Welcome!

Cloud Security Authors: Pat Romanski, Zakia Bouachraoui, Liz McMillan, Elizabeth White, Yeshim Deniz

Related Topics: Microsoft Cloud, Cloud Security

Microsoft Cloud: Blog Feed Post

Working with Microsoft Security Tools

How many of us take for granted Microsoft’s family of tools that contribute to the security of your organization?

How many of us take for granted Microsoft’s family of tools that contribute to the security of your organization? The most commonly used and appreciated tools are:

  • Forefront Family
  • Microsoft Security Essentials
  • Windows Intune / Windows Update / Microsoft System Center Family
  • Windows Firewall (with Advanced Security)

Let’s take a look at all of these tools and their features. Then, we can look at other less popular tools offered by Microsoft — such as Microsoft Security Compliance Manager and Microsoft Security Assessment Tool.

  1. Forefront Family

Microsoft has spent a great amount of time trying to supply a manageable easy-to-use security solution for its products. The result of these efforts is the Forefront Family. It consists of several tools you can use to secure your Microsoft infrastructure. Also, it is designed to interact with other Microsoft tools, such as Active Directory, Group Policy and Windows Update.

Forefront Endpoint Protection is the enterprise-oriented product that delivers real-time, anti-virus, malware and spyware protection. Its integration with the System Center Family of managing products makes it extremely popular and easy for adoption.

Another product in the Forefront Family is Forefront Threat Management Gateway. It is the successor of the Internet Security and Acceleration (ISA) Server and provides advanced firewall functionalities, including URL filtering, intrusion prevention, HTTP/HTTPS inspection, and much more.

The two popular solutions for applications are Forefront protection for Exchange Server and Forefront protection for SharePoint. With the increasing popularity of cloud solutions, Forefront Online Protection for Exchange is used to secure the cloud-based version of Exchange – Exchange Online. All of these products can easily be managed through the Forefront Protection Server Management Console. It supports multiple servers and has great reporting capabilities.

Microsoft Forefront Identity Manager is a great tool that can help you manage access between heterogeneous systems, including Active Directory, Novell, Sun, IBM, Lotus Notes, Exchange, Oracle and SQL Server databases, SAP, and even flat file systems. It supports both password- and certificate-based access.
If you need to provide access to users outside your organization, such as partners or home-based employees, Forefront Unified Access Gateway is there to help you. It supports both VPN and Direct Access to your network and introduces policies and configurations over these connections.

  1. Microsoft Security Essentials

For end clients, who can’t afford to pay for the manageable Forefront client, Microsoft has delivered the free tool Microsoft Security Essentials, which uses the same definitions as Forefront, but lacks the manageability part.

Microsoft Security Essentials does provide antivirus, antispyware, and rootkit protection; it also supports Windows 7 and Windows Server 2008 R2; and it’s still using Dynamic Signature Service, which contributes to the daily definitions updates by detecting newly identified malware.

However, Microsoft Security Essentials doesn’t provide some of the handiest Forefront functionalities, such as Group Policy and External Device control; Network Access Protection integration (the Windows Server 2008 capability to granularly control network access based on who the client is and the groups to which the client belongs); and integrated host firewall management.

It also has the extremely useful capability of limiting processor usage during scans. Do youu ever encounter the problem of processor usage reaching 100% and the computer freezing with some other products? Microsoft promises that doesn’t happen with Microsoft Security Essentials.

  1. Updates

As keeping your system updated is a main part of its hardening, Microsoft has many tools that help you get important updates on time.

Your first option is to set your Windows Update feature to automatically download the updates from the Microsoft site. However, this way you don’t have much control over which updates get installed. You can set the feature to let you make a decision as to whether to install a particular update or not, but this then requires extra administrative efforts to achieve what is normally a simple task.

Another option is to use the Microsoft System Center Configuration Manager (SCCM) or Windows Intune to centrally manage the updates on all your clients’ computers. Both of these products offer a considerable amount of functionalities, including keeping computers up to date. While SCCM is a hosted application and needs to be installed on a local machine to work, Windows Intune is an entirely cloud-based Microsoft solution that can help you manage your network. All you need is a web browser. And with that, you can make sure your computers all over the world are properly updated.

  1. Windows Firewall (with Advanced Security)

Windows Firewall (In Windows Server 2008, it is called Windows Firewall with Advanced Security) can contribute to your current security configuration, providing a defense-in-depth mechanism for end users. If you haven’t purchased Forefront protection, then you can use the built-in Windows Firewall to specify rules regarding your inbound and outbound traffic.

  1. Microsoft Security Compliance Manager

Microsoft Security Compliance Manager includes various baseline security policies — both for client and server Windows systems and applications. The policies are based on industry practices and let you reduce the security threats your systems are exposed to. You can easily compare your existing policies with these baseline security policies for reference, or deploy the baseline policies to be sure your infrastructure is secured.

  1. Microsoft Security Assessment Tool

Microsoft Security Assessment Tool is a product that can help you secure your entire IT infrastructure by asking you various questions with a Yes/No answer. Questions are based on the ISO 17799 and NIST-800.x standards. Your answers are compared to the best practices that Microsoft has developed. Then a summary with lots of recommendations and relevant online topics is delivered to you. It can be very useful after your initial setup is completed.

If your infrastructure is now secured, take the time to set monitoring on your main servers. You can do that very easily with Monitis.

Read the original blog entry...

More Stories By Hovhannes Avoyan

Hovhannes Avoyan is the CEO of PicsArt, Inc.,

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


IoT & Smart Cities Stories
René Bostic is the Technical VP of the IBM Cloud Unit in North America. Enjoying her career with IBM during the modern millennial technological era, she is an expert in cloud computing, DevOps and emerging cloud technologies such as Blockchain. Her strengths and core competencies include a proven record of accomplishments in consensus building at all levels to assess, plan, and implement enterprise and cloud computing solutions. René is a member of the Society of Women Engineers (SWE) and a m...
SYS-CON Events announced today that DatacenterDynamics has been named “Media Sponsor” of SYS-CON's 18th International Cloud Expo, which will take place on June 7–9, 2016, at the Javits Center in New York City, NY. DatacenterDynamics is a brand of DCD Group, a global B2B media and publishing company that develops products to help senior professionals in the world's most ICT dependent organizations make risk-based infrastructure and capacity decisions.
A valuable conference experience generates new contacts, sales leads, potential strategic partners and potential investors; helps gather competitive intelligence and even provides inspiration for new products and services. Conference Guru works with conference organizers to pass great deals to great conferences, helping you discover new conferences and increase your return on investment.
DXWorldEXPO LLC announced today that ICOHOLDER named "Media Sponsor" of Miami Blockchain Event by FinTechEXPO. ICOHOLDER gives detailed information and help the community to invest in the trusty projects. Miami Blockchain Event by FinTechEXPO has opened its Call for Papers. The two-day event will present 20 top Blockchain experts. All speaking inquiries which covers the following information can be submitted by email to [email protected] Miami Blockchain Event by FinTechEXPOalso offers sp...
Headquartered in Plainsboro, NJ, Synametrics Technologies has provided IT professionals and computer systems developers since 1997. Based on the success of their initial product offerings (WinSQL and DeltaCopy), the company continues to create and hone innovative products that help its customers get more from their computer applications, databases and infrastructure. To date, over one million users around the world have chosen Synametrics solutions to help power their accelerated business or per...
Poor data quality and analytics drive down business value. In fact, Gartner estimated that the average financial impact of poor data quality on organizations is $9.7 million per year. But bad data is much more than a cost center. By eroding trust in information, analytics and the business decisions based on these, it is a serious impediment to digital transformation.
@DevOpsSummit at Cloud Expo, taking place November 12-13 in New York City, NY, is co-located with 22nd international CloudEXPO | first international DXWorldEXPO and will feature technical sessions from a rock star conference faculty and the leading industry players in the world. The widespread success of cloud computing is driving the DevOps revolution in enterprise IT. Now as never before, development teams must communicate and collaborate in a dynamic, 24/7/365 environment. There is no time t...
When talking IoT we often focus on the devices, the sensors, the hardware itself. The new smart appliances, the new smart or self-driving cars (which are amalgamations of many ‘things'). When we are looking at the world of IoT, we should take a step back, look at the big picture. What value are these devices providing. IoT is not about the devices, its about the data consumed and generated. The devices are tools, mechanisms, conduits. This paper discusses the considerations when dealing with the...
SYS-CON Events announced today that IoT Global Network has been named “Media Sponsor” of SYS-CON's @ThingsExpo, which will take place on June 6–8, 2017, at the Javits Center in New York City, NY. The IoT Global Network is a platform where you can connect with industry experts and network across the IoT community to build the successful IoT business of the future.
IoT is rapidly becoming mainstream as more and more investments are made into the platforms and technology. As this movement continues to expand and gain momentum it creates a massive wall of noise that can be difficult to sift through. Unfortunately, this inevitably makes IoT less approachable for people to get started with and can hamper efforts to integrate this key technology into your own portfolio. There are so many connected products already in place today with many hundreds more on the h...