New Application Security Platform to Stop Bot Attacks
Malicious bots now account for nearly 1/3 of total Internet traffic
November 13, 2018 – Sunnyvale, CA – Cequence Security today announced Cequence ASP, an innovative application security platform that provides an effective, scalable defense against the growing number of bot attacks affecting today’s hyper-connected organizations. These financially-motivated attacks target externally-facing web and mobile apps, as well as API services that provide critical connections to other applications across their digital ecosystem. Attack objectives can include account takeover, content scraping, distributed denial of service, and much more.
“From a bad actor’s perspective, geo-distributed bot attacks are relatively easy to plan and execute,” said Larry Link, President and CEO of Cequence Security. “For that reason, malicious bots are becoming the new #1 attack threat facing every organization that leverages web, mobile, and API apps for business processes and customer engagement. Cequence ASP effectively empowers customers to stop these attacks.”
Cequence ASP is unique because it was built not only as a distributed, extensible, open software platform, but also as a highly automated solution leveraging a patent-pending analytics engine (CQAI), which combines applied artificial intelligence, machine learning, and behavioral analysis to deliver three key values to customers:
- Discover – The solution automatically discovers all web, mobile, and API applications deployed across the entire organization, providing insight into critical assets that must be protected.
- Detect – Metadata from client-server traffic flowing across the organization is continuously ingested, correlated, and analyzed in real time by the CQAI engine to automatically determine the source, target, and intent of potentially malicious attacks.
- Defend – Once an attack is confirmed, Cequence ASP can immediately and automatically end the attack by applying multiple policy-based mitigation techniques, including blocking, deception, rate limiting, and more.
“These automation capabilities deliver important bot defense values, but we also wanted to focus on improving the productivity of IT security teams,” explained Shreyans Mehta, CTO and co-founder of Cequence Security. “The CQAI engine helps improve productivity, but we’ve also eliminated the tedious, time-consuming task of dealing with JavaScript injections and SDK modifications for each web and mobile application. This outdated process is still a requirement of first-generation bot defense products and can waste hundreds of staff hours each year. We’ve restored that lost productivity.”
Because Cequence ASP is an open, distributed software platform, it offers other important benefits to customers:
- Flexible Deployment – The Cequence solution can be rapidly deployed on premise or in the cloud, across any number of locations, and still be managed as a single application security platform.
- Architecture Integration – The open APIs within the Cequence platform make it easy to exchange relevant data with SIEMs, WAFs, anti-fraud systems and other devices, and integrate with a customer’s security operations and incident response processes.
- Fast Time-to-Value – Rapid deployment options, combined with automated application discovery, zero-touch application configuration, and CQAI automated analytics, collectively help minimize operational complexity and accelerate time-to-value for customers.
Named a 2018 Gartner Cool Vendor, Cequence Security has already deployed its platform in the production environments at several Internet-powered organizations, including a Fortune 100 multinational financial services corporation and a Fortune 500 cosmetics retailer. “We’re very pleased with our early market recognition, traction, and the fact that well-known brands are trusting us to protect their businesses from these disruptive and costly attacks,” added Larry Link.
In 2019, Cequence Security plans to significantly expand the capabilities of its ASP platform and go beyond its initial focus on defense against automated bot attacks. “The core functionality of the platform – including the CQAI engine – is already in place,” explained Ameya Talwalkar, Chief Product Officer and co-founder of Cequence Security. “Moving forward, we plan to deliver multiple new security service modules that customers want to have consolidated within our platform. Many of these are already in development, but we will announce them in early 2019 once they are available for deployment.”
The Cequence ASP platform is bundled with the initial service module, CQ botDefense. The solution is offered with a tiered, subscription-based pricing model, starting at $150,000/year based on 10 million transactions per day.
About Cequence Security
Cequence Security delivers automated security software solutions for today’s hyper-connected organizations that rely on web, mobile, and API application services to support business processes and enable customer engagements. Cequence products not only strengthen the security posture of these organizations, but also deliver the automation needed to improve the productivity and efficiency of IT resources. The Cequence Security management team includes former leaders of Palo Alto Networks and Symantec. The company is venture-backed and headquartered in Sunnyvale, CA. Learn more at www.cequence.ai.