3
PRODUCT BRIEF If you are a network architect, security engineer, security forensic specialist, analyst, or administrator, you have to to be wondering: Can your organization confidently handle the growing number of cybersecurity threats that can attack your technology differently whether on premises and in cloud networks? Here’s the answer you have been looking for: AT&T Threat Manager powered by Threat Intellect SM can identify cybersecurity risks to your organization faster and more accurately than ever before. What’s more, this advanced threat analysis and monitoring solution is empowered by AT&T expert analysts ready to prioritize and help protect your most important enterprise assets, whether on premise or in the cloud. Potential Benefits AT&T Threat Manager powered by Threat Intellect offers a rich set of technical features: 90 days hot storage and up to 1 year cold storage with Glacier storage kept for the entirety of your Threat Manager contract Export event logs as CSV through customer portal Refined event correlation with the ability to apply user and entity behavior analytics Support for nearly 1,000 device and service logs Seamless interface to monitor both cloud and on premise assets in a single portal Extensible framework enables constant evolution and growth while continually adding features in a modular fashion Integration of all managed security services products on portal view APIs to export dashboards and widgets to other platforms for internal reporting Executive dashboard with an organization-wide view Compliance dashboards are available to help monitor standards such as PCI, HIPAA and controls for the NIST CSF Predefined compliance reporting templates Protect your most important enterprise assets on premises and in the cloud AT&T Managed Security Services AT&T Threat Manager Identify cybersecurity risks to your enterprise technology faster and more accurately than ever before with an enhanced threat analysis and monitoring solution.

AT&T Managed Security Services AT&T Threat Manager Protect … · security engineer, security forensic specialist, analyst, or administrator, ... the ability to apply user and entity

  • Upload
    others

  • View
    2

  • Download
    0

Embed Size (px)

Citation preview

Page 1: AT&T Managed Security Services AT&T Threat Manager Protect … · security engineer, security forensic specialist, analyst, or administrator, ... the ability to apply user and entity

P R O D U C T B R I E F

If you are a network architect, security engineer, security forensic specialist, analyst, or administrator, you have to to be wondering: Can your organization confidently handle the growing number of cybersecurity threats that can attack your technology differently whether on premises and in cloud networks?

Here’s the answer you have been looking for: AT&T Threat Manager powered by Threat IntellectSM can identify cybersecurity risks to your organization faster and more accurately than ever before. What’s more, this advanced threat analysis and monitoring solution is empowered by AT&T expert analysts ready to prioritize and help protect your most important enterprise assets, whether on premise or in the cloud.

Potential BenefitsAT&T Threat Manager powered by Threat Intellect offers a rich set of technical features:• 90 days hot storage and up to

1 year cold storage with Glacier storage kept for the entirety of your Threat Manager contract

• Export event logs as CSV through customer portal

• Refined event correlation with the ability to apply user and entity behavior analytics

• Support for nearly 1,000 device and service logs

• Seamless interface to monitor both cloud and on premise assets in a single portal

• Extensible framework enables constant evolution and growth while continually adding features in a modular fashion

• Integration of all managed security services products on portal view

• APIs to export dashboards and widgets to other platforms for internal reporting

• Executive dashboard with an organization-wide view

• Compliance dashboards are available to help monitor standards such as PCI, HIPAA and controls for the NIST CSF

• Predefined compliance reporting templates

Protect your most important enterprise assets on premises and in the cloud

AT&T Managed Security ServicesAT&T Threat Manager

Identify cybersecurity risks to your enterprise technology faster and more accurately than ever before with an enhanced threat analysis and monitoring solution.

Page 2: AT&T Managed Security Services AT&T Threat Manager Protect … · security engineer, security forensic specialist, analyst, or administrator, ... the ability to apply user and entity

P R O D U C T B R I E F

AT&T Managed Security ServicesAT&T Threat Manager

Protect your data—and your business technology

An advanced threat analysis and security solution, AT&T Threat Manager enables you to identify threat patterns and more accurately predict threats using insights and intelligence derived from one of the most robust datasets in the world.

As part of the Threat Manager solution, Threat IntellectSM automates security protections to quickly address vulnerabilities, reduces false positives, and supports compliance while proactively and reactively addressing new threats. This means you can safely scale your business to the cloud by actively analyzing logs and alerts from all of your devices, systems, and cloud-based services in Amazon AWS. This in turn gives you the ability to see all activity and threats in one view.

Our global operation centers are able to detect and respond to billions of actual threat events daily, helping to ensure that your channels are secure—and stay secure.

How AT&T Threat Manager powered by Threat Intellect worksRelevant security log and event information is collected from your firewalls, servers, intrusion prevention sensors, and other on-premises and cloud-based devices, including security controls within the AT&T network, or on your premises using our agent-less

parser/aggregator technology. This information is correlated by an AT&T event management system which prioritizes threats based on their risk to you and the ability to mitigate them.

Although Threat Manager can process a single stream of data, a diverse set of “feeds” from security devices and services is recommended to a multi-layered view of identified threats to your systems and data. The intelligence produced is reviewed by a team of AT&T expert security analysts to make the most optimal security recommendations to you regarding identified threats. This allows your security personnel to spend more time improving the security of the organization and responding to threats, and less time pouring through data.

Did you know?

• Cyberattack behaviors and threat patterns differ significantly in the cloud than on premises.

• Scaling to the cloud can create new security challenges for your organization.

• Threat monitoring capabilities limited to 9-to-5 coverage may not be enough.

Page 3: AT&T Managed Security Services AT&T Threat Manager Protect … · security engineer, security forensic specialist, analyst, or administrator, ... the ability to apply user and entity

P R O D U C T B R I E F

© 2018 AT&T Intellectual Property. All rights reserved. AT&T, Globe logo and other marks are trademarks and service marks of AT&T Intellectual Property and/or AT&T affiliated companies. All other marks contained herein are the property of their respective owners. The information contained herein is not an offer, commitment, representation or warranty by AT&T and is subject to change. | 11929-010418

Why AT&T? The powerful AT&T network supports integrated systems with a single, highly secure network with nationwide service and redundancies. Take advantage of our progressive and ever-improving network to drive innovation for your business.

To learn more about AT&T Threat Manager, visit www.att.com/threat-management. Or have your AT&T sales representative contact you.

Why AT&T

Share this withyour peers

AT&T Managed Security ServicesAT&T Threat Manager

Notifications are made in an appropriate fashion based on the criticality of the alert with critical event notifications made person-to-person. Less critical threat notifications are made via email or through the security management portal, where you can also view your current security profile and preferences. Threat reports are distributed through the portal, or emailed, providing specific analysis to augment the information provided.

AT&T Threat Manager powered by Threat Intellect features

AT&T Threat Manager provides:

• Full access to our security experts with GIAC certified intrusion analysts, CISSP, CEH, and other certifications who handle and prioritize large volumes of threats and monitor traffic 24/7

• Ongoing monitoring of hardware, software and cloud services, AT&T analyst support, and reporting

• Manual notification from AT&T Security Operations Center (SOC) analysts via email and phone in addition to portal alerts

• Emergency response teams, security experts on-call, log storage, and outsourcing services

• Options for equipment, monitoring, management, and consulting, plus additional reporting and analytics features tailored to the specific needs of your technology company

Detect and respond

The AT&T Security Operations Center (SOC) is an advanced center for identifying and directing the resolution of security issues that impact your network. The expertise of dedicated SOC analysts are available 24/7 to monitor, detect alerts, and provide response guidance when threats occur across your entire network, both on premises and in the cloud.