Page 88 - CSEW
P. 88
AMP & CTA: What’s the Difference?
Complementing Each Other
AMP - Advanced Malware protection
Based on files
Works from inside-out
Focuses on the initial breach
CTA - Cognitive Threat Analytics
Analyzes web request behaviour
Works from outside-in
Sees the bigger picture and detects sophisticated attacks such as
established Command & Control channels
© 2016 Engage ESM All Rights Reserved 97