Take Me to Cloud Security
Follow us on Twitter  Follow us on Facebook

Share this page:


Vulnerability Monitoring

Vulnerability management is an essential component to any comprehensive security policy–and is a mandatory control in most compliance standards. While vulnerability monitoring is motherhood and apple pie in traditional data centers, these same vulnerability scanners are obsolete in virtualized infrastructure, as they are out-of-the-box incompatible with virtualized hosts. They simply cannot see the virtual network. As a result, IT security personnel have been challenged in keeping ongoing vulnerability management alive and well in their virtualized infrastructure.

Catbird vSecurity delivers fully-automated and comprehensive vulnerability management to virtualized data centers. vSecurity is the industry’s only security product to incorporate a CVE-compliant vulnerability management control. Catbird's elegant solution in this regard has been recognized with three consecutive VMworld Best of Show Finalist Awards.

Catbird is also the only CVE Compliant Hybrid Vulnerability and IDS/IPS solution in the market today. Catbird's vulnerability scanner delivers a full port and vulnerability scan, integrated with hypervisor APIs, to ensure that all VM vulnerabilities are managed automatically and continuously, 24x7. Where Catbird detects a compromised asset, vSecurity will automatically quarantine that virtual machine until administrators authorize it to rejoin the network of approved members.

Catbird vulnerability monitoring for virtual infrastructure is fully integrated into the Catbird vSecurity suite:

  • Catbird TrustZones™ correlates vulnerability information with virtual machine asset groups, facilitating security management.
  • Catbird vCompliance™ utilizes vulnerability information to provide automated workflow and reporting against standards such as FISMA, DIACAP, GLBA, PCI and HIPPA.
  • Catbird VMShield® protects each virtual machine with policy based security and monitoring and enforcement with optional automatic quarantine capability. If a virtual machine guest trips a vulnerability hole, that machine can be automatically taken off the network until it is remediated.

vsecurity vulscan

Click to enlarge image

Catbird Vulnerability Management in Detail:

  • Audit: Catbird vulnerability monitoring goes beyond traditional scheduled vulnerability assessments by automatically and continuously monitoring a virtual data center all year long. This is effectively an audit of your physical and virtual security installations 365 days a year.
  • Continuous Compliance: Vulnerability management is an integral part of Catbird's compliance reporting system, reporting on open ports and holes as part of an overall compliance assessment, quarantining noncompliant hosts. Catbird's vulnerability data feeds are continuously updated, ensuring ongoing real-time protection against the latest threats and advisories.
  • Incident Response: vSecurity automatically takes immediate action to quarantine or block network traffic while also logging asset status and actions into an archive, invaluable for later reviews with management or industry audits.
  • Hybrid Vulnerability and IDS/IPS: Real protection requires constant multi-function surveillance. Catbird is the only CVE compliant solution in the industry that continually watches your network while also monitoring the vulnerability advisories. If your network changes, you can take action. If a new vulnerability is released, you can respond.
  • Performance-enhancing implementation: Catbird's solution is intelligent, establishing an initial baseline configuration and sending instant notifications if there are any subsequent deviations from this baseline.