Securonix UEBA

Securonix UEBA

Securonix
+
+

Related Products

  • Graylog
    438 Ratings
    Visit Website
  • Blumira
    150 Ratings
    Visit Website
  • ManageEngine Log360
    190 Ratings
    Visit Website
  • Daylight
    11 Ratings
    Visit Website
  • ManageEngine ADAudit Plus
    614 Ratings
    Visit Website
  • ManageEngine EventLog Analyzer
    211 Ratings
    Visit Website
  • Safetica
    415 Ratings
    Visit Website
  • SOCRadar Extended Threat Intelligence
    115 Ratings
    Visit Website
  • Orca Security
    606 Ratings
    Visit Website
  • Google Cloud Platform
    61,023 Ratings
    Visit Website

About

DNIF provides a high value solution by combining technologies such as the SIEM, UEBA and SOAR into one product at an extremely low total cost of ownership. DNIF's hyper scalable data lake makes it ideal to ingest and store terabytes of data. Detect suspicious activity using statistics and take action before any damage occurs. Orchestrate processes, people and technology initiatives from a single security dashboard. Your SIEM will come built-in with essential dashboards, reports and response workflows. Coverage for threat hunting, compliance, user behavior monitoring and network traffic anomaly. In-depth coverage map with the MITRE ATT&CK and CAPEC framework. Maximize your logging capacity without fretting over costs—double, perhaps even triple your capacity with your existing budget. With the HYPERCLOUD, the fear of overlooking crucial information is a thing of the past. Log everything, leave nothing behind.

About

Today, many attacks are specifically built to evade traditional signature-based defenses, such as file hash matching and malicious domain lists. They use low and slow tactics, such as dormant or time triggered malware, to infiltrate their targets. The market is flooded with security products that claim to use advanced analytics or machine learning for better detection and response. The truth is that all analytics are not created equal. Securonix UEBA leverages sophisticated machine learning and behavior analytics to analyze and correlate interactions between users, systems, applications, IP addresses, and data. Light, nimble, and quick to deploy, Securonix UEBA detects advanced insider threats, cyber threats, fraud, cloud data compromise, and non-compliance. Built-in automated response playbooks and customizable case management workflows allow your security team to respond to threats quickly, accurately, and efficiently.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Companies of all sizes requiring a solution providing ROI without blindspots

Audience

IT security teams in need of a threat detection, response, remediation, and protection solution

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

$0.76/GB
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 1.0 / 5
ease 1.0 / 5
features 1.0 / 5
design 1.0 / 5
support 1.0 / 5

Reviews/Ratings

Overall 1.0 / 5
ease 2.0 / 5
features 2.0 / 5
design 1.0 / 5
support 1.0 / 5

Pros & Cons from Real Users

Pros

  • 1. DNIF supported to create use cases in car.mitre.org and helped MITRE lot. 2. They use MITRE framework 3. predefined use cases 4. Easy architecture and frequent trainings 5. No event storage limit or license limit

Cons

  • 1. No support most of the cases 2. DNIF respond to tickets after 72 -90 hrs. a. In every small issue you will require DNIF support compulsorily. b. Tickets are closed without resolving issue stating "issue is not understood hence closed. kindly log ticket if support is required". Even information is pretty clear with contact details c. You will find at least 1-2 issue every week. 3. Support team bluffs or play around with words and try to reset or brain wash your mind about issue. 4. DNIF promote to use NXLog, Elastic agents as they don't have own developed agents but in practical it doesn't work. As per DNIF to get error fixed one must procure services of NXLOG or Elastic agent 5. 95% predefined use case and parser don't work on DNIF. To fix it extra efforts need to be provided 6. Search query slow down or stops intermittently 7. product services reboot and DNIF doesn't support to find answers and fix issue. even doesn't prove the impact. 8. DNIF uses two query language i.e. DQL and SQL but both are confusing and they don't have SQL documentation and no support for SQL language. 9. results of query output is suspicious as it uses limit option and don't give correct i.e. missing important or critical data 10. limit 1000 will hung the browser on client machine. 11. No Standalone deployment is available. Many more....

Pros & Cons from Real Users

Pros

  • Nothing, out of the box rules often contain typos or only work for extremely limited use cases. This is a product that looks great at a glance but is garbage for UEBA/Insider Threat use when you start working with the details.

Cons

  • Securonix's product is rife with vulnerabilities and outdated components. Their support is extremely slow and is unable to troubleshoot basic problems. The application UI is difficult to use and maintain and is expensive for what it does.

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

DNIF
Founded: 2002
India
dnif.it

Company Information

Securonix
Founded: 2008
United States
www.securonix.com

Alternatives

Alternatives

FortiInsight

FortiInsight

Fortinet

Categories

Categories

Cybersecurity Features

AI / Machine Learning
Behavioral Analytics
Endpoint Management
Incident Management
IOC Verification
Tokenization
Vulnerability Scanning
Whitelisting / Blacklisting

SIEM Features

Application Security
Behavioral Analytics
Compliance Reporting
Endpoint Management
File Integrity Monitoring
Forensic Analysis
Log Management
Network Monitoring
Real Time Monitoring
Threat Intelligence
User Activity Monitoring

Cybersecurity Features

AI / Machine Learning
Behavioral Analytics
Endpoint Management
Incident Management
IOC Verification
Tokenization
Vulnerability Scanning
Whitelisting / Blacklisting

Integrations

Box
Carbon Black EDR
CyberArk Privileged Access Manager
Freshdesk
Netskope
Okta
Recorded Future
Securonix Unified Defense SIEM
ServiceNow
Slack
Splunk Cloud Platform
ThreatConnect Risk Quantifier (RQ)

Integrations

Box
Carbon Black EDR
CyberArk Privileged Access Manager
Freshdesk
Netskope
Okta
Recorded Future
Securonix Unified Defense SIEM
ServiceNow
Slack
Splunk Cloud Platform
ThreatConnect Risk Quantifier (RQ)
Claim DNIF HYPERCLOUD and update features and information
Claim DNIF HYPERCLOUD and update features and information
Claim Securonix UEBA and update features and information
Claim Securonix UEBA and update features and information