Page 88 - CSEW
P. 88

AMP & CTA: What’s the Difference?









       Complementing Each Other


       AMP - Advanced Malware protection


                  Based on files


                  Works from inside-out

                  Focuses on the initial breach


       CTA - Cognitive Threat Analytics


                  Analyzes web request behaviour

                  Works from outside-in


                  Sees the bigger picture and detects sophisticated attacks such as

                   established Command & Control channels


      © 2016 Engage ESM All Rights Reserved                                                                                             97
   83   84   85   86   87   88   89   90   91   92   93