Cisco Umbrella
Overall Satisfaction with Cisco Umbrella
We started using Cisco Umbrella to improve productivity and to prevent users from accessing certain sites they shouldn't. We also use it to try to increase our cyber security stance by preventing users from accessing malicious websites. It gives us a broad view of what users are trying to access and gives us the ability to allow or block the connections.
Pros
- Monitor Connections
- Prevent Malware and Phishing
- Smart Search
Cons
- More detailed connections
- App for Umbrella
- Upgraded smart search
Do you think Cisco Umbrella delivers good value for the price?
Yes
Are you happy with Cisco Umbrella's feature set?
Yes
Did Cisco Umbrella live up to sales and marketing promises?
Yes
Did implementation of Cisco Umbrella go as expected?
Yes
Would you buy Cisco Umbrella again?
Yes
- Increased Productivity
- More visibility on users.
- Detailed reports
We currently don't have many employees that work from the outside that would require DNS protection but we do have the ability to re route DNS traffic and monitor their activity. After installing it on specific devices all their traffic is re routed to cisco DNS server then it gets reported on our reports.
We implemented "Splunk" for security purposes to have a broad view of many different devices. Umbrella will allow you to export logs and import them on the Splunk instance for all in one monitoring solution.
Umbrella provides an API that dumps logs into an aws servers and splunk retrieves them with the API.
We needed a more descriptive view of our network traffic to keep on top of cyber security.
Our firewall would show us what kind of traffic was going on within our network but we needed a more specific view.
The firewall also allowed us to allow and block certain websites but Umbrella is more user friendly and more descriptive.
Resilience and Reliability
Cisco Umbrella gives you the opportunity to narrow down to a specific workstation to track down unusual activity or non work related activities. We had an employee that his work station was constantly trying to access a specific website without his knowledge and Cisco Umbrella helped us resolve the issue by tracking down the workstation.
By constantly monitoring and staying on top of dns requests and user activity. A constant back up of any kind is always helpful and recommended. Having a recovery plan and actually exercising the procedures on the plan.
Training and testing employees helps the organization as a whole to prevent any unwanted cyber threats.
- Monitor DNS requests
- Block employee traffic
- Block phishing and malware websites.
Using Cisco Umbrella
2 - Everyone in our organization currently uses Cisco Umbrella, Everyone's internet traffic passes through our virtual appliances. We only have 2 admins that monitor, manage and change the umbrella configs or updates. We also use Splunk to monitor the users activity from Cisco Umbrella. Syslogs are being sent to splunk and splunk alerts us of unusual activity.
2 - Cisco Umbrella is fairly easy to implement and manage. A basic understanding of domain knowledge is required, Information Technology knowledge is a plus. After implementing the virtual appliances everything else is self explanatory, the most technical part of Cisco Umbrella is the implementation. We currently have 2 admins managing Cisco Umbrella and its more than enough.
- Blocking
- Monitoring
- Investigating
- Umbrella has the option to have it installed on devices outside our network.
- Tighten the activity of users.
- More strict policies
Comments
Please log in to join the conversation