Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - The Secret To Endpoint Threat Protection That’s Transparent To Users
Articles

The Secret To Endpoint Threat Protection That’s Transparent To Users

ISBuzz TeamBy ISBuzz TeamJune 24, 2016Updated:July 4, 20244 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

With new waves of ransomware attacks striking headlines everywhere, it’s truly time to take a proactive stance against malware. But, drawing on experience, most IT professionals cringe at the impact endpoint threat protection may have on user productivity.

Users simply want something that’s more transparent. In fact, according to a recent study performed by Dimensional Research: The Value of a Great Desktop Experience, as many as 62% of business users identified security that is not intrusive as an important factor to a great desktop user experience. Even so, as many as 35% of IT professionals still limit their end users’ ability to personalize their desktops based on corporate security policies. The result is increasing frustration among end users who continue to believe that security is negatively impacting experience.

The most common culprit of end users’ negative opinion of security technology is antivirus software. While AV provides a needed layer of endpoint protection, it doesn’t adequately tackle the challenge of ransomware and it can require tedious manual intervention by end users, causing them grief and frustration. In fact, the same situation applies to any “next-generation” endpoint security agent focused solely on solving security issues with total disregard for IT manageability and user experience.

There is a more pragmatic approach to endpoint security, one that puts users first while still giving IT the iron-clad risk protection the organization needs to rest easy. How? By employing a strategic approach to application management, including the use of application control and whitelisting based on “Trusted Ownership” and the practice of least privilege management.

Consider the fact that the most common malware attacks come in the form of executable files attached to emails or hidden inside documents or internet links. If not detected by an endpoint’s antivirus solution or protected by effective application management, these executables can wreak havoc on an enterprise with the power and speed of a wild fire.

Application Whitelisting Based on “Trusted Ownership”

Whitelisting, the practice of setting policies where only “approved” applications can run on an endpoint, provides effective protection against malware. The challenge is that implementing a whitelisting strategy can be complex and cumbersome. In many cases it must be configured with thousands of known-good files simply to enable users to work. Then, as the operating system and applications are patched and upgraded, the whitelisted credentials can change creating additional complexity that must be managed.

Technologies that enable whitelisting without having to manage individual files can make this process much easier by allowing or denying execution based on file ownership, file vendor or origin. Called “trusted ownership,” this technology can enable whitelisting based on known-good content without having to specify each individual file. Using this trusted ownership approach can easily enable a whitelisting strategy without the risk of needing to manage changes every time upgrades are performed.

The Practice of Least Privilege Access

Adding to the success of an application whitelisting approach based on trusted ownership, is effective privilege management. By precisely controlling user and application privileges, each user and application are only given access to the privileges that are essential to that individual’s work. This removes the need to provide admin-level access to all users or all applications, which creates significant security risks. Corporate security policies can be enforced based on user or based on contextual factors such as location, device name, IP address, network settings or time of day. This approach also eliminates risk when users work outside the corporate firewall.

Through the use of comprehensive privilege management and application control, users benefit from the productivity they need while safeguarding corporate desktops from both internal and external threats. By using complete privilege management and application control, enterprises can further increase their security policies by:

  • Setting application limits and time restrictions
  • Setting application network access control
  • Enabling URL redirection and granular control over web-based application installation
  • Enforcing extensive anti-tampering, change control and auditing capabilities
  • Supporting user self-service capabilities

… all without a negative impact on user productivity or workforce performance.

Endpoint security is a critical piece in today’s overall corporate governance and compliance strategies. For true risk avoidance, without user frustration, consider implementing sophisticated application management that includes whitelisting based on “Trusted Ownership” and the ability to dynamically control user privileges with the practice of least privilege. It will not only provide substantial endpoint security gains, and significant reductions in both IT support and software licensing, it will also result in considerably higher end user satisfaction.

[su_box title=”About William Myrhang” style=”noise” box_color=”#336588″][short_info id=’74153′ desc=”true” all=”false”][/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Foxconn confirms cyberattack following Nitrogen ransomware claims

May 14, 20263 Mins Read

Lazarus Group Turns to Medusa Ransomware in Escalating Global Extortion Campaign

February 26, 20263 Mins Read

The Cyberattack That Exposed the Fragility of Digital Heritage

February 11, 20268 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}