts your company.
-Uses a pre-filter with an evasion detection engine and cloud based intelligence
-reduces the number of objects requiring full sandbox analysis, keeping threats out without having to activate and analyze every file.
-Sandbox shares it’s findings with Fortinet Security Fabric provides upgrades to protection
Fortisandbox – designed to scale horizontally by default, based on queued analysis request patterns
Use Case #1 (IOC, indicators of compromise) For intelligence sharing on a hybrid cloud
**every signature and IOC that the fortisandbox generates is automatically propagated across all Fortinet firewall and FortiClient endpoints for immediate blocking or quarantine
**Dynamic Scalability
**Automated FortiSandbox Cloud Scan
Amazon EFS provides simple scalable file storage for EC2 instances
EFS
Cloud Migration
Database migration
On-demand backup
Cloud bursting scenarios
**perform malware analysis in EFS to EFS backup solutions
Fortinet Security Fabric
FortiGate
-Edge/Gateway Fortigate
-Also called a Root Fortigate
-(ISFW) Internal segmentation firewall
FortiAnalyzer
-collect and view logs
FortiWeb
-Application Layer
-Bidirectional protection against malicious sources
-DOS attacks, SQL injections and cross-site scripting
FortiSandbox
-proactive threat detection