Skip to content

Bit9

Bit9 Parity Control

IT security professionals strive for endpoint control to achieve three main goals: reducing the cost of managing endpoints, being able to achieve and demonstrate compliance, and most critical, securing endpoints, critical infrastructure and data from today’s advanced threats and targeted attacks.

Over the last decade, we’ve seen such growth in the amount of viruses and targeted attacks that there is now more malware in existence than legitimate, safe software. This explosion has coincided with several high profile breaches at leading organizations, reminding us all that traditional, reactive endpoint security methods have become obsolete.

Ensuring the integrity of the desktop environment without compromising user satisfaction and productivity is precisely why Bit9, the pioneer and leader in Enterprise Application Whitelisting, developed Bit9 Parity™ Suite, the only Trust-based, policy-driven Application Control and Whitelisting solution for managing the applications and devices that can run on your endpoints. Whether you need to lock down desktops, block unauthorized applications, or report on portable storage activity, Bit9 will give you the greatest degree of visibility and control over your computers.

What makes Bit9 so unique is an extremely powerful set of capabilities for identifying and classifying every piece of software running in your environment. Using Bit9 Parity Suite, you can quickly and effectively judge if that software should be running in your environment, and control it directly through Parity. The result is a demonstrable improvement in the integrity, security, and compliance of your Windows endpoint environment.

About Bit9 Parity Control

IT driven trust is the starting point for building a trusted software list within your company. Using a baseline, IT departments can build a trusted list for all known software currently in their environment. But, as we all know, end user environments are never static. Parity Control includes several tools that enable IT to push new, trusted software to endpoints with minimal complexity;

  • Trusted Directories make integrating your software deployment and patch distribution methods easy.
  • Trusted Updaters solve the need for IT to intervene each time a program like Adobe Flash updates itself, thereby changing its hash.
  • Trusted Groups and Trusted Users give your IT staff the power to manage exceptions all while keeping a full audit log of changes made.
  • Trusted Publishers allow your company to define a top level approval to reduce the need to respond to the many variations of products within that publisher.

Once the trust has been established, Flexible, pre-configured enforcement levels allow you to match your desired security posture with your current (or desired) company culture;

  • A High enforcement level is defined as blocking any unapproved files in your system. Any file, new or otherwise, that has not been specifically approved or banned by IT will show up as unapproved. Within Parity, this default-deny enforcement level allows IT to have the most control over the computing environment and the introduction of new software.
  • A medium enforcement level will prompt the end user when an unapproved file attempts to execute. This allows the end user to block suspicious files while allowing that same end user to install new files that may be crucial to business effectiveness without IT intervention. It’s important to note that an end user who approves a new file on their machine is not making a global decision for your company; that file is only approved on their machine and IT can override the approval at any time.
  • In a low enforcement level, all files are monitored and logged, but allowed to execute if they are not specifically banned by IT. This capability is key to initial base lining of an environment as well as an ongoing audit-ability compliance stance.

Learn more about how Bit9 Parity Suite works.

Benefits

With Bit9 Parity Control, you'll be able to:

  • Prevent malware, zero-day attacks and the Advanced Persistent Threat targeting critical endpoints.
  • Stop malicious or unauthorized software; block viruses, Trojans, exploits, custom attacks, zero-day threats, and more.
  • Protect endpoints that store confidential information and run critical infrastructure.
  • Reduce the compliance burden with streamlined audits, activity monitoring, violation notification, and policy enforcement.
  • Make desktop support staff more productive and lower desktop management costs by eliminating problems at the source.
  • Eliminate data theft and leakage by auditing and controlling the transfer of sensitive data to personal storage devices.
  • Improve license compliance by aligning purchases with actual software usage.
  • Transition users without impact by leveraging policy simulation, process automation, and other integration points.
  • Consolidate and simplify multiple software enforcement tools and processes.