Skip to main content
Explainers

Tanium Use Case: Prevent Execution of Unwanted Applications

To note: This blog references Tanium Protect, which has since evolved into Tanium Enforce. The capabilities and workflows described remain relevant, but the feature name has changed to reflect its expanded functionality. Learn more about Enforce and its enhanced capabilities.

Application control, through whitelisting or blacklisting, reduces endpoint attack surface and is important to a well-rounded security strategy. Tanium Protect empowers organizations to restrict application execution with lightweight, natively available security controls and provides near-real-time visibility of attempted violations.

In the video below, we show you how you can use Tanium Protect to create, deploy and query an application whitelist. Using AppLocker policies, you can prevent unwanted executables from running on your endpoints, or only allow certain applications to run on endpoints.

Additional resources

In this Tanium Community best practice blog, we explain how to use Tanium Protect for blacklisting through an example of blacklisting the application DropBox and show how you can use Tanium Protect capabilities to prevent an unwanted application from running in your environment.

Interested in seeing Tanium in action? Schedule a one-to-one demo or attend our weekly webinar. Talk to our Tanium experts at our upcoming events.