REDLEGG BLOG
RedLegg Analysis Platform - Color

The Next Evolution of Cybersecurity. See Above. See Beyond.

11/13/18 5:54 PM  |  by MSS Engineer

Security posture is a concept that has changed very little through time. Protect all sides, restrict access, monitor your surroundings and test your fortifications. Protecting the perimeter and restricting access are simple, but they aren’t enough. Blind spots are the Achilles heel of any security practice be it physical or digital. In the ever-evolving world of cybersecurity it’s not enough to just throw up a firewall or enable Two Factor Authentication, monitoring is essential. A SIEM can help bridge the gap in what you know and what you don’t, but what happens when a SIEM is just a SIEM?

READ THE PLATFORM'S TECHNICAL OVERVIEW

Your SIEM gathers vital information from your network and alerts you to potential security threats, it can even take some actions to help mitigate a threat, but at the end of the day a SIEM can only see what you show it. It can’t see beyond your network, it can’t tell you what others in your position are seeing or doing. A SIEM is a king sitting in his castle getting information from his soldiers inside the walls, this does little good against the advancing army outside.

Enter RedLegg's Analysis Platform.

Turrets stands above the perimeter, improving visibility, removing blind spots, and providing a strategic advantage to the overall security posture. Redlegg's Analysis Platform is no different. Redlegg's Platform goes beyond your security posture and correlates alarm activity to other Redlegg clients allowing us to detect threats and respond faster with better intelligence.

RedLegg's Analysis Platform is a case management system that allows Redlegg MSS to track and correlate emerging threats within a client environment, across clients, and across industries, all while keeping client data separate and secure. Building off of our Standard Rule Package, the Platform employs a series of built in Analyzers to gather a myriad of useful information about alarms in seconds allowing our Analysts to focus on interpreting that data rather than digging for it. Previously identified information and threats are tracked and correlated by the Platform to further improve the analyst’s ability to correlate and identify trends.

RedLegg's Analysis Platform is the new standard in SIEM Management and is already in place for all Redlegg MSS customers. The Platform additionally feeds information into our in-house threat intelligence feed that is available for customers to subscribe to. This internally maintained threat intelligence feed allows us to adjust based on what we are seeing directly in our client environments, in conjunction with emerging threats identified by our in-house threat research team.

Redlegg's Analysis Platform is simply the next step in our holistic approach to improving the overall security of our clients. It is a framework of tools all working in unison to help you see beyond the walls and eliminate the blind spots.

SCHEDULE A PLATORM OVERVIEW

Get Blog Updates

Related Articles

SIEM Alerts Best Practices: Tuning for Fatigue Reduction siem

SIEM Alerts Best Practices: Tuning for Fatigue Reduction

Every day cyber threat actors attempt to find vulnerabilities in connected devices, networks, and enterprise systems.
How To Operationalize Your SIEM Integration siem

How To Operationalize Your SIEM Integration

Implementing Security Information and Event Management (SIEM) into your organization's infrastructure can be a valuable ...