cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
502
Views
15
Helpful
2
Replies

AMP4E cloud Vs AMP cloud

nelsibrun
Level 1
Level 1

Sorry guys to buzzer with a silly Q, Is AMP4E cloud "to manage my endpoints" is the same AMP cloud "that do file disposition" [private, hybrid, cloud] deployment or there would be a difference.

2 Replies 2

balaji.bandi
Hall of Fame
Hall of Fame

check this thread may help you (if not please ask )

 

https://community.cisco.com/t5/cloud-security/amp4e-cloud-vs-amp-cloud/td-p/4474577

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Secure Endpoint (Former AMP For Endpoints) and Secure Malware Analytics (Former Threat Grid) are two different products. Secure Endpoint allows for 200 Dynamic File Submissions to Threat Grid per day across the entire organization. On the front page of the Secure Endpoint console you can see your organizations daily submissions. If the number is higher than 200, you need to purchase an additional license to upgrade the number of submission or purchase ThreatGrid as a product itself. 

The Sandbox functionality within Secure Endpoint is limited in the way that you can submit files to Threat Grid and a report is made available in the AMP Dashboard.

Alternatively, you can purchase Threat Grid (Secure Malware Analytics) which provides another cloud console to manage your file submissions.

Some of the features you get from purchasing Threat Grid as a product instead of a submissions license for Secure Endpoint is:

 
Threat intelligence context & correlation (pivot in reports with hyperlinks)
Interact with malware samples in Glovebox
Download Report JSON
Registry Activity report / Download Registry contents JSON
Process Graph and Process Timeline JSON
Adjust run times of sample analysis
Advanced search (samples, artifacts, registry, URLs, etc)
API integration for automation of sample uploads and Threat Intelligence, including RSA's Security Analytics, Guidance Software's EnCase, TripWire Enterprise, Splunk, QRadar, ArcSight, etc.
Threat Intelligence Feeds
 
Best Regards
Nicolai Borchorst
CCIE Security #65775