<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CISSP Advice on windows 10 antivirus in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36386#M2764</link>
    <description>&lt;P&gt;Frankly, I am seeing more major clients simply using Windows Defender from Microsoft and calling it a day. We've add way more than we need at the endpoint, needlessly tying up CPU and memory resources.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you still want a commercial A/V suggest looking at one of the NG or Next Generation lightweight products such as CrowdStrike, Cylance or any other number of good products out there. Personally, I stopped paying for A/V about five years ago when I realized it had been back in the 90s when I detected my last at home virus. Regardless of the product, my other defenses appear to be robust enough to have stopped most everything else.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Safe computing and good luck with your decision.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- b/eads&lt;/P&gt;</description>
    <pubDate>Fri, 12 Jun 2020 18:17:41 GMT</pubDate>
    <dc:creator>Beads</dc:creator>
    <dc:date>2020-06-12T18:17:41Z</dc:date>
    <item>
      <title>CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36352#M2753</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm trying to find out which is the best antivirus software for windows 10 is but all I can find is bull**** sales pitches and comparison sites.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So I am looking for someone with a CISSP certification(or someone else with experience)to tell me which antivirus programs are the best.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ideally I don't want to slow my computer down...Just routine virus scans and protection during installation of new programs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your help.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 09:32:58 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36352#M2753</guid>
      <dc:creator>Marcipicus</dc:creator>
      <dc:date>2023-10-09T09:32:58Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36358#M2756</link>
      <description>&lt;P&gt;I can't say which I like on Windows 10 because it's been some time, but I can mention a few things. It would be very common for me to have clients on antivirus X for a while, and then there would be an update and it would start killing the CPU. So I would switch to antivirus Y, and after a while the same thing would happen and I would change to a new one yet again. In the past when I went looking most top ten sites always listed the same handful as all the others. It wasn't so much of marketing as they simply worked, and yes, once in a while you would find a good one that wasn't on the list. My other go too is Malware Bytes. I tell people to install that and run it sight unseen and it normally find a bunch of stuff...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, the one I would never go near, was Norton!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;John-&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jun 2020 23:37:54 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36358#M2756</guid>
      <dc:creator>JKWiniger</dc:creator>
      <dc:date>2020-06-11T23:37:54Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36360#M2757</link>
      <description>Thank you for your help.&lt;BR /&gt;&lt;BR /&gt;Exactly what I was looking for.&lt;BR /&gt;&lt;BR /&gt;Cheers</description>
      <pubDate>Fri, 12 Jun 2020 00:10:57 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36360#M2757</guid>
      <dc:creator>Marcipicus</dc:creator>
      <dc:date>2020-06-12T00:10:57Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36375#M2761</link>
      <description>&lt;P&gt;There are independent test lab reports you could examine on the products.&lt;/P&gt;&lt;P&gt;See&amp;nbsp;&lt;A href="http://www.av-test.org/en/" target="_blank"&gt;www.av-test.org/en/&lt;/A&gt; for example.&lt;/P&gt;&lt;P&gt;Products tend to leap frog each other in terms of features and performance so if it's not a large corporate roll out best to reconsider the alternatives every couple of years.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jun 2020 14:26:12 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36375#M2761</guid>
      <dc:creator>Steve-Wilme</dc:creator>
      <dc:date>2020-06-12T14:26:12Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36379#M2762</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1542574691"&gt;@JKWiniger&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;Also, the one I would never go near, was Norton!&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Hear, hear!&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jun 2020 15:10:40 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36379#M2762</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-06-12T15:10:40Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36386#M2764</link>
      <description>&lt;P&gt;Frankly, I am seeing more major clients simply using Windows Defender from Microsoft and calling it a day. We've add way more than we need at the endpoint, needlessly tying up CPU and memory resources.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you still want a commercial A/V suggest looking at one of the NG or Next Generation lightweight products such as CrowdStrike, Cylance or any other number of good products out there. Personally, I stopped paying for A/V about five years ago when I realized it had been back in the 90s when I detected my last at home virus. Regardless of the product, my other defenses appear to be robust enough to have stopped most everything else.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Safe computing and good luck with your decision.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- b/eads&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jun 2020 18:17:41 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36386#M2764</guid>
      <dc:creator>Beads</dc:creator>
      <dc:date>2020-06-12T18:17:41Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36391#M2765</link>
      <description>&lt;P&gt;I'm here to post another thread about this, because you're asking about AV, and I'm asking about EDR.&amp;nbsp; We just swapped over to Carbon Black, and I'm now weighing the possibility of removing Symantec Endpoint Protection entirely, because of the reputation CB Defense has.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's roughly the same price annually as Symantec, but apparently it's far more robust than signature-based AV defenses.&amp;nbsp; I'll be curious if you've looked at EDR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Off to write my other post!&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jun 2020 19:30:47 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36391#M2765</guid>
      <dc:creator>ericgeater</dc:creator>
      <dc:date>2020-06-12T19:30:47Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36425#M2779</link>
      <description>I agree, we should look more to EDR products rather than simple signature-based AV as it have more robust performance and capabilities, just curious for CB do you have any experience of slow down performance and how it compared with other EDR products like Symantec/ TM/ others?</description>
      <pubDate>Sun, 14 Jun 2020 04:20:18 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36425#M2779</guid>
      <dc:creator>alkuin_melvin</dc:creator>
      <dc:date>2020-06-14T04:20:18Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36430#M2782</link>
      <description>&lt;P&gt;I'm writing this from home, so my notes from the meeting aren't available... but I called CB's tech support so they could explain the difference between their product and SEP.&amp;nbsp; CB is a lightweight client because it only scans your PC at installation.&amp;nbsp; Files are hashed on the PC at scan, and the hashes are uploaded to the cloud in the massive CB database. New software installations also go through the same process.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I inferred that it's possible to install malicious software on your PC, but CB stops the execution (or prevents you from running it) if the risk severity demonstrated by the instant hash comparison determines the program is malicious.&amp;nbsp; That being said, it's doing this work with a live internet connection.&amp;nbsp; i can't say what would happen with a PC that's not connected at that moment.&lt;/P&gt;</description>
      <pubDate>Sun, 14 Jun 2020 12:52:41 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36430#M2782</guid>
      <dc:creator>ericgeater</dc:creator>
      <dc:date>2020-06-14T12:52:41Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36602#M2801</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;As per my suggestion, AV is only traditional way of fighting against new threat landscape. It was old way to find virus and malicious apps. But now trend is changing towards technology which can help not only detection and remediation but also can help in prevention method from such attack. I think CrowdStrike, Morphisec etc. are best now industry and they are next gen. way of detection and prevention method.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Jun 2020 06:17:03 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36602#M2801</guid>
      <dc:creator>Brijesh13</dc:creator>
      <dc:date>2020-06-20T06:17:03Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36604#M2802</link>
      <description>&amp;gt; Brijesh13 (Viewer II) posted a new reply in Tech Talk on 06-20-2020 02:17 AM in&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Hi, As per my suggestion, AV is only traditional way of fighting against new&lt;BR /&gt;&amp;gt; threat landscape. It was old way to find virus and malicious apps. But now trend&lt;BR /&gt;&amp;gt; is changing towards technology which can help not only detection and remediation&lt;BR /&gt;&amp;gt; but also can help in prevention method from such attack. I think CrowdStrike,&lt;BR /&gt;&amp;gt; Morphisec etc. are best now industry and they are next gen. way of detection and&lt;BR /&gt;&amp;gt; prevention method.&lt;BR /&gt;&lt;BR /&gt;As an old (very old) malware researcher, I get really tired of these "AV is dead,"&lt;BR /&gt;"AV needs to be replaced by EPP," etc. type arguments. Most of them are based&lt;BR /&gt;on the "straw man" that antivirus technology was only ever simple, direct&lt;BR /&gt;signature scanning. That's not the case, and never was. There always have been a&lt;BR /&gt;wide variety of technologies under the AV banner, even if *you* never bought&lt;BR /&gt;any. There is activity monitoring, activity restricting, change detection,&lt;BR /&gt;heuristics, and many variations on the themes. (Well before signature scanning&lt;BR /&gt;took over as the major market, the two most widely used antivirals were activity&lt;BR /&gt;monitoring, one static, and one dynamic.) These "new" technologies are simply&lt;BR /&gt;the old standards, with new marketing pitches and buzzphrases.&lt;BR /&gt;&lt;BR /&gt;======================&lt;BR /&gt;rslade@vcn.bc.ca slade@victoria.tc.ca rslade@computercrime.org&lt;BR /&gt;"If you do buy a computer, don't turn it on." - Richards' 2nd Law&lt;BR /&gt;"Robert Slade's Guide to Computer Viruses" 0-387-94663-2&lt;BR /&gt;"Viruses Revealed" 0-07-213090-3&lt;BR /&gt;"Software Forensics" 0-07-142804-6&lt;BR /&gt;"Dictionary of Information Security" Syngress 1-59749-115-2&lt;BR /&gt;============= for back issues:&lt;BR /&gt;[Base URL] site &lt;A href="http://victoria.tc.ca/techrev/" target="_blank"&gt;http://victoria.tc.ca/techrev/&lt;/A&gt;&lt;BR /&gt;CISSP refs: [Base URL]mnbksccd.htm&lt;BR /&gt;PC Security: [Base URL]mnvrrvsc.htm&lt;BR /&gt;Security Dict.: [Base URL]secgloss.htm&lt;BR /&gt;Security Educ.: [Base URL]comseced.htm&lt;BR /&gt;Book reviews: [Base URL]mnbk.htm&lt;BR /&gt;[Base URL]review.htm&lt;BR /&gt;Partial/recent: &lt;A href="http://groups.yahoo.com/group/techbooks/" target="_blank"&gt;http://groups.yahoo.com/group/techbooks/&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://en.wikipedia.org/wiki/Robert_Slade" target="_blank"&gt;http://en.wikipedia.org/wiki/Robert_Slade&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://is.gd/RotlWB" target="_blank"&gt;https://is.gd/RotlWB&lt;/A&gt; &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;</description>
      <pubDate>Sat, 20 Jun 2020 18:30:40 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36604#M2802</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-06-20T18:30:40Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36625#M2805</link>
      <description>&lt;P&gt;Rob, thanks for adding to the topic. I created the post because limited resources do not permit us to investigate a wide range of solutions, such as testing the conditional usefulness of Webroot versus Trend Micro versus Symantec Endpoint.&amp;nbsp; We are functionally literate with SEP, but other AV vendors may do many more jobs than SEP, as you mentioned. We just happen to have no experience or concentration with those technologies or vendors.&amp;nbsp; Time and money, money and time.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The same thing applies to our EDP/EPP, which was only recently introduced after an incident.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;No matter what, our resources will still be finite at the end of the year.&amp;nbsp; I have a scant few months to determine the ongoing value of our EDP/EPP or our SEP antivirus solution, and determine which one "walks the plank" when department spending says we must keep only one.&lt;/P&gt;</description>
      <pubDate>Mon, 22 Jun 2020 14:00:14 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36625#M2805</guid>
      <dc:creator>ericgeater</dc:creator>
      <dc:date>2020-06-22T14:00:14Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36645#M2806</link>
      <description>&amp;gt; ericgeater (Contributor II) posted a new reply in Tech Talk on 06-22-2020 10:00&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Rob, thanks for adding to the topic. I created the post because limited&lt;BR /&gt;&amp;gt; resources do not permit us to investigate a wide range of solutions, such as&lt;BR /&gt;&amp;gt; testing the conditional usefulness of Webroot versus Trend Micro versus Symantec&lt;BR /&gt;&amp;gt; Endpoint.&amp;nbsp; We are functionally literate with SEP, but other AV vendors may do&lt;BR /&gt;&amp;gt; many more jobs than SEP, as you mentioned. We just happen to have no experience&lt;BR /&gt;&amp;gt; or concentration with those technologies or vendors.&amp;nbsp; Time and money, money and&lt;BR /&gt;&amp;gt; time. &amp;nbsp; The same thing applies to our EDP/EPP, which was only recently&lt;BR /&gt;&amp;gt; introduced after an incident. &amp;nbsp; No matter what, our resources will still be&lt;BR /&gt;&amp;gt; finite at the end of the year.&lt;BR /&gt;&lt;BR /&gt;Well, as implied by my post (I hope), you can save a lot of money and time by&lt;BR /&gt;learning the underlying basics, and knowing the right questions to ask of the&lt;BR /&gt;vendor. (The sales guys won't know, of course, but, if you know the foundations,&lt;BR /&gt;somebody will say something that will give you a clue.)&lt;BR /&gt;&lt;BR /&gt;====================== (quote inserted randomly by Pegasus Mailer)&lt;BR /&gt;rslade@vcn.bc.ca slade@victoria.tc.ca rslade@computercrime.org&lt;BR /&gt;It is by the goodness of God that in our country we have those&lt;BR /&gt;three unspeakably precious things: freedom of speech, freedom of&lt;BR /&gt;conscience, and the prudence never to practice either of them.&lt;BR /&gt;- Mark Twain (1835-1910), Following the Equator (1897)&lt;BR /&gt;victoria.tc.ca/techrev/rms.htm &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;&lt;BR /&gt;&lt;A href="https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413" target="_blank"&gt;https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413&lt;/A&gt;</description>
      <pubDate>Mon, 22 Jun 2020 21:02:40 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36645#M2806</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2020-06-22T21:02:40Z</dc:date>
    </item>
    <item>
      <title>Re: CISSP Advice on windows 10 antivirus</title>
      <link>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36681#M2807</link>
      <description>&lt;P&gt;And of course if you've a locked down build with limited use cases you could look at application whitelisting as an additional defence.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 24 Jun 2020 08:35:09 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/CISSP-Advice-on-windows-10-antivirus/m-p/36681#M2807</guid>
      <dc:creator>Steve-Wilme</dc:creator>
      <dc:date>2020-06-24T08:35:09Z</dc:date>
    </item>
  </channel>
</rss>

