OpenCTI

OpenCTI

Filigran
+
+

Related Products

  • ManageEngine Log360
    190 Ratings
    Visit Website
  • ManageEngine EventLog Analyzer
    211 Ratings
    Visit Website
  • Criminal IP
    457 Ratings
    Visit Website
  • SOCRadar Extended Threat Intelligence
    115 Ratings
    Visit Website
  • ThreatLocker
    700 Ratings
    Visit Website
  • Safetica
    415 Ratings
    Visit Website
  • Criminal IP ASM
    21 Ratings
    Visit Website
  • Source Defense
    7 Ratings
    Visit Website
  • ManageEngine Endpoint Central
    3,286 Ratings
    Visit Website
  • Graylog
    438 Ratings
    Visit Website

About

OpenCTI is an open source threat intelligence platform developed by Filigran, designed to help organizations collect, correlate, and leverage threat data at strategic, operational, and tactical levels. It provides a consolidated view of threat data from multiple sources, transforming raw data into actionable insights. It features a sophisticated knowledge hypergraph database, fully compliant with STIX standards, enabling deep context and relationships within threat intelligence. OpenCTI offers comprehensive visualizations and analytics, facilitating comparison and investigation within the knowledge graph. It integrates both technical and non-technical information into a unified system, linking each piece of threat intelligence to its original source for a complete analytical perspective. It also includes powerful case management capabilities, enhancing threat detection and response by centralizing incident-related data and fostering real-time collaboration.

About

SOC Prime is an advanced platform for detection engineering and threat intelligence, helping security teams continuously detect, validate, and respond to the latest cyber threats. The company pioneered tagging Sigma rules with MITRE ATT&CK, enabling security teams to improve coverage of adversary tactics and techniques. The SOC Prime Platform brings together continuously updated detection content, agentic AI-powered detection engineering, and broad platform support across 40+ SIEM, EDR/XDR, and Data Lake environments. The platform also enables security teams to run thousands of Sigma rules directly on streaming events before data reaches the SIEM. Through attack chain correlation across real-time and historical data, SOC Prime helps security teams detect potential threats before they become confirmed incidents. Driven by its solutions, Prime Core, Prime Architect, Prime Hunt, and Prime Detect, SOC Prime enables organizations to risk-optimize their cybersecurity.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Cybersecurity professionals and organizations seeking a tool to manage and operationalize cyber threat intelligence

Audience

CISOs, SOC/IR Managers, Threat Hunters, Detections Engineers, SOC Analysts

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

Annual subscription
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Filigran
Founded: 2022
United States
filigran.io/solutions/open-cti/

Company Information

SOC Prime
Founded: 2015
United States
socprime.com

Alternatives

Threat Landscape

Threat Landscape

Ecliptica Labs AB

Alternatives

ThreatStream

ThreatStream

Anomali
ConnectWise SIEM

ConnectWise SIEM

ConnectWise

Categories

Categories

Cloud Security Features

Antivirus
Application Security
Behavioral Analytics
Encryption
Endpoint Management
Incident Management
Intrusion Detection System
Threat Intelligence
Two-Factor Authentication
Vulnerability Management

Cybersecurity Features

AI / Machine Learning
Behavioral Analytics
Endpoint Management
Incident Management
IOC Verification
Tokenization
Vulnerability Scanning
Whitelisting / Blacklisting

IT Security Features

Anti Spam
Anti Virus
Email Attachment Protection
Event Tracking
Internet Usage Monitoring
Intrusion Detection System
IP Protection
Spyware Removal
Two-Factor Authentication
Vulnerability Scanning
Web Threat Management
Web Traffic Reporting

SIEM Features

Application Security
Behavioral Analytics
Compliance Reporting
Endpoint Management
File Integrity Monitoring
Forensic Analysis
Log Management
Network Monitoring
Real Time Monitoring
Threat Intelligence
User Activity Monitoring

Integrations

Filigran
Apache Kafka
Carbon Black EDR
Devo
Elasticsearch
Fork
Graylog
Humio
IBM QRadar SIEM
Microsoft Sentinel
OpenSearch
OpenText Enterprise Security Manager
SentinelOne Singularity
Snowflake
Splunk Enterprise
Sumo Logic
Threat Landscape

Integrations

Filigran
Apache Kafka
Carbon Black EDR
Devo
Elasticsearch
Fork
Graylog
Humio
IBM QRadar SIEM
Microsoft Sentinel
OpenSearch
OpenText Enterprise Security Manager
SentinelOne Singularity
Snowflake
Splunk Enterprise
Sumo Logic
Threat Landscape
Claim OpenCTI and update features and information
Claim OpenCTI and update features and information
Claim SOC Prime Platform and update features and information
Claim SOC Prime Platform and update features and information