1
USEFUL THINGS you can do with ABSOLUTE DDS & SIEM COLLECT ENDPOINT IQ Feed unique data from endpoint events (on & off network) into your SIEM console. 1 KNOW WHERE & WHEN Receive alerts when unauthorized movement occurs. 2 4 IDENTIFY ANOMALIES Create benchmarks & investigate the outliers. GET THE JUMP ON SECURITY INCIDENTS Examine the situation in the context of the larger SIEM data feed and prioritize responses. MANAGE COMPLIANCE Maintain a specific security posture to comply with regulatory requirements. 3 5 PIZZERIA 1 LARGE PEPPERONI CONFIRM Order Pizza Operate a Drone Eliminate End Users ! User name ! IP Address ! Geofence breached ! Encryption disabled DATA CHANGES SIEM I’M OUTTA HERE!! Device encrypted Anti-malware active SCCM functioning Approved location No sensitive data OK Yum! USEFUL THINGS you can’t do with ABSOLUTE DDS & SIEM

Useful Things You Can Do With Absolute DDS & SIEM

Embed Size (px)

Citation preview

Page 1: Useful Things You Can Do With Absolute DDS & SIEM

USEFUL THINGS you can do with ABSOLUTE DDS & SIEM

COLLECT ENDPOINT IQ Feed unique data from endpoint events (on & off network) into your SIEM console.1

KNOW WHERE & WHENReceive alerts when unauthorized movement occurs.

2

4

IDENTIFY ANOMALIESCreate benchmarks & investigate the outliers.

GET THE JUMP ON SECURITY INCIDENTSExamine the situation in the context of thelarger SIEM data feed and prioritize responses.

MANAGE COMPLIANCE Maintain a specific security posture to comply with regulatory requirements.

3

5

PIZZERIA

1 LARGEPEPPERONI

CONFIRM

Order Pizza

Operate a Drone

Eliminate End Users

! User name! IP Address! Geofence breached! Encryption disabled

DATA CHANGES

SIEM

I’M OUTTA HERE!!

Device encrypted Anti-malware active SCCM functioning Approved location No sensitive data

OK

Yum!

USEFUL THINGS you can’t do with ABSOLUTE DDS & SIEM