McAfee Network User Behavior Analysis
(Security)

Find out who's doing what and from where on your
network
Gain a continuous, real-time view of what business users are
doing across your complex network environment. McAfee Network User
Behavior Analysis (UBA) (Securify) leverages your existing network
data and the identity and role information in your existing
directories to deliver cost-effective visibility of user access and
behavior across networks and systems.
Benefits:
- Minimize IT and business risk
Know what users are doing on your network; compare against security
and business policies to minimize security risks and legal
liability; McAfee Network UBA is proven to reduce costs, effort,
and risk associated with network planning and changes
- Gain unparalleled visibility for
compliance
Streamline audit preparation with McAfee Network UBA; it has been
successfully used to quickly pinpoint and solve PCI- and
FISMA-related access and behavior gaps that other solutions may
miss
- Deploy cost-effective, scalable
monitoring
Enable out-of-band monitoring with no network reconfiguration;
McAfee Network UBA monitors require no agents, no application
integration, and no recoding; for identity-based monitoring,
Network UBA leverages existing directory information
- Enjoy enterprise scalability
Rest assured that McAfee Network UBA can scale to meet your
monitoring needs; it has been deployed and scaled across more than
3 million users in some of the most demanding network environments
in the world
Features:
- Identity capabilities
Track users' activity from the moment they access the network;
real-time integration with your directory means you always know the
user, their role, and the policy context; changes made in the
directory automatically filter down to Network UBA monitors
- Out-of-band network monitoring and
analysis
Enable network monitoring and real-time analysis via port mirroring
or passive network taps for deep packet inspection; alternatively,
you can monitor network traffic via flow data from Cisco Netflow,
Juniper J-Flow, and others
- Intuitive views of network traffic
Gain two at-a-glance views of network traffic:
- Pure "Discovery" mode provides a dynamic baseline to help
protect against false positives
- Controls" mode automatically verifies traffic against user,
group, and role-based policies, and alerts on violation
- Integration with existing infrastructure
Leverage existing technologies; McAfee Network UBA integrates with
Active Directory and LDAP-based directories, non-Windows identity
clients like Centrify, network routers and switches, and flow-based
data from Cisco, Juniper, and others