+
+

Related Products

  • Graylog
    438 Ratings
    Visit Website
  • ManageEngine Log360
    190 Ratings
    Visit Website
  • Blumira
    150 Ratings
    Visit Website
  • ManageEngine ADAudit Plus
    619 Ratings
    Visit Website
  • iVerify
    1 Rating
    Visit Website
  • ManageEngine EventLog Analyzer
    211 Ratings
    Visit Website
  • Daylight
    11 Ratings
    Visit Website
  • ThreatLocker
    700 Ratings
    Visit Website
  • Criminal IP
    457 Ratings
    Visit Website
  • Criminal IP ASM
    21 Ratings
    Visit Website

About

NetWitness Platform brings together evolved SIEM and threat defense solutions that deliver unsurpassed visibility, analytics and automated response capabilities. These combined capabilities help security teams work more efficiently and effectively, up-leveling their threat hunting skills and enabling them to investigate and respond to threats faster, across their organization’s entire infrastructure—whether in the cloud, on premises or virtual. Gives security teams the visibility they need to detect sophisticated threats hiding in today’s complex, hybrid IT infrastructures. Analytics, machine learning, and orchestration and automation capabilities make it easier for analysts to prioritize and investigate threats faster. Detects attacks in a fraction of the time of other platforms and connects incidents to expose the full attack scope. NetWitness Platform accelerates threat detection and response by collecting and analyzing data across more capture points.

About

Our XDR (Extended Detection and Response) cyber security platform provides deep visibility and threat detection across your endpoints, servers, cloud and your digital supply chain. We deliver the platform to you as fully managed service supported by our 24×7 Security Operations, with low cost and fastest enrollment time in the industry. Our platform is the foundation of effective cyber threat detection and response services. Providing deep visibility, great threat detection, sophisticated behavior analytics and automated threat hunting, the platform adds efficiency and value to your security operations capability. Leveraging our proprietary detection methodologies, including AI-empowered machine learning, our platform uncovers suspicious and anomalous behavior revealing even the most hidden threats. The platform creates high fidelity detections, flagging real threats and assisting SOC analysts and investigators to focus on what really matters.

Platforms Supported

Windows Not Supported
Mac Not Supported
Linux Not Supported
Cloud Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Platforms Supported

Windows Supported
Mac Supported
Linux Supported
Cloud Supported
On-Premises Not Supported
iPhone Not Supported
iPad Not Supported
Android Not Supported
Chromebook Not Supported

Audience

IT security teams looking for an accelerated threat detection and response from endpoint to the cloud to rapidly detect targeted attacks

Audience

Enterprise customers, MSP's, MSSP's

Support

Phone Support Supported
24/7 Live Support Supported
Online Supported

Support

Phone Support Not Supported
24/7 Live Support Supported
Online Supported

API

Offers API Not Supported

API

Offers API Not Supported

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version Not Supported
Free Trial Not Supported

Pricing

$5 per user per month
Free Version Not Supported
Free Trial Supported

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 5.0 / 5
ease 5.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Pros & Cons from Real Users

Pros

  • Excellent solution for XDR, SIEM, log ingestion, and NDR (packet level network detection). The platform was able to detect Spring4J and Log4J exploits before any of the other tools we used in our security stack. Bountiful integrations!! We have been able to connect 30+ data sources into the plaform and get a lot of valuable data into the SIEM. Pricing is excellent compared to Splunk + others. We expanded it across our private clouds and now have 10,000+ endpoints deployed on multiple continents.

Cons

  • Reporting was lacking and rather complex for non technical people. Documentation needs some refreshing as the product has been expanded significantly since we started with them.

Training

Documentation Supported
Webinars Supported
Live Online Supported
In Person Not Supported

Training

Documentation Supported
Webinars Supported
Live Online Supported
In Person Not Supported

Company Information

NetWitness
Founded: 1997
United States
www.netwitness.com

Company Information

ThreatDefence
Founded: 2014
Australia
threatdefence.com

Alternatives

Fidelis Elevate

Fidelis Elevate

Fidelis Security

Alternatives

NetworkMiner

NetworkMiner

Netresec

Categories

Categories

Endpoint Detection and Response (EDR) Features

Behavioral Analytics Supported
Blacklisting/Whitelisting Not Supported
Continuous Monitoring Supported
Malware/Anomaly Detection Supported
Prioritization Supported
Remediation Management Supported
Root Cause Analysis Supported

Integrations

AWS AppFabric Supported
BackBox Supported
Carbon Black EDR Supported
Censys Supported
Chronicle SOAR Supported
D3 Smart SOAR Supported
Google Digital Risk Protection Supported
HackGuard Supported
Microsoft Defender for IoT Supported
RadiantOne Supported
Recorded Future Supported
SCADAfence Supported
SOC Prime Platform Supported
ShadowPlex Supported
Swimlane Supported
Tenable One Supported
ThreatConnect Risk Quantifier (RQ) Supported
ThreatQ Supported
urlscan.io Supported

Integrations

AWS AppFabric Not Supported
BackBox Not Supported
Carbon Black EDR Not Supported
Censys Not Supported
Chronicle SOAR Not Supported
D3 Smart SOAR Not Supported
Google Digital Risk Protection Not Supported
HackGuard Not Supported
Microsoft Defender for IoT Not Supported
RadiantOne Not Supported
Recorded Future Not Supported
SCADAfence Not Supported
SOC Prime Platform Not Supported
ShadowPlex Not Supported
Swimlane Not Supported
Tenable One Not Supported
ThreatConnect Risk Quantifier (RQ) Not Supported
ThreatQ Not Supported
urlscan.io Not Supported
Claim NetWitness and update features and information
Claim NetWitness and update features and information
Claim ThreatDefence and update features and information
Claim ThreatDefence and update features and information