As a Secure Internet Gateway, Cisco Umbrella provides the first line of defense against threats on the internet wherever users go. Umbrella delivers complete visibility into internet activity across all locations, devices, and users, and blocks threats before they ever reach your network or endpoints. As a cloud-delivered, open platform, Umbrella integrates easily with your existing security stack and delivers live threat intelligence about current and emerging threats. By analyzing and learning from internet activity patterns, Umbrella automatically uncovers attacker infrastructure staged for attacks, and proactively blocks requests to malicious destinations before a connection is even established — without adding any latency for users. With Umbrella, you can stop phishing and malware infections earlier, identify already infected devices faster, and prevent data exfiltration.
In the case of Umbrella for MSSP the product remains the same, but targeted at MSSPs.
- Mitigate remediation costs and breach damage: because Cisco Umbrella is the first line of defense, security teams will have fewer malware infections to remediate and threats will be stopped before they cause damage.
- Reduce the time to detect and contain threats: Cisco Umbrella contains command & control callbacks over any port or protocol and provides real-time reports on that activity.
- Increase visibility into internet activity across all locations and users: Cisco Umbrella provides crucial visibility for incident response and also gives you confidence that you’re seeing everything.
- Identify cloud apps used across the business: Cisco Umbrella provides visibility into sanctioned and unsanctioned cloud services in use across the enterprise, so you can uncover new services being used, see who is using them, and identify potential risk.