Educause Security Discussion mailing list archives

Re: Next Gen Antivirus / Endpoint Protection Solutions


From: "Pifer, Michael" <pifer () GRINNELL EDU>
Date: Tue, 16 Oct 2018 21:13:14 +0000

We have been running TRAPS now for several years and generally have been pleased with it.

We are still on premise and have not moved to their new cloud offering at this point.   The on premise lacks true 
remediation (at this point at least) past quarantine of files that the cloud version either has or will be getting in 
the near future from what I recall reading.   That said, remediation has not been a major issue since we have been 
running it as it has been very effective at stopping the majority of things.

We are currently running it on our PCs and most Macs) and are looking at deploying the Linux client now that it is out 
as well.

Michael Pifer
Information Security Technical Specialist

Grinnell College
Information Technology Services
The Forum
1119 6th Avenue
Grinnell IA  50112

Office: 641-269-9990
Technology Services Desk: 641-269-4901
grinnell.edu<https://www.grinnell.edu/>

Remember: Use caution when clicking on links in all emails. If you have any doubt about the email, please contact the 
Technology Services Desk before opening the link.

​My office may not be accessible to individuals using wheelchairs or who are unable to climb multiple steps. If you 
would like to meet in person, I am happy to schedule an appointment in an alternative location that is more accessible.

This email may contain confidential information belonging to Grinnell College. Any unauthorized or improper disclosure, 
copying, distribution, or use of the contents of this email and attached document(s) is prohibited. The information 
contained in this email and attached document(s) is intended only for the personal and confidential use of the intended 
recipient(s). If you have received this communication in error, please notify pifer () grinnell edu immediately and 
delete the original email, any copies of its content, and any attachment(s).



From: The EDUCAUSE Security Community Group Listserv <SECURITY () LISTSERV EDUCAUSE EDU> On Behalf Of Erick.Matherly
Sent: Tuesday, October 16, 2018 10:44 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Next Gen Antivirus / Endpoint Protection Solutions

Hello!

We are looking at some of the Next Gen Antivirus solutions. I know there are quite a few players in the game, but I’m 
currently interested in CrowdStrike, SentinelOne, Sophos, Cylance, Carbon Black, and Palo Alto Traps.

I would love to hear about what others schools are using and how the experience has been. I know some players have EDR 
(Endpoint Detection and Response) built in or as an additional component. I’m strictly looking at the Antivirus at the 
moment, but do like the idea of being able to add EDR (or additional features) down the road if it is not built into 
the core product.

We are currently using Windows Defender Antivirus.

Thanks for the input!


[cid:image001.jpg@01D4656B.22B48930]<https://urldefense.proofpoint.com/v2/url?u=http-3A__www.trnty.edu_&d=DwMFAg&c=HUrdOLg_tCr0UMeDjWLBOM9lLDRpsndbROGxEKQRFzk&r=rvq4VCq_0dM5UyUM8jzHQYkZF5N8gDyQ-3lEBFCs5Vk&m=WekQqDmRf-0vLbc8MwPsBdkKWti13sZO7OOGsAWqbPM&s=4k-aUTLtCHvdPklmAEzHnU7oT-7FNjmu0fpifYpQnls&e=>

Erick Matherly
Network Administrator | Trinity Christian College
6601 West College Drive | Palos Heights, Illinois 60463

[cid:image002.png@01D4656B.22B48930]<https://urldefense.proofpoint.com/v2/url?u=https-3A__www.facebook.com_trinitychristiancollege&d=DwMFAg&c=HUrdOLg_tCr0UMeDjWLBOM9lLDRpsndbROGxEKQRFzk&r=rvq4VCq_0dM5UyUM8jzHQYkZF5N8gDyQ-3lEBFCs5Vk&m=WekQqDmRf-0vLbc8MwPsBdkKWti13sZO7OOGsAWqbPM&s=h9476WJ33l_tJRxK_MOXV-fxBUQOZ5KkRa2tEfl0z8s&e=>[cid:image003.png@01D4656B.22B48930]<https://urldefense.proofpoint.com/v2/url?u=https-3A__twitter.com_trinitytroll&d=DwMFAg&c=HUrdOLg_tCr0UMeDjWLBOM9lLDRpsndbROGxEKQRFzk&r=rvq4VCq_0dM5UyUM8jzHQYkZF5N8gDyQ-3lEBFCs5Vk&m=WekQqDmRf-0vLbc8MwPsBdkKWti13sZO7OOGsAWqbPM&s=yQLhaacdZcNwtHkjcIZ5KjgZqHGt59a1URw9EOk5rdc&e=>[cid:image004.png@01D4656B.22B48930]<https://urldefense.proofpoint.com/v2/url?u=https-3A__www.instagram.com_trinitytrolls_&d=DwMFAg&c=HUrdOLg_tCr0UMeDjWLBOM9lLDRpsndbROGxEKQRFzk&r=rvq4VCq_0dM5UyUM8jzHQYkZF5N8gDyQ-3lEBFCs5Vk&m=WekQqDmRf-0vLbc8MwPsBdkKWti13sZO7OOGsAWqbPM&s=m13uM8y6cp8cd90QI0H__dKQcryO8u8Nj0Lyal6cxfo&e=>[cid:image005.png@01D4656B.22B48930]<https://urldefense.proofpoint.com/v2/url?u=https-3A__www.linkedin.com_company_trinity-2Dchristian-2Dcollege&d=DwMFAg&c=HUrdOLg_tCr0UMeDjWLBOM9lLDRpsndbROGxEKQRFzk&r=rvq4VCq_0dM5UyUM8jzHQYkZF5N8gDyQ-3lEBFCs5Vk&m=WekQqDmRf-0vLbc8MwPsBdkKWti13sZO7OOGsAWqbPM&s=qkh0_CCse9KcItIPVLFlT0EWX7gMxdy2IdgLHsOPfIc&e=>

708.239.4818  | Erick.Matherly () trnty edu<mailto:Erick.Matherly () trnty edu>




Current thread: