Teros and Netegrity Partner to Integrate Identity Management and Application Security
Combined Solution Protects Web and Web Services Applications from Authorized and Unauthorized Users
SANTA CLARA, Calif.--(BUSINESS WIRE)--June 28, 2004--Teros, Inc. today announced that it has partnered with Netegrity to provide an integrated identity management and application protection solution that secures both web and web services applications from misuse by users that have been authenticated by Netegrity(R) SiteMinder(R) technology. To secure restricted data and transactions, the integration of the Teros Secure Application Gateway with Netegrity SiteMinder controls user access to protected HTML and XML applications and prevents authorized users from purposely or inadvertently exploiting application vulnerabilities. These capabilities are critical in extended enterprise environments where customers, partners, or suppliers share access to sensitive applications.
This integrated solution combines the centralized access management capabilities of Netegrity SiteMinder with the Deep Stream Inspection(TM) and policy enforcement of Teros Gateway appliances. Working in tandem, the two products control user authentication, authorization and access to HTML and XML applications, and enforce correct application behavior once a user has been authenticated. The Netegrity-Teros integration inspects encrypted requests by users as well as application responses to block access to unauthorized data and functions.
"The ability to prevent applications from being compromised by authenticated users within a SiteMinder session, whether intentional or not, provides an important additional layer of security for our customers," said Stephanie Feraday, vice president of marketing for Netegrity. "The integration of Teros Secure Application Gateways with Netegrity SiteMinder protects confidential data from unknown application vulnerabilities that could lead to violations of customer privacy and fraud."
"In extended enterprises where critical back office systems are exposed to third parties, preventing authenticated users from exploiting application vulnerabilities is a huge concern," said Sanjay Mehta, vice president of business development for Teros. "The combination of Netegrity SiteMinder and Teros Gateways provides seamless protection against both access and application layer exploits for critical applications and data."
Teros-Netegrity Deployments
Teros Gateways are deployed directly in the data path of Netegrity SiteMinder application traffic and enforce a positive security model that only permits correct application behavior, without relying on attack signatures. Using unique Deep Stream Inspection technology Teros Gateways analyze all bi-directional SSL-encrypted traffic to secure SiteMinder application environments. In addition, Teros Gateways protect personal data and prevent identity theft by blocking private information such as credit card, social security, and account numbers before they can leak out of a web application or web service.
Availability
The Teros solution which has been integrated with Netegrity is available today from Teros at no additional charge to Teros customers.
About Teros
Teros develops quick-to-deploy, self-configuring secure application gateways that protect applications from known and undocumented security vulnerabilities and attacks without relying on signatures. Teros customers are Fortune 1000 companies, government agencies, and large web site operators that need to protect sensitive applications and data from unauthorized access or malicious use. Teros Gateways enable companies to comply with regulatory requirements such as HIPAA, GLBA, the California SSN Privacy Law, and SB 1386. Teros is privately held and headquartered in Santa Clara, California. To contact Teros call 408-850-0800, visit us on the web at www.teros.com, or write to info@teros.com.
Contacts
Marc Gendron Public Relations
Marc Gendron, 781-237-0341
marc@mgpr.net
[ Comment, Edit or Article Submission ]