Spotlight Secure

Linking security intelligence to policy enforcement for rapid protection against advanced threats

Spotlight Secure is a threat intelligence platform that aggregates threat feeds from multiple sources to deliver open, consolidated, actionable intelligence to SRX Series Services Gateways (firewalls) across the organization. These sources include Juniper threat feeds, third-party threat feeds, and threat detection technologies that the customer can deploy. Administrators can define enforcement policies from all feeds via a single, centralized management point, Junos Space Security Director.

    Overview

    Threat Intelligence Platform Diagram Image

    As the threat landscape continues to accelerate and evolve, the security industry continues to respond with a variety of disparate new detection technologies. Unfortunately, this approach results in customers struggling to manage a patchwork of uncoordinated security tools, leaving a gap between detection and enforcement at the firewall. Many next-generation firewalls (NGFW) include integrated capabilities, such as intrusion prevention system (IPS), antivirus signatures, and proprietary reputation feeds, but they are closed systems that are not capable of taking full advantage of the highly diverse third-party and custom feeds utilized by customers, specific to their industry.

    Juniper’s Spotlight Secure threat intelligence platform addresses these challenges and constraints by aggregating threat feeds from multiple sources to deliver open, consolidated, actionable intelligence to SRX Series firewalls across the organization. These sources include Juniper threat feeds from our cloud-based service, third-party threat feeds, and threat detection technologies that the customer can deploy. The security intelligence service extracts relevant multi-threat feeds and delivers them to SRX Series firewalls for advanced threat protection.

    Administrators are able to define enforcement policies from all feeds via a single, centralized management point, Junos Space Security Director.

    Features

    • Open and Customizable Intelligence Platform: Use Juniper’s optimized threat feeds (C&C/anti-bot, GeoIP and global attacker fingerprint data), custom or third-party feeds for policy enforcement.
    • Scalable Security: Simultaneously apply security intelligence policies to thousands of SRX Series firewalls using Junos Space Security Director.
    • High Threat Data Capacity: SRX Series is the only firewall to support over a million feed entries that can be used both for Juniper and/or customer feeds.
    • Effective Protection: Only the latest and most relevant intelligence is sent to the SRX Series firewall to maximize resource utilization, ensure rapid enforcement and reduce false positives. Threat ratings for each allow severity-based policies.
    • Operational Efficiency: Security Director gives a single pane view of firewall policies, threat intelligence feeds, and enforcement status and the latest aggregated threat intelligence can automatically syndicate across the entire firewall estate.