Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
To effectively identify sophisticated threats, it is essential to conduct thorough inspection, extraction, and real-time analysis of all types of content traversing the network. Fidelis' network detection and response technology systematically scans all ports and protocols in both directions, gathering extensive metadata that serves as the foundation for robust machine-learning analytics. By utilizing sensors for direct, internal, email, web, and cloud communications, you achieve comprehensive network visibility and coverage. The tactics, techniques, and procedures (TTPs) of identified attackers are aligned with the MITRE ATT&CK™ framework, enabling security teams to proactively address potential threats. While threats may attempt to evade detection, they ultimately cannot escape. You can automatically profile and categorize IT assets and services, including enterprise IoT devices, legacy systems, and shadow IT, to create a detailed map of your cyber landscape. Furthermore, when combined with Fidelis' endpoint detection and response offering, you obtain a software asset inventory linked to known vulnerabilities, such as CVE and KB references, along with an assessment of security hygiene concerning patches and the status of endpoints. This comprehensive approach equips organizations with the tools needed to maintain a resilient cybersecurity posture.
Description
The NetWitness Platform integrates advanced SIEM and threat defense tools, providing exceptional visibility, analytical power, and automated response functions. This integration empowers security teams to enhance their efficiency and effectiveness, elevating their threat-hunting capabilities and allowing for quicker investigations and responses to threats throughout the organization’s entire infrastructure, whether it is located in the cloud, on-premises, or virtual environments. It offers the crucial visibility necessary for uncovering complex threats concealed within today’s multifaceted hybrid IT ecosystems. With its capabilities in analytics, machine learning, orchestration, and automation, analysts can more swiftly prioritize and probe into potential threats. The platform is designed to identify attacks in a significantly shorter time frame compared to other solutions and links incidents to reveal the comprehensive scope of an attack. By gathering and analyzing data from multiple capture points, the NetWitness Platform significantly speeds up the processes of threat detection and response, ultimately enhancing the overall security posture. This robust approach ensures that security teams are always a step ahead of evolving threats.
API Access
Has API
No
API Access
Has API
No
Integrations
Google Digital Risk Protection
Yes
ThreatConnect Risk Quantifier (RQ)
Yes
AWS AppFabric
No
BackBox
No
Carbon Black EDR
No
Chronicle SOAR
No
D3 Smart SOAR
No
Fidelis Endpoint
Yes
Fidelis LRM
Yes
Intellicta
Yes
Integrations
Google Digital Risk Protection
Yes
ThreatConnect Risk Quantifier (RQ)
Yes
AWS AppFabric
Yes
BackBox
Yes
Carbon Black EDR
Yes
Chronicle SOAR
Yes
D3 Smart SOAR
Yes
Fidelis Endpoint
No
Fidelis LRM
No
Intellicta
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
Fidelis Security
Founded
2002
Country
United States
Website
fidelissecurity.com/products/network/
Vendor Details
Company Name
NetWitness
Founded
1997
Country
United States
Website
www.netwitness.com
Product Features
Data Loss Prevention
Compliance Reporting
No
Incident Management
No
Policy Management
No
Sensitive Data Identification
No
Web Threat Management
No
Whitelisting / Blacklisting
No
Network Traffic Analysis (NTA)
Anomalous Behavior Detection
No
High Bandwidth Usage Monitoring
No
Historical Behavior Data
No
Identify High Network Traffic Sources
No
Network Transaction Visibility
No
Stream Data to IDR or Data Lake
No
Traffic Decryption
No
Product Features
Endpoint Detection and Response (EDR)
Behavioral Analytics
Yes
Blacklisting/Whitelisting
No
Continuous Monitoring
Yes
Malware/Anomaly Detection
Yes
Prioritization
Yes
Remediation Management
Yes
Root Cause Analysis
Yes
Log Management
Archiving
No
Audit Trails
No
Compliance Reporting
No
Consolidation
No
Data Visualization
No
Event Logs
No
Network Logs
No
Remediation
No
Syslogs
No
Thresholds
No
Web Logs
No
SIEM
Application Security
No
Behavioral Analytics
No
Compliance Reporting
No
Endpoint Management
No
File Integrity Monitoring
No
Forensic Analysis
No
Log Management
No
Network Monitoring
No
Real Time Monitoring
No
Threat Intelligence
No
User Activity Monitoring
No