Log Correlation and Analysis
Centre
Responsiveness often can make or break a network especially in the face
of highly versatile and destructive network threats. The high dependence
on the network would be critical response is required to remediate any issues
that arises. Often, organizations are unable to react to new security threats
before their business is impacted.
Managing the security of their infrastructures—and the business value
that those infrastructures deliver—has become a primary concern for
IT departments.
Logs are critical and the managing logs has become essential to any enterprise
network systems, to be able to collect data about any potential threat or
loophole, analyze it and make meaning out of it (through correlation), ensures
that the system is ever-ready should any attack arise again.
We recommend:
Log Radar
|
Assuria
Products and Solutions (Click on each product/solution
to find out more)
-
Log Radar
Log Radar™ uniquely provides real-time monitoring of system changes
and user activity, detection of threats and intrusions, security information
management and correlation and log management -all with a single, integrated
and scalable system.
Universal event log
Log Radar acts within a central network that starts with collection of any
enterprise event data which can in turn be leveraged for purposes ranging
from threat detection and forensics investigations to rapid troubleshooting
and simplified reporting request.
Easy Management
Log Radar™ assists tedious security management by specifically delivering
a clear, comprehensive, uncluttered enterprise picture of the security condition
in real time!
Designed to fit most network security environment, Log Radar™ allows security
rules and policies to be set up flexibly and specifically tailored for your
business priorities and objectives. In the event upon detection of threats
or violations, you will instantly be alerted and informed by Log Radar™.

Methodology behind Log Radar
- Centralized Management Control via web based console
- More than 100+ standard report templates immediately address reporting
requirements
- Dedicated online and phone support
- Tailored customization for security policy compliance and operational
efficiency
- Automated sorting and categorization of attacks naming convention from
heterogeneous sources
- Simplified security monitoring via concise and clear graphical and statistical
reporting
- Real-time correlation to generate instant alerts on critical events
- Provides instant visualization of data and network security posture
- Enables security trend analytics and projection
- Classification and prioritization of assets to effectively mitigate
risks
- Automated report scheduling and distribution
- Multiple charts provide role-relevant information to address different
requirements within the organization
- Identify and profile at risk employee behavior
Find
out more...
Download
Datasheets | Make
an enquiry
-
Assuria Log Manager
Assuria Log Manager (ALM) is designed
to meet the requirements of enterprise wide management of audit logs generated
by systems, devices and applications. ALM is equally applicable to installations
with ten systems or tens of thousands of systems. ALM is fully supported running
real or virtualised environments.
Assuria Log Manager manages large communities of logs from Servers and Workstations,
Windows, LINUX and UNIX as well as Databases, Applications and network devices
such as firewalls and routers. Assuria Log Manager does not preclude the collection
of logs from other devices such as building access control systems.
Multiple users can log into the Assuria Log Manager Console to manage agents, agent policy, create archives, generate reports or other actions required.
Assuria provided ‘Content Packs’ are used to define log format, content and rules for event identification and tagging. A ‘Content pack’ is available for each supported type /format log.
Features
- Enterprise wide log collection. Secure and forensically
sound collection of logs into a central store.
- Real-time alerts. Configurable to specific log events,
sent via SNMP or configurable to other tools.
- Agent based collection ensures the Security, Continuity
and Integrity of all collected logs.
- Digitally signed. A SHA256 checksum is calculated and
the log digitally signed before transfer. The transfer of logs over the
network is encrypted using TLS.
- Secure storage. Log cataloguing, chain of custody records,
archive creation and management.
- Archive to secure long terms storage, complete with
a digitally-signed manifest.
- Forensic readiness. Centrally stored, with all of the
handling of the logs preserving the original format so that forensically
sound data is available for investigation when required.
- Scalable and Modular architecture. Designed to support
from 1 to 000’s of log sources.
- Content packs provided by Assuria are flexible and
extensible used to describe each log allowing ‘interesting events’ in
the collected logs to be tagged and indexed within the ALM database.
- Analysis: Collected logs are processed by a rules-based
analysis engine, allowing ‘interesting’ events to be tagged and written
to a database for further analysis and reporting.
- Reporting. Flexible analysis, correlation, aggregation
and reporting in HTML or PDF.
- Console. Assuria Log Manager Console provides all agent
control and the management of collected logs along with facilities to
run queries, generate and print reports.
Find
out more...
Download
Datasheets | Make
an enquiry