Skip to content

Instant-On Cloud Security for AWS System Integrators

Build elastic security into Amazon Web Services

AWS Cloud Computing Security

Security in the cloud is a shared responsibility. That means customers and cloud service providers must work together to protect applications and data, meet compliance regulations, and ensure business continuity.

If your customers’ security doesn’t go beyond the native cloud, then they aren’t meeting their shared responsibility.

You can help them increase overall protection and reduce administration by building elastic security into their cloud architectures. We’ll reward you for selling our proven cloud security to your AWS customers.

Building Security into AWS Cloud Architectures

For AWS customers, protecting EC2 instances is a shared responsibility. Customers running workloads on AWS can face additional security and compliance requirements to protect their applications and data. Trend Micro’s Instant-On Cloud Security, based on Trend Micro’s Deep Security platform, is designed specifically to protect cloud computing instances with security optimized for the AWS environment.

For example, Dedalus, one the largest members in the AWS Partner Network in Latin America is helping over 600 customers manage their IT systems in the cloud. See the Dedalus case study to understand how trained and knowledgeable AWS partners can build a practice enabling CIOs and CISOs to secure their instances in the cloud.

With security that enables cloud architectures you can help customers with cloud projects augment what they have in place to protect their data, applications, and operating systems instances running in the cloud. And you can help those that have not supplemented security beyond native cloud capabilities to meet their shared security responsibility as recommended by AWS.

Fast to launch and easy to deploy, our tight integration with AWS makes security elastic, giving your customers the full benefit of the cloud's agility and cost savings. And as a trusted advisor to your customers, you can help them with the following expertise:

  • Expert installation, configuration, and deployment of security controls for AWS that can accelerate projects with a complete set of capabilities for securing applications running in the cloud (shared security responsibility).
  • Customization of security policy for AWS deployments to reduce TCO. Effective security policy definition can help automate server security controls and policy management enabling the right security to activate when instances are launched.
  • Security monitoring and remediation services as part of their ongoing AWS deployment, leveraging a central dashboard with comprehensive controls and reporting to streamline operational processes.

A Complete Set of Security Capabilities for AWS

Already selected by thousands of global customers to protect millions of servers, the Trend Micro™ Deep Security platform delivers a complete set of security capabilities. Administrators can manage security functions easily using an integrated console with a set of customizable policy templates and rules.

  • Anti-Malware with Web Reputation. Get timely protection against the constant malware attacks on your systems and data. Powered by the Trend Micro™ Smart Protection Network™, Deep Security deployments leverage the latest in global threat intelligence.
  • Intrusion Detection and Prevention. Shield unpatched vulnerabilities from attacks with security policies that update automatically to ensure the right protection is applied to the right cloud servers at the right time.
  • Advanced Host Firewall. Create a firewall perimeter around each cloud server to block attacks and limit communication to only the ports and protocols necessary, with the ability to log and audit traffic for compliance reporting at the instance level.
  • Integrity Monitoring. Meet your compliance file and system monitoring requirements while ensuring unauthorized or out-of-policy changes—across files, ports, registries, and more—are detected and reported.
  • Log Inspection. Use the centralized security console to quickly identify important security events buried in multiple log entries and forward suspicious events to a SIEM system or centralized logging server for correlation, reporting and archiving.
  • Application Scanning. Scan applications and platforms continuously. Expert testing and false positive removal guards against the latest vulnerabilities while easing administration.
  • Encryption. Protect data at rest by allowing only authorized access to information in real time (uses FIPS 140-2 approved AES 256 encryption for data protection). Unique key management capabilities enable a highly secure methodology for data destruction, a key compliance requirement.

Designed for Amazon Web Services

Available as software or as a service, Trend Micro™ Deep Security is designed to run on and with Amazon Web Services, providing advanced server security for physical, virtual, and cloud servers, making it fast and easy to secure EC2 and Virtual Private Cloud (VPC) instances. Security is managed through an integrated administrative console that automatically provides a single up-to-date view of customers’ security posture in the AWS environment. Deep Security delivers:

  • Easy Deployment of Host Security—compatible with the leading cloud deployment tools (e.g., Chef, Puppet, RightScale, OpsWorks, Salt, etc.) so that security can be built into current elastic environments.
  • Instant-On Security via AWS AutoSync—new instances are automatically recognized at launch with security initiated, to dramatically reducing the risk of any instances going unprotected
  • Automatic Policy Application via AWS AutoSync—allows specific customizable policy templates to be applied based on AWS instance information, so the right policies are applied to the right servers, automatically.
  • Pre-Approved AWS Application Scanning—allows for continuous application vulnerability scanning without administrative requests for each scan.

Easy Administration

The integrated administrative console makes managing security for deployments on AWS easy by simplifying the security of cloud deployments:

  • Optimized for Management Tools—including Chef, Puppet, RightScale, Opsworks, and Salt to ensure that provisioning and change management fits in with established operational practices.
  • Integrated Customizable Dashboard—enables administrators to see the health of their security environment at a glance.
  • Centralized Alert Function—provides immediate notification of events or activities that may require immediate attention.
  • Deep Security Events and Reports—provides 16 different types of reports including user reports, security module-specific reports, and general reports with custom filtering.
  • Instance Inventory Display—shows those instances associated with the AWS account and their current status.
  • Customizable Policy Templates—allow users to enable and disable security controls on the fly, based on the specific rules they have assigned.

Trend Micro Hybrid Cloud Security

Instant-On Cloud Security for AWS is built on the Deep Security platform. It is part of Trend Micro's Hybrid Cloud Security Solution comprising market-leading products that secure the modern data center and cloud. Advantages include:

  • Comprehensive security capabilities: anti-malware with web reputation, host-based firewall, intrusion prevention, integrity monitoring, log inspection, encryption, AWS-approved vulnerability scanning, and globally trusted SSL certificates
  • Deployment flexibility: available as software or security-as-a-service. Includes full multi-tenant capabilities for easy service operation
  • Reduced cost and complexity: highly optimized for AWS for reduced operational impact with a single platform for management of security controls and policies across multiple environments: physical, virtual, cloud

Trend Micro™ Deep Security

Advanced server security for physical, virtual, and cloud servers

Available as software or as a service, Deep Security protects enterprise applications and data from breaches and business disruptions without requiring emergency patching. This comprehensive, centrally managed platform helps organizations simplify security operations while enabling regulatory compliance and accelerating the ROI of virtualization and cloud projects. Tight integration with AWS dramatically reduces operational impacts by automating policy-based security for instances as they are launched or terminated.

Trend Micro™ SecureCloud

Data protection through encryption for public and private clouds

Organizations can protect and control confidential information with an efficient and easy-to-use encryption service that keeps data private and helps meet regulatory compliance requirements. With its proven integration with AWS, SecureCloud ensures that all data, metadata, and any associated structures are secured without impacting application functionality.

Trend Micro™ Deep Security for Web Apps

Meets regulatory compliance with continuous vulnerability scanning of web applications

Deep Security for Web Apps provides continuous vulnerability scanning with expert testing to detect advanced threats and remove false positives. It is pre-approved for scanning by AWS to dramatically reduce the administrative effort to launch scans, making continuous vigilance against the latest threats possible.

Connect with us on