White Papers

Table Of Contents
Technical Advisories
The Dell Trusted Device agent is part of the Dell SafeBIOS product portfolio. The Trusted Device agent includes BIOS
Verification, Image Capture, and BIOS Events & Indicators of Attack.
BIOS Verification provides customers with affirmation that devices are secured below the operating system, a place where IT
administrator visibility is lacking. It enables customers to verify BIOS integrity using an off-host process without interrupting
the boot process. After the Trusted Device agent runs on the endpoint, a pass or fail result (0 or 1) displays in some of these
locations:
Web browser
Command-line
Registry entry
Event Viewer
Logs
BIOS Events & Indicators of Attack enables administrators to analyze events in the Windows Event Viewer that may indicate
bad actors targeting BIOS on enterprise endpoints. Bad actors change BIOS attributes to gain access to enterprise computers
locally or remotely. These attack vectors can be monitored then mitigated through the BIOS Events & Indicators of Attack
features' ability to monitor BIOS attributes.
Contact Dell ProSupport
For questions or concerns with the Dell Trusted Device agent, go to chat support.
Call 877-459-7304, extension 4310039 for 24x7 phone support for your Dell product.
Also, online support for Dell products is available at dell.com/support. Online support includes drivers, manuals, technical
advisories, FAQs, and emerging issues.
Be sure to help support quickly connect you to the right technical expert by having your Service Tag or Express Service Code
available when you call.
For phone numbers outside of the United States, see Dell ProSupport International Phone Numbers.
New Features and Functionality v3.6
Trusted Device v3.6 now includes Intel ME Verification. The Intel Management Engine (Intel ME) is an independent
microcontroller that is built into Intel processor chipsets manufactured starting in 2008. Intel ME provides an interface
between the operating system, hardware, and BIOS. Additionally, Intel ME is granted extensive system-level privilege and
runs in every power state.
The Trusted Device agent scans and verifies that Intel ME firmware is present and untampered after initial installation,
startup, and every 24 hours. For additional information including types of events and event location, see the Trusted Device
Installation and Administrator Guide.
Trusted Device v3.6 now included SIEM integration. Security Information Event Management (SIEM) solutions aggregate
data from multiple sources in your enterprise. SIEM enables administrators to identify trends and unusual behavior or to
perform real-time analysis of alerts that are generated by applications and hardware.
Data aggregated through SIEM can be transformed into charts and graphs on a dashboard to facilitate use. This helps
administrators ensure that the enterprise maintains security compliance and protection against bad actors.
Trusted Device can be integrated with SIEM solutions and supports the following features:
BIOS Verification
BIOS Events & Indicators of Attack
Image Capture
Security Risk Protection Score
1
Technical Advisories 5