skip to Main Content
Replace your anti-virus (AV) with smart endpoint security - Cylance

Cylance Endpoint Detection and Response (EDR) has redefined the enterprise endpoint standard of security to solve the malware problem once and for all. By innovating cyber security technology and machine learning they have created a solution for malware detection by proactively preventing, rather than reactively detecting, the execution of advanced persistent threats and malware.

Despite the cyber security industry continually evolving, malware detection has remained the same for decades. The approach to cyber security has been linear whilst attackers have innovated and attacks have grown exponentially, leaving organisations falling behind. Instead of using traditional AV developed on ageing technologies, using signatures and post-attack behaviour analysis to protect computers, a new approach is required.

View Cyberseer's Threat Findings
Cylance Endpoint Detection and Response - CylancePROTECT Advanced Threat Protection

CylancePROTECT is the world’s first next-generation antivirus built on artificial intelligence and machine learning. It redefines what antivirus (AV) can and should do for an organisation by detecting and preventing malware from executing on endpoints in real time.

CylancePROTECT is an advanced threat prevention product that sits on each endpoint (desktop, laptop, mobile devices, servicer or virtual machine) within an organisation. At the core of Cylance’s malware identification capability is a revolutionary machine learning research platform that harnesses the power of algorithmic science and artificial intelligence. It analyses and classifies hundreds of thousands of characteristics per file, breaking them down to an atomic level to discern whether an object is good or bad and alerting in real time. If deemed a threat, localhost policy acts to alert, notify and/or quarantine the object. As well as detecting and preventing malware, scripted or other events that may signal an attack can be stopped from executing on your endpoint by using tested mathematical models on the host, independent of a cloud or needing signature updates.

What Are The Key Components of Cylance Endpoint Detection and Response?

CylancePROTECT is the world’s first next-generation antivirus built on artificial intelligence and machine learning. It redefines what antivirus (AV) can and should do for an organisation by detecting and preventing malware from executing on endpoints in real time.

Cyberseer key components of Cylance malware execution
Cylance Endpoint Detection & Response (OPTICS)

Combine CylancePROTECT with CylanceOPTICS to gain full clarity into an attack that has been attempted, including insight into what malware is in an environment, where it came from, who put it there, when it first showed up, and how it got there. The complete endpoint detection and response security solution with prevention, detection, and response capabilities.

Cylance solutions are built from the ground up to easily scale and can deliver the following functionality:

  • AI-driven malware prevention
  • Real-time memory protection
  • Integrated script and application control
  • Device usage policy enforcement
  • Consistent endpoint visibility
  • Root cause analysis
  • Threat hunting capabilities
  • Integrated incident response

Cylance Endpoint Detection and Response technologies are deployed on over ten million endpoints and protect hundreds of enterprise clients worldwide. They enable Analysts to reveal where those hard-to-find threats have come from and provide all users with the same level of security.

Benefits

  • Access AI-powered malware prevention.
  • Consistent endpoint visibility– Each device can be managed individually and details can be viewed easily using a visual timeline.
  • Threat hunting capabilities and predictive analysis.
  • Dynamic alerting tool, with root cause analysis capabilities for the Analyst and SOC Engineer.
  • Fast incident response and malware execution control – take immediate action quarantining or isolating compromised endpoints from the network.
  • Control tools used in lateral movement.
  • Fast to roll out and configure.
  • Free of constant signature updates.
  • A lightweight agent uses a fraction of system resource required compared to traditional ESS.
  • A hassle-free solution that updates itself.
  • Built to scale.

Common security use cases that CylancePROTECT and CylanceOPTICS help to address and resolve:

  • Prevent endpoints from executing malicious executables.
  • Prevent endpoints from executing unauthorised PowerShell and Active Scripts.
  • Protect memory from being used by file-less malware.
  • Prevent endpoints from executing malicious email attachments.
  • Prevent endpoints from accessing devices identified as malicious.
  • Incident response and containment.
Search