Trellix

Application and Change Control

Run what’s trusted, block what’s risky — seamless security for your endpoints

About Trellix Application and Change Control

Trellix Application and Change Control is a combined platform for a more robust security.

Application Control prevents unauthorized executables on servers, desktops, and devices through dynamic whitelisting and proactive management, ensuring only trusted software runs and protecting against malware and zero-day attacks.

Change Control protects critical files and registry keys from unauthorized changes with write/read protection and real-time monitoring. Thus, the solution provides centralized control over endpoints, servers, and devices while maintaining robust security and performance.

Trellix Application and Change Control Features

Intelligent Whitelisting

Protect against zero-day and APT attacks by blocking unauthorized applications from running. With dynamic allow-list management, IT administrators no longer need to manually update approved application lists. Application Control automatically groups executables (binaries, libraries, and drivers) across your organization for streamlined security.

Advanced Memory Protection

Defend against zero-day and memory buffer overflow attacks with multiple memory-protection techniques that go beyond native Windows security. These techniques prevent even trusted applications from being exploited, providing additional layers of protection on both 32-bit and 64-bit Windows systems.

Powerful Built-In Suggestions

Quickly identify and resolve vulnerabilities, compliance issues, and security gaps using inventory search and pre-defined reports for fast, effective action.

Real-Time Monitoring

Change Control tracks file and registry changes in real time, eliminating the need for multiple endpoint scans to detect violations and ensuring timely responses to potential threats.

Complete and Fast Response

Leverage global threat intelligence from Trellix GTI, a powerful technology that tracks file, message, and sender reputations in real time using millions of global sensors, enhancing your security response capabilities.

Advanced Execution Control

Enhance protection by combining multiple rules — file name, process name, parent process name, command line parameters, and username — ensuring tighter control over execution behavior.

Observation Mode

Test and discover policies for dynamic desktop environments without enforcing a whitelisting lockdown, allowing for seamless deployment in pre-production environments.

Trellix Application and Change Control Benefits

  • Minimize Threats from Unapproved Applications

    Protects control points, servers, and devices from advanced persistent threats (APTs) using local and global reputation intelligence, real-time behavioral analytics, and auto-immunization of endpoints.

  • Flexible Security Posture

    Empowers organizations to tailor their whitelisting strategy for threat prevention, balancing security with user flexibility in cloud and social-driven environments.

  • User-Driven Application Management

    Enables users to contribute to security by providing IT-approved options for installing new applications through user notifications and self-approvals.

Related Resources

Trellix® Application and Change Control

Comprehensive protection against uninvited changes to or unauthorized control of applications, endpoints, servers, and fixed function devices

Show more

Order a consultation

Get free professional advice on manufacturers, products and services