Rechercher
Contactez-nous Suivez-nous sur Twitter En francais English Language
 

Freely subscribe to our NEWSLETTER

Newsletter FR

Newsletter EN

Vulnérabilités

Unsubscribe

Elastic Delivers ArcSight Integration for Flexible, Scalable, and Real-Time Security Analytics Capabilities

September 2017 by Marc Jacob

Elastic, the company behind Elasticsearch, and the Elastic Stack, the most widely used collection of open source products for solving mission-critical use cases like search, logging, and analytics, announced a new partnership with Micro Focus and product integration between the Elastic Stack and ArcSight. Unveiled today during the keynote at Protect 2017, this new partnership combines Elastic’s open source search, logging and analytics products with the ArcSight Data Platform (ADP), a best-in-class open platform for collecting, enriching and normalizing security data, to provide real-time capabilities and ad hoc security data exploration at scale.

Available immediately, the Elastic Stack ArcSight Integration gives security teams real-time visibility into ArcSight security events and provides the necessary tools to augment security operations with an open source capability to "build-your-own" security insights. The integration provides a turnkey experience for processing data in Logstash, ingesting data into Elasticsearch, visualizing data in packaged Kibana dashboards, and the ability to install Elastic’s X-Pack features, such as security, alerting, monitoring, reporting, Graph analytics, and machine learning.

With a single command, users can install the Logstash ArcSight module for free, which controls the integration between the Elastic Stack and the ArcSight Data Platform (ADP). By using ArcSight’s Event Broker and Smart Connectors, security events can be received, enriched, indexed, and analyzed in real time in Elasticsearch at scale. Then, using Kibana visualizations, security operators and analysts can gain immediate insights, such as understanding top devices, endpoints, attackers, and targets alongside the ability to instantly drill down on any and all aspects of the data to get a holistic view of the security environment.


See previous articles

    

See next articles


Your podcast Here

New, you can have your Podcast here. Contact us for more information ask:
Marc Brami
Phone: +33 1 40 92 05 55
Mail: ipsimp@free.fr

All new podcasts