This leading U.S.-based electrical power utility is consistently under regular attack from advanced malware. Its existing endpoint protection product was detecting and eliminating some threats, however, the recurrence frequency and unexplained network activity indicated that it wasn’t providing a view of the full infection, nor identifying and eliminating its root cause. The company’s sophisticated response team spent a significant amount of time investigating suspicious activity. FireAMP now allows the response team to track suspicious activities back to the core threat, the specific executable, tracking unusual communications back to specific devices and system processes that are responsible. Next, FireAMP provides visibility into the source of the infection, so that measures are taken to eliminate its recurrence. This visibility into the full extent of the infection, allows the threat to be eliminated and its root cause addressed. By using FireAMP, the company is able to reduce a multi-day investigation and remediation to a matter of hours. The response team is now able to answer what used to be the difficult question of “how bad is it?”





