McAfee Integrity Control
McAfee Integrity Control blocks unauthorized applications and change on fixed-function, point-of-service infrastructures, including ATMs, point-of-sale (POS) systems, and kiosks. Combining industry-leading whitelisting and change control technology, Integrity Control prevents out-of-policy changes while still allowing updates from authorized sources. It boosts control over change policies and effectively secures devices, using a centrally-managed and efficient solution.
Comprehensive change policy enforcement — Get continuous change detection capabilities, while proactively preventing unauthorized, out-of-policy change attempts. Integrity Control links protection directly to policy and verifies changes against the source, time window, or approved change ticket. Changes outside of policy are blocked, greatly reducing change-related outages and compliance violations.
Viable security for fixed-function devices — Integrity Control uniquely extends a layer of protection to devices with a fixed CPU or memory, including POS terminals, ATMs, and medical imaging systems that perform critical functions and often store sensitive data. A low-overhead footprint does not impact system performance, and it is equally effective in standalone mode, without network access.
Centralized deployment and management — Get seamless integration with McAfee ePolicy Orchestrator (McAfee ePO) software to ease deployment, management, and reporting. The single McAfee ePO console lowers the cost of ownership by consolidating security and compliance management, eliminating the need to manage data in two separate systems. Streamlined remote deployment via the McAfee ePO platform easily manages and reports on large enterprise rollouts, all from a central location.
An efficient, transparent solution — Integrity Control runs transparently on fixed-function systems, enables the entire point-of-service infrastructure to be monitored without impact, and can be set up quickly. This flexible, affordable, and secure solution dynamically manages whitelists and supports multiple configurations for different business needs and devices.
Features & Benefits
Block unauthorized applications and change attempts
Ensure that only approved software runs on the point-of-service infrastructure, without imposing additional operational overhead. McAfee Integrity Control easily blocks unauthorized, vulnerable, or malicious applications that can compromise the security of critical systems.
Link change protection to policy
Verify changes against the source, time window, or approved change ticket. Changes attempted outside of policy are blocked, and the attempt is logged and sent as an alert to administrators, reducing outages and compliance violations.
Monitor file integrity and file changes
Check files and directories for changes to content, permissions, or both. Integrity Control provides continuous file integrity monitoring, essential for testing and verifying the security of an environment and meeting critical compliance requirements, including PCI DSS. It delivers comprehensive information about every change, including the user and the program used to make the change.
Gain increased control over fixed-function systems
Extend a layer of protection to devices with a fixed CPU or memory, including POS terminals, ATMs, and medical imaging systems, with a solution that does not impact system performance.
Meet and sustain PCI DSS compliance
Count on continuous information about change events across the point-of-service infrastructure to comply with PCI DSS requirements. Integrity Control details which server or servers originated the change, when it was made, which user made the change, how the change was made, what content inside the file changed, and whether the change was approved.
Get dynamic whitelisting via a trusted source
Eliminate the need for IT administrators to manually maintain lists of approved applications. Instead, IT departments can adopt a flexible approach, relying on a repository of trusted applications that run on endpoints. This prevents execution of all unauthorized software scripts and dynamic link libraries (DLLs), and further defends against memory exploits.
Centralize deployment and management through McAfee ePO
Get seamless integration with McAfee ePolicy Orchestrator (McAfee ePO) software to ease deployment, management, and reporting. The single McAfee ePO console consolidates security and compliance management, lowering TCO.