LogRhythm 7.2 Boosts Effectiveness and Efficiency of Enterprise SOCs
More powerful machine analytics, embedded security orchestration, automation, and response (SOAR), and enhanced performance at scale extend differentiation for company’s threat lifecycle management solution
BOULDER, Colorado—November 17, 2016—LogRhythm, The Security Intelligence Company, today announced the release of LogRhythm 7.2, a major upgrade to its leading security intelligence and analytics platform. Purpose-built to power the next-generation security operations center (SOC), LogRhythm’s platform is now further optimized to deliver the industry’s most efficient, effective end-to-end threat lifecycle management solution. This release extends LogRhythm’s lead in providing the most accurate security analytics with embedded security automation and orchestration to help customers quickly detect, respond to and neutralize cyberthreats before they result in a material breach.
The risk of a breach is climbing steadily, and cloud and internet of things (IoT) deployments further expand the enterprise attack surface. Enterprise security operations teams recognize that executing end-to-end threat lifecycle management is the only way to effectively manage that risk. However, most are understaffed and overwhelmed, lacking the necessary analytics, automation, and orchestration to stay ahead.
LogRhythm 7.2 addresses these issues by delivering unmatched capabilities in four key areas: scalability; machine data intelligence; user and entity behavior analytics (UEBA); and embedded security orchestration, automation, and response.
“Armed with finite resources to battle a staggering number of possible security threats, CISOs are desperately trying to realize an effective end-to-end threat lifecycle management capability,” said Chris Petersen, CTO and co-founder of LogRhythm. “Whether you support a massive 24x7 global security operations center or a small virtual SOC, LogRhythm 7.2 will amplify your organization’s ability to rapidly detect, investigate, and neutralize threats.”
Large enterprises are already harnessing the power of LogRhythm 7.2. “LogRhythm’s product is soaring to new heights,” said Michael Meline, IT security manager from Kootenai Health. “LogRhythm is putting customers first by developing features collaboratively with users. The Threat Intelligence Service in LogRhythm 7.2 is more actionable and helpful than 7.1 in surfacing important data for better incident response through security orchestration, automation, and response.”
Highlights of the LogRhythm 7.2 security intelligence and analytics platform include:
Greater efficiency, designed for massive environments
LogRhythm 7.2 provides up to 200 percent improvement in data processing and indexing performance to help customers cost-efficiently scale, especially in high-volume environments such as those exceeding 100,000 messages per second. What’s more, fully-automated data source onboarding saves countless hours of administration time in large environments.
Industry’s most accurate security analytics supports even more data sources
LogRhythm 7.2 extends the depth of the platform’s patented Machine Data Intelligence Fabric™, a feature that automatically extracts contextual meaning from data to enable the most accurate and powerful security analytics. Specifically, LogRhythm 7.2 delivers advanced threat detection capabilities by expanding its industry-leading data schema with more than 20 additional metadata fields. These added fields complement the platform’s industry-leading support for over 785 unique data sources. LogRhythm 7.2 also advances customers’ visibility into cloud-based systems, including AWS, Salesforce, Box and Microsoft Office 365.
Only SIEM provider to deliver “one-stop-shop” for holistic threat detection across user, network, and endpoint-borne threats
LogRhythm 7.2 customers will see accelerated detection and investigation of user-borne risks—such as compromised accounts and insider threats – due to extensive enhancements to the User and Entity Behavioral Analytics (UEBA) module. The UEBA module extensions also include new threat detection algorithms, stronger kill-chain corroboration and new real-time dashboards for more targeted threat hunting.
Eliminates costly and inefficient workflow API integrations via embedded Security Orchestration, Automation, and Response
Security teams will realize improved efficiency and more rapid response to threats thanks to the security orchestration, automation, and response capabilities embedded into the new LogRhythm 7.2 platform. What’s more, this embedded function minimizes total cost of ownership by eliminating the need to buy, integrate and maintain expensive third-party solutions and API integrations. LogRhythm 7.2 delivers extensive workflow and UI enhancements based on real-world customer feedback, such as direct in-workflow access to threat intelligence services. The release also adds 20 new SmartResponse™ actions that provide customers with automated playbooks for optimal incident response.
LogRhythm is a world leader in NextGen SIEM, empowering organizations on six continents to successfully reduce risk by rapidly detecting, responding to and neutralizing damaging cyberthreats. The LogRhythm platform combines user and entity behavior analytics (UEBA), network traffic and behavior analytics (NTBA) and security automation & orchestration (SAO) in a single end-to-end solution. LogRhythm’s Threat Lifecycle Management (TLM) framework serves as the foundation for the AI-enabled security operations center (SOC), helping customers measurably secure their cloud, physical and virtual infrastructures for both IT and OT environments. Built for security professionals by security professionals, the LogRhythm platform has won many accolades, including being positioned as a Leader in Gartner’s SIEM Magic Quadrant.