At RSA, we gather the brightest minds in the security sector to address the evolving risk landscape. Our secure enterprise browsing solution is on display, demonstrating how organizations can safeguard their corporate data.
We are excited to share several new features that enhance Chrome and Chrome Enterprise, focusing on browser hardening and improved download controls. Here are five significant ways our enterprise browser reinforces security:
1. Preventing Session Hijacking and Cookie Theft
Chrome's introduction of Device Bound Session Credentials (DBSC) marks a significant advancement in session security. By linking session cookies to specific devices, we mitigate the risk of session hijacking. Even if an attacker steals session cookies, they are rendered useless on any device other than the authenticated one, ensuring the safety of corporate accounts and data.
2. Securing Data at Rest
Security extends beyond browser usage; it also involves protecting data when the browser is closed. Our browser cache encryption ensures that cached data on a device's hard drive is fully encrypted. This means that if a laptop is lost or stolen, unauthorized parties cannot access the cached information, providing reassurance for both organizations and employees.
3. Combating Infostealer Malware
With the rise of Infostealer malware, safeguarding sensitive browser data is crucial. Our App-bound encryption prevents unauthorized software from accessing browser data, significantly lowering the risk of malware-driven breaches by ensuring that only the browser can access its data.
4. Enhancing Control Over Data Downloads
To maintain a secure perimeter, we have implemented enhanced download controls that allow IT administrators to enforce strict policies on file storage locations. Administrators can now require that Chrome downloads be directed to Google Drive, with similar capabilities for Microsoft One Drive on the horizon. This is essential for protecting data in a hybrid work environment.
5. Strengthening Secure Access with Partners
Chrome Enterprise collaborates with leading security solution providers to enhance security for enterprises, especially concerning unmanaged devices. For instance, our partnership with Citrix allows secure access to SSH and RDP workloads while implementing protections against keylogging. Additionally, our collaboration with Okta provides enhanced antivirus signals to support access decisions, further securing enterprise environments.
For more information about Chrome Enterprise and its advanced security features, visit our website.