Company description
ForeScout is the leading provider of
network access control (NAC) and policy compliance management for the global enterprise.
We introduced our flagship
CounterACT family of products in 2005, helping to pioneer
and evolve the NAC industry. Our technology was developed in close partnership with our customers, and is differentiated by its
ability to simplify the arduous tasks of access control and policy management.
Today, CounterACT is trusted and proven in over 500 Fortune 1000
enterprises and government/military agencies worldwide, where it serves
to enforce security-policy compliance and enable streamlined business
processes.
Team
Management Team
Gord Boyce
President
A high-tech veteran, Gord Boyce brings over 18 years of industry
experience to ForeScout Technologies. Gord joined ForeScout in 2006 as
Global Senior Vice President of Sales and Marketing and was promoted to
President in 2007. In this role he oversees all of ForeScout's
operations and has played a key role in their success. Prior to
ForeScout he spent over eight years at Nokia holding senior sales
management positions within the Nokia Internet Communications group
and, most recently as vice president, sales and marketing for the
America's Enterprise Solutions business group. Prior to Nokia, Gord
held sales management positions with VoIP pioneer, Vienna Systems,
which was acquired by Nokia in December 1998 as well as other telecom
and datacom sales positions. Gord holds a Bachelor of Engineering and
Management in Electrical Engineering from McMaster University in
Ontario, Canada.
Gil Friedrich
Vice President, Research & Development
Gil brings over 15 years of managerial and technical experience in
developing networking software. Prior to joining ForeScout he served as
an officer in the Israeli Navy and lead an engineering team developing
wired and wireless solutions for military data communications. Gil
holds a M.Sc. in Computer Science from Tel-Aviv university and a B.Sc.
in Physics and Computer Science from Tel-Aviv university.
Zohar Gillai
Vice President, Global Services and Support
Zohar Gillai brings over 18 years of leadership experience in professional services,
customer support and pre-sales engineering support. She has held senior management positions
at Mercury Interactive, Newbridge Networks and most recently, Tropos Networks. Zohar holds
a Bachelor of Arts in Statistics from the University of Haifa, Israel, and an M.Sc. in Computer
Science from McGill University, Canada.
Michael Landewe
Vice President, Asia Pacific Sales
Michael brings a rich background in sales leadership and scientific
research and engineering to ForeScout Technologies. Prior to joining
ForeScout in 2004, Michael held senior management and research
positions at Network Physics and in the Smart Systems Lab at NASA Ames
Research Center. He holds an MBA from New York University and Bachelor
degrees in Mathematics and Political Science from Missouri State
University.
Ayelet Steinitz
Vice President, Business Development
Ayelet brings 17 years experience in network security to ForeScout
Technologies. Prior to her current role at ForeScout, Ayelet held
leadership roles in Product Management, Customer Support and Operations
within the company. Prior to joining ForeScout, Ayelet established the
U.S. operations for Pelican Security, an enterprise security company
with a client-side sandboxing solution, which was acquired by
Microsoft. At Pelican, Ayelet launched the Professional Services group
while previously leading the Product Marketing team. Before Pelican,
she was at Conduct Software Technologies, a network management and
traffic monitoring tools firm, which was purchased by Mercury
Interactive. Ayelet started her career in the military, where she spent
5 years focusing on networking and security technologies. Ayelet holds
a B.Sc. in Information Systems Management from the University of San
Francisco.
Business model
ForeScout is the leading provider of
network access control (NAC) and policy compliance management for the global enterprise.
We introduced our flagship
CounterACT family of products in 2005, helping to pioneer
and evolve the NAC industry. Our technology was developed in close partnership with our customers, and is differentiated by its
ability to simplify the arduous tasks of access control and policy management.
Today, CounterACT is trusted and proven in over 500 Fortune 1000
enterprises and government/military agencies worldwide, where it serves
to enforce security-policy compliance and enable streamlined business
processes.
Competitive advantage
CounterACT™
Knowledge
Industry analysts have called CounterACT one of the most advanced network
sensors in the industry. It reveals who and what is connected to your
network with pinpoint accuracy, and continuously monitors for changes.
Feature/Benefits
- Out-of-Band. Deploys outside of the switch and monitors network traffic as a mirror to the switch port.
- Built-In Threat Prevention. Patented threat prevention engine protects the
network against zero-day self-propagating threats and helps to ensure that
every device that attempts to attach to the network is free of viruses and malware.
- IT Infrastructure Integration. Leverages and supports all existing IT
infrastructure investments. Integrates with all major
enterprise switches, both 802.1x and non-802.1x. Provides complete
User-to-IP-to-Switch-to-Switch-Port mapping. Pinpoints location (IP->switch->location),
user identity (LDAP->authentication) and endpoint system status (patch updates->AV, etc.).
Leverages the switch's built-in security mechanism including VLAN assignment and switch post-blocking.
- Clientless Operation. Detects and protects any device with an IP address without the
need for a client residing on each endpoint. This includes the detection of devices
like VoIP phones, printers, healthcare equipment, manufacturing machinery, etc.
- Secure Connector Dissolvable Client. Persistent, multi-platform client delivers added
peripheral protection for guest/contractor laptops and can be used to detect and
disable portable data storage devices such as USB memory sticks on a per-policy basis.
Control & Compliance
CounterACT has been lauded as the most effective, people-friendly and productivity-enabling
NAC solution on the market. It automates network access and brings devices into security
policy compliance without disrupting the user.
Feature/Benefits
- Policy Creation Engine. Offers flexibility to create the right network policies for each individual
enterprise. For corporate policies, CounterACT offers out-of-the-box templates and a simple,
easy-to-use wizard-based process that guides the IT staff through every step of policy creation.
For regulatory standards-based audits (PCI, SOX, HIPAA, FISMA, etc.), CounterACT offers kits that
help streamline the compliance audit and reporting process.
- Policy Compliance Engine. Leverages IT infrastructural and CounterACT's built-in enforcement mechanisms
to automate user and device compliance checks and to speed remediation or containment of out-of-compliant devices.
Enforcement Mechanisms include:
| Audit Mode |
Allows IT staff to simulate and fully understand the
impact of a specific policy on devices and users before enforcements
are turned on. |
| Notifications (Alert/Inform) |
Notifying the user of policy violations is the first step towards remediation. Automated notifications
and actions such as trouble ticketing, emails, browser hijacks and redirects significantly reduce costly help desk overhead. |
| Access Control, Enforcement & Auto-Remediation |
CounterACT limits non-compliant device access to specified resources, thus enabling users to remain
productive while their device-compliance violations are addressed. For example, if a user device is
found to have an out-of-date anti-virus (AV) definition file, it can be moved to a VLAN, allowing
the user to access email and Internet while blocking the device from other critical resources.
CounterACT can then work with existing services to provide guided remediation and/or cue the AV
server to auto-update a specific device. Once remediation is complete and the device is found to
be in compliance, complete access to the production network may be granted or restored.
CounterACT integrates with a number of remediation services, including patch management, anti-virus,
anti-spyware, vulnerability management, and more. These third-party integrations allow CounterACT to
orchestrate and automate the process of correcting policy violations. For example, if a device misses
a critical patch, CounterACT detects the policy violation and automatically cues the patching engine
(Microsoft WSUS, SMS, PatchLink, Altiris, etc) to update the specific system. Often this can be done without the user's
involvement, retaining update report information for future security audits. |
| Blocking |
CounterACT provides the ability to completely block the access of any device on the network. This
can be accomplished by simply turning off the switch port or by leveraging CounterACT�s built-in
virtual firewall. The virtual firewall provides the ability to quarantine a device or a specific
device port where malicious activity has been detected. |
| Post Connection Monitoring |
After initial connection is made, access control policies are enforced on an on-going basis.
CounterACT continuously monitors the network for policy violations and/or the introduction of
self-propagating threats from connected devices. This advanced capability ensures that the
network is always safe and devices are always in compliance with established network security policies. |
| Reporting |
CounterACT has a fully integrated reporting engine that allows report-generation filters to be
applied to both current and historical data. The reports help IT staff monitor and control
device compliance and fulfill regulatory audit requirements. |
Deployments
CounterACT has the best track record in the industry for successful, fast and non-disruptive NAC deployments.
Feature/Benefits
- Integration. CounterACT integrates with numerous third-party
solutions, installs in a few hours and begins delivering real value
within a day.
- Non-Disruptive Roll Outs. CounterACT initial rollouts follow the same well-articulated,
non-disruptive management process used to establish network access control and monitor/maintain compliance.
- Customer Driven, Global Deployment Proven. ForeScout continues to respond to customer
requirements, meeting the availability, scalability, and access control demands of the
world�s largest organizations in the financial, educational, federal, military, health
and manufacturing sectors. CounterACT protects over 500 of the world�s largest and most
secure enterprises and military installations with global deployments spanning 37 countries.