| Retina identifies known security vulnerabilities and assists in prioritising threats for remediation. Featuring fast, accurate, and non-intrusive scanning and the industry's most comprehensive vulnerability database, networks can be secured against the most recent of discovered vulnerabilities. Retina may also be used to enforce security policy and standards-based registry settings through custom policy audits. Most audits may be performed without admin rights, making it easy to use and cost-effective to deploy. |
|
 |
Features
Best Practises Vulnerability Assessment Workflow
Retina guides users through the logical steps of discovering assets, auditing known vulnerabilities and configuration issues. Remediation procedures are suggested and vulnerability status reports provided.
Accurate, Fast and Non-Intrusive Scanning
Retina can scan a Class C network in less than 15 mins. Scanning every machine on the network, identifying all types of O/S, networked devices, 3rd party or custom applications, this speed gives administrators an advantage when dealing with attacks leveraged against known vulnerabilities. Retina will also never impact on applications or services as no exploit code is used when auditing, a completely non-intrusive technology is used.
Comprehensive Database
The vulnerability database is maintained by the eEye Research Team, leveraging years of expertise in vulnerability discovery, eEye has discovered more high-risk vulnerabilities than all other research teams combined this is fact!!. Audits for new vulnerabilities are added within 4-6 hours and an auto-check can ensure Retina is bang up to date at the start of each scan session.
Enterprise-Wide Asset Discovery
Retina discovers all networked devices, including operating systems, applications, databases and wireless access points, including unauthorised services such as malware. Advanced operating system detection combines Windows Registry, NetBIOS, ICMP and NMAP for accurate discovery. Retina also has profiles for nearly 2000 of the most common ports and can scan all 65,536 ports on a network device to identify covert Trojan and Spyware.
Multiplatform Support
Vulnerability assessment for Windows, Linux, Solaris, Cisco IOS, UNIX, routing hardware, OpenVMS, MacOS and any other TCP/IP enabled operating system is supported. This heterogeneous approach allows a comprehensive view of vulnerabilities that require local file or setting checks. Custom audits for Linux and approved Cisco router settings can also be assessed.
Scheduling
Scan schedules can also be configured for regular audits, multiple scans can overlap and the non-instrusive nature of the scan means that scans can occur any time of the day without fear of downtime.
Remediation prioritisation
An intuitive UI allows prioritisation of remediation by categorising vulnerabilities according to risk. Integration into existing remediation procedures is also possible by incorporating into help desk or ticketing systems.
Custom Audits
Compliance to policy, file sharing, allowable ports, P2P and even AV status can be checked with custom audits. These Custom audits can be used to ensure ongoing compliance to a 3rd party regulatory compliance.
|