M86 Security

M86 provides high quality malware gateways for web browsing and email. These services help stop some of the most persistent and damaging threats.  Adversaries often use loaded emails or compromised websites to deliver the payload that allows access into the system – or just wreaks havoc.

Unlike most internet gateways, M86 does not virtualize the browser, but rather scans the code in real time (10-20ms) and pronounces it clean (or evil). It segregates the code and keeps it from running. This provides protection to all-but the most uneducated users.  Cyber training is important, but M86′s Secure Web Gateway helps protect every user.

M86′s MailMarshall secure email gateway scans all the links and attachments that come into the network.  This protects against spear-phishing and other targeted attacks. The MailMarshall scans, unpacks and runs file attachments and opens links in virtualized environments to check for any malware attacks.  It is plug-and-play capable with the large antivirus vendors.  MailMarshall can also provide data loss protection and insider-threat protection by monitoring out-going messages.

M86′s security offerings help to secure one of the largest threats to the IT network – malware – and provides enhanced management options to IT administrators. If you want to check out M86 for free (and on your home machine) get their plug-in’s for FireFox and IE here.

Check out M86 at the DoDIIS Worldwide conference in booth: 834

Or online at http://www.m86security.com

Clearwell E-Discovery Platform

Clearwell’s E-Discovery Platform provides unparalleled search and discovery for investigators and attorneys. The platform offers search and discovery on computer storage that has been captured by military or law-enforcement agents. It can be tailored to search for any document, phrase or even activity. Clearwell has a history of success with the FBI and HHS in providing agents with the evidence they need. Last year, Clearwell helped HHS identify $4B of Medicare/Medicaid fraud.

Clearwell can sort through e-mail, documents and other files stored electronically to provide a synopsis and winnow out evidence of malfeasance. Clearwell is used by Army JAG office to help in investigations.  The E-Discovery capabilities of Clearwell offer automated identification, collection, processing, de-duplication, analysis and review.

Law enforcement agencies are being tasked with more computer forensics and document analysis than ever before, and to combat this they need automated tools that help them determine the value of data. Clearwell is designed to do just that.

Please check out Clearwell at DoDIIS in booth: 817

Or online at http://www.clearwellsystems.com

ClearCube

ClearCube offers wired server hosted desktop solutions in two flavors: high performance computing work stations with dedicated GPUs and quad-core CPUs as well as remote computing through VMware clients.  A ClearCube server and client rack allows IT administrators to instantly provision a user with access at any desktop served by their network.  Whether that user is high computing user or a task + knowledge user, they can be served using just one footprint (the ClearCube desktop client.

ClearCube consolidates almost all computing assets (other than input/display devices) to the data center which enables IT administration to keep out of high traffic, mission-critical or sensitive areas.  Additionally, IT admin can hot-swap power users (shortening down-time) and instantly re-provision VMware clients.

ClearCube products come in rack or blade configurations.  The individual performance workstations offer full NVIDIA GPU graphics as well as Core i5, i7 and Xeon Intel CPUs.  The blades that carry these workstations can provision multiple power-users as well as providing 10+ VMware clients.  The flexibility of this system provides IT administrators with more flexibility in data center design and helps enable efficiencies. Lastly, by enabling only input and display devices at the endpoint, ClearCube provides security from flash-drives and other insider-based threats.

Please check out ClearCube at DoDIIS in booth: 839

Or online at http://www.clearcube.com

Endeca’s Cyber Situational Awareness

Endeca, the search and discovery firm, has been around for over 10 years now (an eon for a dot.com firm). In 2009, Endeca delivered a complete overhaul of their core indexing technology, and today is now scaling up to billion (yes with a B) record terabyte-scale deployments.  For Big Data deployments, they offer Hadoop integration, virtualization and query federation.

However, for pragmatically minded DoDIIS technologists, the most exciting news from Endeca might actually be the turnkey analytical application that now comes out of the box. This new product cuts the project lead time for analysts to start using capabilities to just weeks, and has already been deployed against requirements that run the gamut from intelligence investigation and financial analysis to supply chain readiness.

Cyber Situational Awareness is a great example of the kind of analytical app that sits in the Endeca wheelhouse. Many streams of data constantly pour into the SOC: log analysis, incident reports, network analysis, threat intelligence, and more. When a significant incident occurs, the urgent question is not only “how do we handle the incident” but “what’s the impact to current missions and readiness?” Endeca lets the SOC answer that question with search/discovery tools, by interactively tracing the dependency relationships that start with the compromised asset or exfiltrated data. All the key data is ingested into a common operating picture, inside which analysts can search, drill and pivot through lists and visualizations of each cyber data source.

For more information on Endeca’s Cyber Situational Awareness check them out at CTOlabs.com

Or online at http://www.endeca.com

 

Janya’s Semantex

Janya’s Semantex offers multilingual semantic analysis.  Semantics is the study of meaning, and Janya’s Semantex platform is designed to expedite the analysis and understanding of the meaning of documents.  Semantex scours unstructured data and pulls out the important entities, defines relationships and can identify sentiment in a document.

Automated entity and event enrichment sets the stage for human analysis.  Semantex provides analysts with a head start on analysis offering them a clearer picture of every document ingested and drilldown into document collections. By identifying important entities, defining relationships and noting sentiment, Semantex gives context to documents – context that is mission critical for analysis.

Semantex is not limited to the English language however. At this time, they can enrich data from Arabic, Chinese, Pashto, Russian and the Urdu languages. If you are not fluent in the language of the document, Semantex translates the entities within-language and provides the same relational data and sentiment analysis.

Please visit Janya at DoDIIS, booth: 829

Web: www.janya.com

Twitter: @janyainc

Listen to Janya CEO Rohini Srihari on NPR to learn more about Janya’s multilingual analysis capabilities.

 

Thetus’ Savanna Analytical Tool

Thetus Corporations’ Savanna provides excellent search, discovery and visualization tools for analysts.  Savanna uses tools such as Kapow to scrape websites and all-source data and then pushes them through MetaCarta (for geo-spatial analysis) and Janya (for real-language textual analysis).  This data is then sorted into a Savanna’s application – enabling real-time search.  Savanna is excellent when teamed with Endeca, the two make an incredible analytical capability focused on human centered search, discovery, analysis and results.  Savanna is so open it enables work with virtually any other tool. It is a sad fact that other companies design in non-interoperability to prevent you from moving your data out. Savanna makes it easy to get your results out to other tools.

Thetus gives the analyst a whiteboard with the opportunity to explore concepts, hypotheses and questions – while allowing them to link ideas as they see fit, and attach documents/files where they make sense. The documents in the repository are harvested by Kapow, go through MetaCarta and Janya for entity enrichment, but are re-rendered by Savanna to look like real pages instead of masses of text. This re-render process makes search and discovery on the pages even easier.

Savanna’s search function crawls through the document repository added, and uses socio-economic indicators to categorize.  Returned searches are delineated into likelihood of match, can be sorted with the date/time or can be sorted by geo-spatial data.  This allows analysts to take 1500 search returns and quickly narrow to 10-15 results – speeding analysis and decision making.

Check out Savanna at http://www.thetus.com

 

GovDelivery

GovDelivery provides comprehensive digital communication management for the public sector.  GovDelivery offers up to date information to all concerned citizens with a variety of delivery means. They use SMS, e-mail, Twitter, FaceBook and MMS as well.  It also allows for collaborative environments that increase stakeholder involvement.  From document sharing and editing, to forums and blogs, GovDelivery provides targeted outreach to the citizens served by your agency.

GovDelivery provides subscriber software that requires no install at your agency, but rather tracks your websites and social networks to deliver content.  It offers subscribers multiple options to allow them to tailor their content to their desire – increasing content delivery while decreasing unsubscribe rates.  GovDelivery also helps decrease paper document costs and saves agencies money on printing fees.

GovDelivery’s solutions have adopted throughout federal, state and local governments.  They have been used by FBI to help fight crime and the CDC to help prevent illness.  They have also provided FDA, FEMA and the Department of Transportation with capabilities to reach out to the public.

If you’re interested in GovDelivery, please check out their booth at DoDIIS: 838

Or online at http://www.govdelivery.com

Catbird

One of the key requirements for all DoD CIOs, CISOs and CTOs is DIACAP compliance. Likewise, Federal Government IT professionals are constrained by FISMA compliance. These two standards require a large amount of IT work cycles – while providing a standardized security setting. For security, cost and other reasons, many agencies are moving toward virtualization as a computing solution.  Virtualization offers great benefits in cost, power consumption, efficiencies of computing assets and provisioning capabilities. However, virtualization makes compliance increasingly difficult.

This is what Catbird does, they make compliance solutions for virtualization. They provide vSecurity that addresses all 26 DIACAP controls that are negatively affected by virtualization. Additionally, Catbird ensures adherence with all 11 CAT1 Mission Assurance Controls (MAC). Catbird offers monitoring and auditing capabilities displayed in compliance, security and operations dashboards.

For FISMA standards, Catbird offers vSecurity too, which addresses 53 of the 61 controls negatively affected by virtualization. Catbird delivers continuous monitoring and assurance of NIST controls, providing event driven status reports.  It offers default settings standardized for FISMA that provide the utmost of monitoring, auditing and enforcing to FISMA controls.

Catbird’s virtualization compliance suites are key to making virtualization work for your agency.  These capabilities increase the efficacy and viability of virtualization in federal and defense agencies.

Or online at http://www.catbird.com

Vormetric Data Security

Protecting data at rest is an unenviable task for every IT security professional. However, if you have to secure, AES encryption is the way to go. Certified by NIST for the Federal Government, and the NSA for classified materials; AES is the standard. Vormetric AES encryption allows for data loss prevention, while enabling sharing and collaboration.

Vormetric encryption policies leverage your existing LDAP and Active Directory groups and users.  Adhering to your already created user groups, Vormetric can provision keys and access to files as the administrator sees fit. However, there is no super-user available, limiting unfettered access to sensitive data.

Vormetric prevents lowest commons denominator attacks by encrypting all data from logs to file systems and locking down the server computing environment where it resides. These environments can be physical, virtual or cloud based. Using “chain of custody” as their motto, Vormetric provides knowledge of where and by whom files are accessed. Vormetric supports multiple database formats, including Oracle, SQL, MySQL and more. Vormetric provides enterprise class encryption at a low TCO – requiring minimal management staff.

Check out Vormetric at DoDIIS Worldwide in booth 832.

Or online at http://www.vormetric.com

SMSi’s Twister Data Framework

If you’re interested in data management, servers and integration, check out the Twister booth in the Carahsoft Partner Pavilion on the expo floor here at DoDIIS.  Twister enables ingestion of disparate data sources to provide a searchable, extractable, and highly usable data layer to bring information from across the enterprise, to users throughout it.  Twister offers LDAP integration to identify users – and define roles and access.

Twister offers the ability to read and write Oracle, SQL, MySQL and other such databases.  It can ingest structured data as well unstructured data – providing the capability to process XML, CSV, PDF, DOC and HTML (among others).

The Twister Data Integration layer sits between your choice of databases and your choice of extraction, search or discovery tools.  Providing source and extraction agnostic data integration services enables installation on any system – saving administration from forklift upgrades.

As data sources grow, and gigabytes turn into petabytes, scalable data integration solutions are key to mission success. Pulling in multiple data sources and types, Twister spits them out into clean, usable data for extraction, analysis and aggregation.

Please check out Twister at booth: 831
Or their website HTTP://www.sms-fed.com