Company
Date Published
Author
Mike Nichols
Word count
673
Language
-
Hacker News points
None

Summary

Elastic Security showcased its comprehensive, unified threat protection and security analytics solution at the RSA Conference 2020, emphasizing its recent advancements in version 7.6.0. The solution integrates Elastic Endpoint Security and Elastic SIEM to provide real-time threat detection and response capabilities across various operating systems, leveraging open-source Elasticsearch. With a new SIEM detection engine that aligns with the MITRE ATT&CK™ framework, Elastic Security automates threat detection and offers prebuilt rules to identify both known and unknown threats, aiming to reduce the mean time to detect to zero. The platform provides deep visibility, surpassing even Microsoft's capabilities, to detect malicious activities and enables automated responses for threat remediation. Elastic Security empowers security teams by correlating data from multiple sources, offering real-time analysis and visualization to streamline security operations, and enhancing workflow automation to allow analysts to focus on critical investigations and problem-solving.