Endpoint Compliance
Find and fix gaps in endpoint security, all from a simple network appliance.
SANS Critical Security Controls - See how NAC closes gaps.
Download »
EMA analyst report on assuring network access control (NAC) success. Download »
IDC analyst report on architecting a mobile security/BYOD strategy. Download »
Control who and what is accessing your network with CounterACT.
View the datasheet »
Learn more about ForeScout solutions by downloading the brochure. Download »
The Tolly Group evaluates
the leading NAC products
across 34 criteria points.
Download report »
Enable any means access to corporate network resources without compromising security. Download Snapshot»
Gartner 2012 NAC Magic Quadrant. Download Report»
CounterACT in Action Feature Film (<3 min) Watch Video»
Learn more about ForeScout solutions by downloading the brochure.
Download »
EMA analyst report on assuring network access control (NAC) success.
Download »
IDC analyst report on architecting a mobile security/BYOD strategy.
Download »
Find and fix gaps in endpoint security, all from a simple network appliance.
ForeScout CounterACT is an automated security control platform that delivers real-time visibility and control of all devices on your network. ForeScout CounterACT automatically measures compliance with your security policies and remediates endpoint security deficiencies.
Many organizations spend millions on endpoint security tools – such as antivirus, encryption, data loss prevention (DLP), and so on – only to have end users turn off or disable those tools. Even in well-managed enterprises, host-based security tools typically do not work properly on at least 20% of systems.
Obtaining an accurate picture of what is happening on your network is extraordinarily difficult. Security teams are often unaware that the information provided to them by existing agent-based security systems (Symantec, McAfee, Trend, Sophos, etc.) or patch management systems (BigFix, Lumension, Microsoft, etc.) is incorrect. Despite the availability of sophisticated security tools, Microsoft reported in 2007 that fewer than 50% of their endpoint computers were fully compliant with their security policies.
Another problem is the fact that auditing policy compliance consumes time and resources that can be doing other things. Security teams do the best they can with limited resources, but they need automated tools to audit endpoint compliance, and provide remediation services when required.
ForeScout CounterACT solves these problems. ForeScout CounterACT can ensure that every endpoint on your network is compliant with your security policies. For example, CounterACT can ensure that antivirus is up-to-date, the operating system is properly patched, and the computer is free of illegitimate software such as P2P. Because ForeScout CounterACT is agentless, it works with all type of endpoints–managed and unmanaged, known and unknown, physical and virtual. CounterACT can discover weaknesses in your existing agent-based security systems that would otherwise go undetected.
When CounterACT discovers a security problem, it can automatically fix the problem, or it can leverage your existing remediation or helpdesk systems.
ForeScout CounterACT automatically enforces security policies for everyone and everything on your network, which helps minimize your security risks. Features include:
ForeScout CounterACT lets you create security policies that are right for your enterprise. Pre-built policy templates and wizards speed creation of the policies, and a built-in knowledgebase of common security configurations make it easy.
ForeScout CounterACT can identify non-compliant computers – who owns them, where they are, and how they are non-compliant with your security policies. A few examples of security posture information that CounterACT can see are:
ForeScout CounterACT will detect when devices or users are out of compliance with your security policy. Track down users who are engaging in risky behavior such as using P2P applications, USB drives, smart phones, and other unauthorized activities. Non-compliant computers and/or users will be displayed in the main console, including reason for non-compliance and complete details such as location of the device. CounterACT’s built-in compliance dashboard and canned reports let you monitor overall compliance trends.
When CounterACT detects a policy violation, CounterACT can automatically take action such as alert, advise, restrict, remediate, and disable. Unlike other products, CounterACT gives you a wide range of actions to choose from, including just-in-time notification to end-users that they have just violated security policy.
ForeScout CounterACT includes a wide range of endpoint remediation actions. CounterACT can direct the anti-virus server to auto-update the non-compliant host, or it can prompt the patch management system to update the device’s operating system, or it can disable unauthorized software. The complete range of actions is shown below.

ForeScout CounterACT’s automated security control system helps organizations improve security while saving money.
Watch how ForeScout CounterACT lets IT managers manage security.
Watch how ForeScout CounterACT lets IT managers remediate security.
Watch how ForeScout CounterACT integrates with the ArcSight SEIM platform to provide better security risk awareness and more automated security threat response.
Click image to enlarge.
Compliance DetailForeScout CounterACT identifies security gaps on your network, such as security agents that are not working or not up-to-date.
Windows PC inventory with missing updatesForeScout CounterACT shows you in realtime which PCs on your network contain vulnerabilities.