BlackBerry Cylance

Cybersecurity for SMB and Enterprises

Protect your organization with an end-to-end approach to endpoint security deeply rooted in Cylance® artificial intelligence (AI) and machine learning (ML). BlackBerry cybersecurity solutions provide enhanced visibility and protection against current and future cyberthreats.

Security, Trust and Innovation.

The Internet of Things represents the next great wave in business transformation. Today, BlackBerry already secures more than 500M endpoints including over 195M vehicles. Through independent research, Frost & Sullivan determined that BlackBerry is well positioned to secure all IoT endpoints, and upwards of 96% of all cyberthreats in the current landscape. BlackBerry is leading the way with a single platform for securing, managing and optimizing how intelligent endpoints are deployed in the enterprise, enabling our customers to stay ahead of the technology curve that will reshape every industry.

AI-powered Endpoint Detection and Response Platform

Acquired by BlackBerry, Cylance is an AI-driven endpoint detection and response (XDR) platform that allows companies to intelligently strengthen, automate, and streamline their overall endpoint security efforts 24/7/365. Able to catch and mitigate highly advanced security threats as they emerge in real-time, Cylance’s EDR capabilities allow security teams to keep critical company assets protected from modern cyberattacks with no impact on endpoint performance whatsoever.

Easy and Quick Deployment

CylancePROTECT and CylanceOPTICS are deployed faster than traditional EDR solutions.

Advanced Protection

Advanced AI and machine-learning capabilities catch unknown, zero-day threats, and prevent malware from executing in mission-critical areas.

Lightweight Agent

Cylance’s endpoint agents are incredibly lightweight and require only a tiny fraction of processing power, helping minimize any performance impact on the endpoint.

Signatureless Security

Rather than rely on traditional signatures to detect threats, Cylance’s AI-driven-signatureless design allows companies to catch unknown threats with minimal effort.


Cylance Solutions Overview


Using artificial intelligence as a driving force behind its threat prevention efforts, CylancePROTECT is an endpoint detection and response (EDR) tool that efficiently protects company endpoints from critical threats legacy EDR solutions may miss. In addition to its strong protection against known cyber threats, CylancePROTECT can effectively prevent highly advanced or previous unknown threats, including fileless, memory-based, and zero-day cyberattacks.

  • • AI-driven malware protection
  • • Zero-day threat prevention
  • • Low-performance impact on endpoint
  • • Application control and device policy enforcement
  • • Memory exploitation detection and prevention

Memory Exploitation Protection

CylancePROTECT provides additional security coverage by preventing file exploitations from executing in highly vulnerable and challenging areas, such as the operating system or memory layers.

Application Control

Cylance’s application control capabilities ensure fixed-function devices perform optimally and remain uncompromised at all times. Security teams have the ability to lock down devices and restrict changes to mitigate any malicious changes they may be attempted.


CylancePROTECT gives security teams complete control over where scripts are run, when, and how to greatly reduce the risk of malicious scripts being executed in a company’s network.

Device Control

System administrators can customize device policies and enforce those policies automatically. USB mass storage devices, for example, can be blocked automatically to avoid any unauthorized and/or malicious data transfers.

Management Console Reporting

Through a rich and interactive single dashboard provided by Cylance, security teams can monitor device usage and security data for all their endpoints across the network in real-time. Critical data from CylancePROTECT, such as total device count, active threat events, memory protection coverage, auto-quarantine coverage, and other useful information, can be tracked here.


CyberOPTICS is an incident prevention EDR module that operates within the CylancePROTECT environment. CylanceOptics provides the data visualization, alert automation, and incident response capabilities security teams need to proactively catch and eliminate emerging cyber threats.

  • • Rapid installation and deployment
  • • Zero-latency threat detection
  • • Automated threat detection and prevention
  • • Remote forensic data collection
  • • Syslog integration