Endpoint Detection and Response from BlackBerry

Don’t Be a Victim of Ransomware—Avoid Cyberattacks with CylanceOPTICS

Cloud-native CylanceOPTICS® provides on-device threat detection and remediation across your organization—in milliseconds. Our EDR approach effectively eliminates response latency. It can be the difference between a minor security incident and a widespread, uncontrolled event.
Edge AI Edge AI Edge AI
Edge AI
Identify security threats and trigger automated responses on-device with security and context-driven threat detection rules powered by Cylance AI to reduce detection and remediation time.
Cloud-Enabled Cloud-Enabled Cloud-Enabled
Cloud-Enabled
Gain visibility with consolidated, AI-driven security and an enterprise-wide view of all endpoint activity, empowering detection and response capabilities for online and offline devices.
Deep Insight Deep Insight Deep Insight
Deep Insight
Enable threat hunting and root cause analysis experiences with intuitive query language and up to 365 days of data retention options.

Why Choose CylanceOPTICS

  • CLOUD-ENABLED
  • EDGE AI
  • MINIMIZE ATTACK SURFACE
  • RESPOND IN MILLISECONDS
  • DEEP INSIGHT

Cloud-Enabled—Not Cloud-Dependent

Cloud-based CylanceOPTICS provides monitoring and visibility that span your entire organization, enabling detection and threat hunting for both online and offline devices. 
Cloud-Enabled—Not Cloud-Dependent

Quickly Detect and Respond to Ransomware

Ready to move beyond attack visibility? Cylance AI-driven security proactively detects and automates response capabilities. So you can find and neutralize advanced cyberthreats in milliseconds—not hours or days.
Quickly Detect and Respond to Ransomware

Prevent Widespread Incidents with Machine Learning

CylanceOPTICS mitigates and contains threats at the endpoints—drastically minimizing your attack surface and potential lateral movement. So your SOC teams have more time to perform essential duties, instead of monitoring and re-imaging compromised endpoints.
Prevent Widespread Incidents with Machine Learning

Custom Automated Responses

CylanceOPTICS has a built-in playbook with automated incident responses to mitigate endpoint threats. As it automatically collects relevant security information for hunting and forensic analysis, you’ll save your SOC analysts some time.
Custom Automated Responses

Unconstrained Threat Hunting

Our advanced, intuitive querying capabilities with Query language objects is purpose-built for MITRE ATT&CK®. It’s designed to enable deep insight for threat hunting and forensics with superior data retention packages—30 days out-of-the-box and up to 365 days.
Unconstrained Threat Hunting

Why Choose CylanceOPTICS

  • CLOUD-ENABLED

    Cloud-Enabled—Not Cloud-Dependent

    Cloud-based CylanceOPTICS provides monitoring and visibility that span your entire organization, enabling detection and threat hunting for both online and offline devices. 
    Cloud-Enabled—Not Cloud-Dependent
  • EDGE AI

    Quickly Detect and Respond to Ransomware

    Ready to move beyond attack visibility? Cylance AI-driven security proactively detects and automates response capabilities. So you can find and neutralize advanced cyberthreats in milliseconds—not hours or days.
    Quickly Detect and Respond to Ransomware
  • MINIMIZE ATTACK SURFACE

    Prevent Widespread Incidents with Machine Learning

    CylanceOPTICS mitigates and contains threats at the endpoints—drastically minimizing your attack surface and potential lateral movement. So your SOC teams have more time to perform essential duties, instead of monitoring and re-imaging compromised endpoints.
    Prevent Widespread Incidents with Machine Learning
  • RESPOND IN MILLISECONDS

    Custom Automated Responses

    CylanceOPTICS has a built-in playbook with automated incident responses to mitigate endpoint threats. As it automatically collects relevant security information for hunting and forensic analysis, you’ll save your SOC analysts some time.
    Custom Automated Responses
  • DEEP INSIGHT

    Unconstrained Threat Hunting

    Our advanced, intuitive querying capabilities with Query language objects is purpose-built for MITRE ATT&CK®. It’s designed to enable deep insight for threat hunting and forensics with superior data retention packages—30 days out-of-the-box and up to 365 days.
    Unconstrained Threat Hunting
CylanceOPTICS Capabilities

CylanceOPTICS Capabilities

  • EDR Engine
  • Automated forensic events logging
  • Automated response
  • Custom detection rules
  • Integrated MITRE ATT&CK
  • Secure remote response
  • Private Network Visibility
  • Advanced Scripting Visibility
  • Deep Insight 30-day retention, included
  • Deep Insight 90-day, 365-day retention, available
  • Cryptomining detection
  • Audit logging
BlackBerry Fully Detects and Protects in SE Labs Test

BlackBerry Fully Detects and Protects in SE Labs Test

CylancePROTECT® and CylanceOPTICS won the AAA award for detecting and preventing cyberattacks during SE Labs Breach Response Test. This test subjected BlackBerry products to a wide range of publicly available hacking attacks. All threats were stopped before damage occurred.

Gain and Maintain an Edge Over Attackers

Artificial Intelligence, Real Performance Artificial Intelligence, Real Performance Artificial Intelligence, Real Performance
Artificial Intelligence, Real Performance
Cylance AI-driven security threat prevention and response and attack mitigation prevents cyberattacks that legacy products miss while simultaneously reducing alert fatigue.
Gain Deep Insight Gain Deep Insight Gain Deep Insight
Gain Deep Insight
An extensive set of manual and automated incident investigation and threat hunting tools provide your analysts with seamless access to endpoint data.
Workflow-Based Incident Response Workflow-Based Incident Response Workflow-Based Incident Response
Workflow-Based Incident Response
React to threats at machine speed. Automated playbooks can drive responses to detected threats, taking immediate action without human intervention.

CylanceOPTICS Dashboard View

CylanceOPTICS Dashboard View

Managed XDR — CylanceGUARD

CylanceGUARD® is 24x7 managed extended detection and response service for prevention-first cybersecurity.

BlackBerry Spark® Suite – UEM & UES

For comprehensive unified endpoint management and security, BlackBerry Spark Unified Endpoint Management Suite plus BlackBerry Cyber Unified Endpoint Security offer complete protection.

BlackBerry® Cyber Suite – UES

Cylance AI-driven security endpoint solution proactively delivers protection, detection and response, integrated mobile threat defense, continuous authentication and adaptive risk scoring.

Resources

Structural Dependency
CylanceOPTICS
Learn More
Structural Dependency
CylanceOPTICS
Read More
Structural Dependency
BlackBerry MITRE ATT&CK APT20
Read Now
Structural Dependency
BlackBerry 2022 Threat Report
Read Report