LogRhythm innovations prioritise speed, efficiency
LogRhythm, the company helping security teams stop breaches by turning disconnected data and signals into trustworthy insights, has announced its 7th consecutive quarterly release. The continued momentum of releases cement LogRhythm’s commitment to driving innovation and addressing the cybersecurity industry’s greatest challenges in defending against digital weaponisation, the company said.
This announcement follows the 200+ new features released
throughout 2023 across the company’s self-hosted and cloud-native SaaS
security information and event management (SIEM) platforms, LogRhythm SIEM and LogRhythm Axon.
“As LogRhythm's SIEM capabilities continue to expand, our primary goal remains delivering powerful security platforms that help customers quickly and confidently secure their environments,” said Chris O’Malley, CEO of LogRhythm.
“Whether our customers prefer the control and customisation of a self-hosted solution or the scalability and agility of the cloud, LogRhythm provides the tools and expertise to navigate the evolving threat landscape with confidence.”
One instance of helping security operations centre teams and security analysts become more productive are new capabilities for LogRhythm Axon. Fewer clicks are now required for investigations with patent-pending, integrated methodology that centralises case-related information. Unlike other vendors, seamless integration with broad case management improvements provides a unified view of each case within the user interface. Analysts no longer need to switch to separate search windows when drilling down for additional investigations.
Other highlights include:
Expanded SaaS-based and cloud-native security with LogRhythm Axon
- New, patent pending interactive single screen investigation reduces mean time to respond (MTTR) by highlighting contextual insights of cases with drill-down capabilities of log sources and security analytics in a single pane of glass
- Improved Assisted Search feature increases analysts' productivity with suggestions of recent searches, search lists, and search queries
- Additional collector for Microsoft Office 365 Management API expands visibility by enabling monitoring, analysis, and data visualisations about user, admin, and policy actions from Office 365 and Microsoft Entra
- Enhancements to Axon Agent management increases efficiency for on-prem data collection by making it easier to deploy and upgrade agents
Improved log source onboarding and experience with self-hosted LogRhythm SIEM
- Expanded support to onboard additional Beats and Open Collectors from a single location, cutting the workload in half
- Simplified Windows Event log onboarding and improved analyst workflows when reviewing alarm notifications
- Broadened LogRhythm’s library of supported log sources and parsing capabilities to enhance the SIEM’s ability to correlate and analyse data effectively
LogRhythm NDR
- Toggle button to hide safelisted items in the Hunt Activity Page
- Expanded IP geolocation contextualisation with country and region
- Enhancements to detection engines of machine learning DNS models reduces false positives
Comments
Post a Comment