Itai Greenberg18:18
Thank you very much. Again, if you want to see more about our CloudGuard Connect and CloudGuard Edge, you are welcome to the tech tables and to the sessions. And as you can see here, if I'm summarizing this part, you see that we are connecting and protecting your data center and your branch offices with security, with hyperscale technology, and it's very, very fast. So we talked about securing the cloud, connecting to the cloud, but what about the devices, the mobile devices and the endpoint? Let's talk about that. They also need to connect to the cloud and today internet. Right now, more and more vendors today come to your customers and tell you, we give you a cloud service for that. Send us all the traffic, and we will secure the traffic that goes to the internet from a cloud service. What they don't tell you is that 80% of the traffic is SSL-based, and they don't open the SSL. They only give you URL filtering, and they don't really protect you from fifth-generation and sixth-generation cyber attacks. So obviously, a cloud service is not the best way to do that. What do we do in Check Point? We are giving you security on the devices themselves. So we did it for years now with our SandBlast Mobile. We secure Android and iOS. We are doing it now. We're securing Windows and Mac and Linux. This is a new thing that we are doing now with Linux as well. So we're securing your endpoint devices with SandBlast Agent. But we have something new today. We are doing it also within the browsers. We have SandBlast Web, and this is our ability to secure all the communication that comes in and out from your browsers. Now let's zoom in and understand what's the important feature or capabilities in this new product. So you want to secure the traffic that goes to the internet because we live on the browser. It's a small nano-agent that lives inside your browser. We see all the traffic in clear. So not only that we give you what everyone else is doing with preventing bad URLs, we can protect against zero-days because we see what the actual user is trying to do. We can protect you from zero-phishing. But the cool thing here also is that because it's not a cloud service, you don't need to pay the cost and the overhead of a cloud service, and you don't have the latency. And if you have employees that are traveling the world, you don't have to deal with privacy issues. So definitely, that's a much better way in our opinion to secure web communication. Now, I'm talking about devices. Let's talk about the new generation of the devices, the IoT. Now, IoT becomes the weakest link, and the reason for that is because no one actually patches them. You don't know about them. Someone comes to your organization and connects a smart camera, put it wherever you want, and it's part of your network. And those devices are not protected. And you know what? I'll tell you two stories about it. One story is about a few months ago. I have been in New York, and I met one of our customers. They have security cameras in the buildings, and they told me, you know, we had the controller that control all those security cameras got affected, so we had to replace it. The controller of those cameras came from the manufacturer with known vulnerabilities. So we were built in. The moment we connected it to the network, we started to have machines infected in our networks. And then we've seen it also with the smart meters. Companies that have smart meters, the hackers got into the smart meters and from there into the data center. Or with the UTM machine, they got into the UTM machine and from there into the data center. So we've seen different types of IoT devices that becomes the weakest link. Now we need to secure them, and for that, we have the Check Point IoT Security. Now, what do we do with the Check Point IoT Security? We focus on these three verticals. We focus on smart office and smart building. We focus on medical devices, the MRI machine, the infusion pump, and industrial IoT devices, OT devices. So it starts by you don't have to use Check Point at all. All you need to do is give us the framework. It's an online service. You give us the framework, and we generate for you an assessment, a risk assessment, telling you, you know, this device that you are using has weak password or no passwords and credentials. There are known vulnerabilities, and you know, it also tried to communicate with a domain with a URL that looks suspicious. Then, if you choose to use Check Point to secure your IoT, you can use this service, the risk assessment service, automatically to scan all your devices and give you information about all your devices automatically. And we are doing it by discovering all your devices. By the way, again, in this CPX, you'll see all the IoT vendors, discovery vendors that are partnering with us to give the service for you. Now, once you do that, we are also giving you the ability to micro-segment your environment. And if you are also a company that have a lot of IoT devices from the same type, I talked before about smart meters, or if you are an event of the developer IoT devices, we are giving you the ability to put a nano-agent on your IoT. Whatever framework that you use, put a Check Point nano-agent on your IoT and offer your customers this IoT secured with Check Point inside. So I talked about all the different security capabilities that we have, but I want to explain how everything works together. Right, this is what Gil talked about, the Infinity architecture. We secure everything, and it's with an architecture that works and secures everything together. We talked about the 60 security engines that we are offering. We talked about the fact that we secure 50 types of assets. But how do we do it all together? How do we manage this operation? Today, you have to buy a Check Point management server and to do it yourself, right? You have to upgrade it, to maintain it, to replace the appliances, the security management appliance. What if we will give it to you as a cloud service? You can go and just log into a cloud portal and get everything. For that, two entries today: the Check Point Management as a Service. You go to the Check Point Infinity portal, and you can manage your endpoint, your mobile, you can manage your cloud, Dome9, you can manage your appliances. Everything is with the web GUI. You don't need to worry about the maintenance of the management solution. We'll care and do it for you. Now, on top of that, everything is scalable. Obviously, the management is scalable, but we also wanted to give you scalability on the enforcement point, on the appliances. And we are shipping now today five new appliances that are all powered with Maestro, all tightly connected and work with Maestro. And because security, we take it very seriously, and we believe that we need to protect against fifth-generation of cyber attacks, they are all coming in the first year with the best and the full security from Check Point with our SandBlast package. Now, this is the last innovation that I'm going to talk about today, and I think this is the coolest one in my opinion. We have in Check Point ThreatCloud, right? This is the solution, the intelligent solution that gets to investigate four billion IOCs every day. This is the solution that prevents 25 million unknowns every day. But up until now, we used ThreatCloud only to help our products to give you the security. What if I'm giving you the ability to access ThreatCloud as much as you want and to query ThreatCloud? For that, we're introducing today Check Point Infinity SOC. You can now Google search ThreatCloud. Give us the domain, the URL, the file. We will tell you everything we know about it and how to mitigate it. We will give you a full solution, a full report about what we know there. And in the Infinity SOC, you'll find many more capabilities. For example, you will find that we give you a tool that finds hidden attacks, exposed infected machines inside your network that you don't know about them, and give you a very detailed explanation how to mitigate, how to remediate it. So I want to invite on stage for the last time of the day, I want to invite Eitan.