RSA NetWitness
E485335
cybersecurity platform
endpoint security product
network security product
security information and event management solution
RSA NetWitness is a cybersecurity platform that provides advanced network and endpoint visibility, threat detection, and incident response capabilities for enterprise security operations.
Observed surface forms (1)
| Surface form | Occurrences |
|---|---|
| security incident response labs | 1 |
Statements (49)
| Predicate | Object |
|---|---|
| instanceOf |
cybersecurity platform
ⓘ
endpoint security product ⓘ network security product ⓘ security information and event management solution ⓘ |
| aimsTo |
reduce mean time to detect
ⓘ
reduce mean time to respond ⓘ |
| analyzes |
endpoint events
ⓘ
network traffic ⓘ security logs ⓘ |
| belongsToCategory |
endpoint detection and response solutions
ⓘ
network detection and response solutions ⓘ security operations platforms ⓘ |
| deploymentModel |
cloud
ⓘ
on-premises ⓘ |
| developedBy | RSA Security NERFINISHED ⓘ |
| hasComponent |
RSA NetWitness Endpoint
NERFINISHED
ⓘ
RSA NetWitness Orchestrator NERFINISHED ⓘ RSA NetWitness Platform for Logs NERFINISHED ⓘ RSA NetWitness Platform for Network NERFINISHED ⓘ |
| hasFeature |
alerting
ⓘ
automated response ⓘ behavioral analytics ⓘ dashboards ⓘ endpoint telemetry collection ⓘ full packet inspection ⓘ incident workflow ⓘ log collection ⓘ metadata extraction ⓘ packet capture ⓘ threat intelligence integration ⓘ |
| integratesWith |
other security tools
ⓘ
threat intelligence feeds ⓘ ticketing systems ⓘ |
| provides |
endpoint visibility
ⓘ
incident response capabilities ⓘ network visibility ⓘ threat detection ⓘ |
| supports |
compliance monitoring
ⓘ
enterprise security operations centers ⓘ forensic analysis ⓘ threat hunting ⓘ |
| targetUser |
incident responders
ⓘ
security analysts ⓘ threat hunters ⓘ |
| usedFor |
advanced threat detection
ⓘ
endpoint detection and response ⓘ forensics ⓘ incident investigation ⓘ network traffic analysis ⓘ |
Referenced by (3)
Full triples — surface form annotated when it differs from this entity's canonical label.
subject surface form:
The Coroner’s Toolkit
this entity surface form:
security incident response labs