RSA NetWitness

E485335

RSA NetWitness is a cybersecurity platform that provides advanced network and endpoint visibility, threat detection, and incident response capabilities for enterprise security operations.

Try in SPARQL Jump to: Surface forms Statements Referenced by

Observed surface forms (1)

Surface form Occurrences
security incident response labs 1

Statements (49)

Predicate Object
instanceOf cybersecurity platform
endpoint security product
network security product
security information and event management solution
aimsTo reduce mean time to detect
reduce mean time to respond
analyzes endpoint events
network traffic
security logs
belongsToCategory endpoint detection and response solutions
network detection and response solutions
security operations platforms
deploymentModel cloud
on-premises
developedBy RSA Security NERFINISHED
hasComponent RSA NetWitness Endpoint NERFINISHED
RSA NetWitness Orchestrator NERFINISHED
RSA NetWitness Platform for Logs NERFINISHED
RSA NetWitness Platform for Network NERFINISHED
hasFeature alerting
automated response
behavioral analytics
dashboards
endpoint telemetry collection
full packet inspection
incident workflow
log collection
metadata extraction
packet capture
threat intelligence integration
integratesWith other security tools
threat intelligence feeds
ticketing systems
provides endpoint visibility
incident response capabilities
network visibility
threat detection
supports compliance monitoring
enterprise security operations centers
forensic analysis
threat hunting
targetUser incident responders
security analysts
threat hunters
usedFor advanced threat detection
endpoint detection and response
forensics
incident investigation
network traffic analysis

Referenced by (3)

Full triples — surface form annotated when it differs from this entity's canonical label.

RSA Security product RSA NetWitness
RSA Security hasSubsidiaryBrand RSA NetWitness
The Coroner’s Toolkit (TCT) typicalEnvironment RSA NetWitness
subject surface form: The Coroner’s Toolkit
this entity surface form: security incident response labs