Partners

McAfee Network User Behavior Analysis

McAfee Network User Behavior Analysis (Security)

 

   

network_user_behavior_analysis

 

 

Find out who's doing what and from where on your network

 

Gain a continuous, real-time view of what business users are doing across your complex network environment. McAfee Network User Behavior Analysis (UBA) (Securify) leverages your existing network data and the identity and role information in your existing directories to deliver cost-effective visibility of user access and behavior across networks and systems.

 

 Benefits:

  • Minimize IT and business risk
    Know what users are doing on your network; compare against security and business policies to minimize security risks and legal liability; McAfee Network UBA is proven to reduce costs, effort, and risk associated with network planning and changes

  • Gain unparalleled visibility for compliance
    Streamline audit preparation with McAfee Network UBA; it has been successfully used to quickly pinpoint and solve PCI- and FISMA-related access and behavior gaps that other solutions may miss

  • Deploy cost-effective, scalable monitoring
    Enable out-of-band monitoring with no network reconfiguration; McAfee Network UBA monitors require no agents, no application integration, and no recoding; for identity-based monitoring, Network UBA leverages existing directory information

  • Enjoy enterprise scalability
    Rest assured that McAfee Network UBA can scale to meet your monitoring needs; it has been deployed and scaled across more than 3 million users in some of the most demanding network environments in the world

Features:

  • Identity capabilities
    Track users' activity from the moment they access the network; real-time integration with your directory means you always know the user, their role, and the policy context; changes made in the directory automatically filter down to Network UBA monitors

  • Out-of-band network monitoring and analysis
    Enable network monitoring and real-time analysis via port mirroring or passive network taps for deep packet inspection; alternatively, you can monitor network traffic via flow data from Cisco Netflow, Juniper J-Flow, and others

  • Intuitive views of network traffic
    Gain two at-a-glance views of network traffic:
    • Pure "Discovery" mode provides a dynamic baseline to help protect against false positives
    • Controls" mode automatically verifies traffic against user, group, and role-based policies, and alerts on  violation

  • Integration with existing infrastructure
    Leverage existing technologies; McAfee Network UBA integrates with Active Directory and LDAP-based directories, non-Windows identity clients like Centrify, network routers and switches, and flow-based data from Cisco, Juniper, and others