SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsThis paper concentrates on some of the practical aspects of rolling out a managed antivirus solution to a large company, specifically for workstations and servers. If you spend any time at all perusing vendor documentation, you know there are holes, gaps and sometimes large crevices of missing information that are needed to make the practical decisions. With some planning, forethought and good advice from people who have gone through it before, successful managed antivirus protection can be implemented. You will know success when the next virus is thwarted before it has a chance to negatively impact the company's resources. This paper will examine how to roll out a centrally managed antivirus solution using Symantec's Norton Antivirus Corporate Edition 7.6. We will go beyond the general implementation guidelines to the detailed considerations and lessons learned. We will specifically examine rolling this infrastructure to a large enterprise environment, with many different physical locations throughout the country and well over 100,000 total nodes. We'll look at four considerations: Client configurations, updating definitions, reporting and network traffic. Antivirus protection at the workstation and server level is still a key element in the total defense plan against viruses.