BlackBerry Cylance ThreatZERO
Delivering Provable Prevention
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Click here to jump to more pricing!
Please Note: All Prices are Inclusive of GST
Overview:
Proving Prevention Is Possible. Cylance ThreatZERO experts blend technological expertise and personalized, white glove service to optimize Cylance security solutions. Get the most out of your investment while creating a protected environment that runs smoothly, accountably and effectively.
Ensure Maximum Value
While implementing new security solutions can be exciting for a company, optimizing them for specific environments can put a stress on already limited IT resources. The need to protect, identify, and act on progressive threats can be challenging for even the most experienced security teams. Cylance Consulting’s proven methodologies ensure maximum value and security are achieved as quickly as possible with little to no disruption to systems or vital processes.
ThreatZERO experts provide a refreshing mix of technological expertise and personalized white glove service to optimize CylancePROTECT and CylanceOPTICS and move environments into prevention while providing measurable results of progress throughout the process.
Cylance Consulting offers:
- ThreatZERO (Foundational) - Complete implementation and operationalization of CylancePROTECT and CylanceOPTICS
- Managed Prevention - Foundational ThreatZERO coupled with subscription-based monthly or quarterly maintenance to ensure environments stay in prevention
- ThreatZERO + Compromise Assessment - Foundational ThreatZERO coupled with a Compromise Assessment to reveal previous or potential indicators of compromise
- ThreatZERO Resident Expert - Dedicated, on-site staff augmentation resources help deploy, manage, and operationalize CylancePROTECT and CylanceOPTICS
- ThreatZERO Training - Best practices solution training for product administrators and users to optimize security, maintenance, and return on investment
Reasons to Choose ThreatZERO
Accelerate Your Path to Prevention
Cylance ThreatZERO experts help rapidly identify and handle threats - to move your environment to an active policy state. Measurable prevention is demonstrated throughout the process, that's just one aspect of ThreatZERO.
Expert Solution Tuning
Get expert guidance for handling threats and alerts and setting policies unique to your environment - for better product efficacy and faster ROI. Attain secure policy and prevention mode with little impact on your systems and staffing.
Reduce the Learning Curve
ThreatZERO guidance helps shorten your IT team's learning curve, enabling them to optimize CylancePROTECT and CylanceOPTICS for your environment and achieve prevention status quicker than with any other solution.
Separate Signal from Noise
Achieving prevention status removes the noise of commodity malware/adware - limiting alerts to more serious or critical issues. By reducing staff requirements associated with traditional EDR approaches, you free them up to tackle other routine assignments.
Maintain Prevention Status
Quarterly maintenance and remediation helps your organization remain in a state of prevention even as your IT environment changes. ThreatZERO experts help quickly implement new product feature/function releases, deliver and interpret metrics and reports.
Simplified EDR
With CylanceOPTICS' InstaQuery and Focus Views, you gain visibility and track TTPs and interesting artifacts - even without having a protection event. The Context Analysis Engine allows you to take action on one endpoint, a group of systems, or your entire environment.
Benefits:
- Accelerated pathway to prevention from cyber attacks
- Measurable prevention is demonstrated throughout the process
- Expert solution tuning for CylancePROTECT and CylanceOPTICS
- Reduced overhead through expert guidance and knowledge transfer to staff
- Separates the signal from the noise of commodity malware and adware
- Maintains prevention status through quarterly maintenance and remediation
- Advanced EDR tuning to provide visibility into TTPs and interesting artifacts
Service Components:
Service Options To Meet Your Needs
ThreatZERO (Foundational)
Cylance experts get you started with complete implementation and operationalization of Cylance solutions.
ThreatZERO + Assurance
Assists existing ThreatZERO clients in re-establishing their prevention status and maintaining that status moving forward through monthly/quarterly checks.
Managed Prevention
Choose a subscription-based service to achieve and confidently maintain prevention for the lifetime of your license.
ThreatZERO Resident Expert
Dedicated, on-site staff augmentation resources help deploy, manage, and operationalize CylancePROTECT and CylanceOPTICS.
Map Our Service Benefits to Your Requirements
Service Components | ThreatZERO (Foundational) | ThreatZERO Assurance | Managed Prevention | ThreatZero Expert |
---|---|---|---|---|
Legacy AV Rip and Replace | ||||
Full Auto-Quarantine | ||||
Expert Handing of all PUPS and Malware | ||||
Memory Protection Blocking Exclusion Handling | ||||
Script Control / Macro Protection Handling | ||||
Best Practices Training | ||||
Remediation Based on Health Check Results | ||||
Recurring Solution Health and Status Metrics | ||||
Ongoing Care and Remediation of Issues (New ThreatZERO customers) | ||||
Dedicated, On-site Engineer | ||||
Incident Containment/Malware Analysis | Optional | Optional | Optional | Optional |
ThreatZERO (Foundational):
Delivering Provable Prevention
While implementing new security solutions can be exciting for a company, optimizing them for specific environments can put a stress on already limited IT resources. The need to protect, identify, and act on progressive threats can be challenging for even the most experienced security teams. Cylance Consulting’s proven methodologies ensure maximum value and security are achieved as quickly as possible with little to no disruption to systems or vital processes.
That’s where ThreatZERO Services can help. Cylance Consulting experts provide a refreshing mix of technological expertise and personalized white glove service to optimize CylancePROTECT and CylanceOPTICS™ and move environments into prevention while providing measurable results of progress throughout the process.
Benefits:
Complete Install and Configuration
- Installation and configuration is facilitated by experts
- Internal resources are freed up to focus on other business priorities
Internal Resource Training
- Staff is trained to maintain prevention status and respond to threats using best practices
Identification and Remediation of PUPs and Malware
- Malware is quarantined
- Recommendations for managing potentially unwanted programs (PUPs) are provided
- Alerts are classified
The Best Return on Investment
- CylancePROTECT and CylanceOPTICS are optimized, increasing their efficacy in the environment
- ROI is increased and obtained faster by relying on experts to operationalize
- Prevention status is achieved quicker than with any other solution
Service Overview
Facilitated through a dedicated Engagement Manager, ThreatZERO Services provide a collaborative environment to assist clients in optimizing the installation, reviewing best practices, delivering training, supplementing internal resources, and receiving expert guidance in mitigating any risks that are identified. The phases of a ThreatZERO Services engagement include:
CylancePROTECT
Kickoff
- Overview of deployment schedule
- Discuss installation options/strategy
- Console training and setup
- Provision and configure disconnected options
- Review of best practices
Phase 1
- Consultants quarantine malware as alerts are generated
- Status meetings
Phase 2
- Consultants and the Threat Analysis team continue monitoring the console
- Status meetings
- Completion of agent scanning
- Completion of agent installation
Phase 3
- Continue monitoring the console
- All malware is quarantined
- All alerts are classified
- PUPs are reviewed
- Devices are moved to an autoquarantine and memory alert policy
- Memory alerts are completed
Phase 4
- Continue monitoring the console
- Memory alerts are reviewed
- Devices are moved to a memory block/terminate policy
At the conclusion of the engagement, clients are brought to a state of zero active threats and can move into a state of prevention.
CylanceOPTICS
- Console setup
- Build InstaQueries
- Configure rules and actions utilizing the Context Analysis Engine
- General best practice and interface navigation
ThreatZERO Add-ons
ThreatZERO Resident Expert
This low-cost solution provides a dedicated, on-site administrator to support unique security requirements and help shut down critical incidents in less time.
Managed Prevention
An ongoing care strategy that assesses and remediates issues, and ensures maximum security and continued return on investment.
ThreatZERO Assurance
Assists existing ThreatZERO clients in re-establishing their prevention status and maintaining that status moving forward through monthly/quarterly checks.
ThreatZERO Training Services
Learn to maintain ThreatZERO status and respond to threats in the environment utilizing best practices.
ThreatZERO + Compromise Assessment:
Discover Critical Unknowns Lurking in Systems
Many organizations assessing their security posture may be unaware of the overall state of their environment, that they have been breached, or that credentials are being misused. Cylance Consulting can help these organizations conclusively determine if their network has been compromised.
ThreatZERO + Compromise Assessment was designed to help organizations discover critical unknowns that may be lurking in systems, waiting to be the source of a future compromise. Using artificial intelligence with proven methodologies, Cylance Consulting experts quickly determine if an environment has been the victim of a security breach and if sensitive data has been exfiltrated from your networks.
Benefits
- Conclusively determine if there has been an existing, undetected compromise
- Learn if user credentials have been stolen or misused
- Identify any potentially unwanted programs that may have been used maliciously on your network
- Quickly identify and remediate any issues identified with actionable data for improvement
- Move networks into a state of prevention
Service Overview
With ThreatZERO + Compromise Assessment, organizations will receive:
- AV Rip and Replace
- Operationalization of and CylancePROTECT and CylanceOPTICS
- Delivery and full review of the ThreatZERO HealthCheck Report
- Policy review showcasing best practices, suggested modifications, and further recommendations to establish prevention status
- Full malware status review during which threats are identified
- Full review of potentially unwanted programs (PUPs)
- Full review of memory exploit attempts and exclusions
- Full review of script control events and exclusions
- Thorough review of deployed agent version and update statuses
- Thorough review of new product features and upgrades
Additionally, the Compromise Assessment analyzes and addresses core problems such as:
- Data exfiltration and sabotage
- Command and control activities
- User account anomalies
- Malware and persistence mechanisms
- Network, host, and application configurations
Shortly after beginning the project, clients will be positioned into a preventative posture to prevent future threats and minimize the need to respond to incidents.
How confident are you in knowing whether or not your organization has been compromised? Contact Cylance Consulting or your technology provider about ThreatZERO + Compromise Assessment.
Managed Prevention:
Maintain Your Prevention Status
Cylance believes that every great product should be backed by outstanding technical support. Leveraging ThreatZERO Services with CylancePROTECT brings organizations to a zero-threat level and moves environments into a state of prevention. Unfortunately, as new endpoints or applications are added, new CylancePROTECT features or agent versions are released, or technology refreshes occur, an environment’s prevention status may become degraded.
To ensure environments never fall too far out of prevention, ThreatZERO Maintenance Plans provide an ongoing care strategy that assesses and remediates any issues that arise, providing maximum security and continued return on investment.
Benefits
- Provides awareness of the prevention status of the CylancePROTECT environment
- Address new malware and PUP threats
- Review memory exploit and script control features
- Maintain agent status and versioning
- Understand and enable new features
- Environments remain in a state of prevention
Service Overview
ThreatZERO Maintenance Plans offer:
- Generation, delivery, and full review of the ThreatZERO HealthCheck Report
- Policy review showcasing best practices, suggested modifications, and further recommendations to re-establish prevention status
- Full malware status review during which threats are identified
- Full review of potentially unwanted programs (PUPs)
- Full review of memory exploit attempts and exclusions
- Full review of script control events and exclusions
- Thorough review of deployed agent version and update statuses
- Thorough review of new product features and upgrades
Clients are brought back to a state of zero active threats, and prevention is re-established.
Available Plans
ThreatZERO Maintenance Plans are available for either monthly or quarterly status checks.
- Managed Prevention combines ThreatZERO (Foundational) Services with a monthly/quarterly maintenance subscription (intended for new CylancePROTECT clients)
- ThreatZERO Assurance assists existing ThreatZERO clients in re-establishing their prevention status and maintaining that status moving forward through monthly/quarterly checks
Ensure your environment remains in a state of prevention by maintaining your prevention status. Contact Cylance Consulting or your technology provider for details on ThreatZERO Maintenance Plans.
ThreatZERO Resident Expert:
Dedicated On-site Resources
Companies are driven to reduce costs and improve operational efficiencies through technological innovation. This has translated into a growing number of IT projects on which success or failure can hinge on the ability to complete these projects on time, within budget, and to specification. For customers with complex environments or minimal staff to manage an implementation or lengthy rollout process, the process can be overwhelming for even the most experienced security team.
That’s where ThreatZERO Resident Expert services can help. When customers hire a Resident Expert, they get a long-term, highly-trained staff augmentation resource to deploy, manage, and operationalize CylancePROTECT and CylanceOPTICS™ - helping them get to a state of prevention.
Benefits
- Provides dedicated long-term on-site staff augmentation
- Highly trained expert implements best practices tailored to specific environments
- Frees up internal resources to manage other projects
- Expedites product deployment and ensures immediate ROI
- Mitigates risk immediately and brings environment to a state of prevention
- Long-term solution strategy and maintenance
Service Overview
A ThreatZERO Resident Expert provides:
- On-site consulting
- Project planning and engagement management
- Deployment and configuration
- Legacy AV rip and replace
- Best practices knowledge transfer and training
- Handling of all malware
- Handling of all potentially unwanted programs (PUPs)
- Weekly implementation progression review meetings
- Policy and zone development
- Movement to Auto Quarantine mode
- Memory protection and exclusion development
- Script and application control
- Full operationalization of CylancePROTECT and CylanceOPTICS
- Augmentation of existing security staff to support prevention and threat hunting operations
- Review and implementation of solutions to critical security use cases within the environment
Once the organization has achieved protection status, the Resident Expert will provide the expert staffing needed to maintain a state of prevention through:
- Weekly technical and executive status briefing and trending report delivery
- Solution operational support
- Product optimization and ongoing security recommendations
- Troubleshooting and on-site support
- Management of CylancePROTECT and CylanceOPTICS software upgrades
- Operationalization of new features
Ensure your environment stays in a state of prevention with dedicated on-site resources. Contact Cylance Consulting or your technology provider for details.
Documentation:
Download the BlackBerry Cylance ThreatZERO™ (Foundational) Datasheet (.PDF)
Download the BlackBerry Cylance ThreatZERO™+ Compromise Assessment Datasheet (.PDF)
Download the BlackBerry Cylance ThreatZERO™ Maintenance Plans Datasheet (.PDF)
Download the BlackBerry Cylance ThreatZERO™ Resident Expert Datasheet (.PDF)
Pricing Notes:
- All Prices are Inclusive of GST
- Pricing and product availability subject to change without notice.
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote