Average Ratings 190 Ratings
Average Ratings 0 Ratings
Description
Log360 is a SIEM or security analytics solution that helps you combat threats on premises, in the cloud, or in a hybrid environment. It also helps organizations adhere to compliance mandates such as PCI DSS, HIPAA, GDPR and more. You can customize the solution to cater to your unique use cases and protect your sensitive data.
With Log360, you can monitor and audit activities that occur in your Active Directory, network devices, employee workstations, file servers, databases, Microsoft 365 environment, cloud services and more. Log360 correlates log data from different devices to detect complex attack patterns and advanced persistent threats. The solution also comes with a machine learning based behavioral analytics that detects user and entity behavior anomalies, and couples them with a risk score. The security analytics are presented in the form of more than 1000 pre-defined, actionable reports. Log forensics can be performed to get to the root cause of a security challenge.
The built-in incident management system allows you to automate the remediation response with intelligent workflows and integrations with popular ticketing tools.
Description
OpenCTI is an open-source platform for threat intelligence created by Filigran, aimed at assisting organizations in gathering, correlating, and utilizing threat information at various levels, including strategic, operational, and tactical. By providing a unified view of threat data from diverse sources, it converts unrefined data into practical insights. The platform features an advanced knowledge hypergraph database that adheres to STIX standards, allowing for a thorough understanding of the context and connections within threat intelligence. OpenCTI also includes extensive visualizations and analytical tools that support comparison and exploration within the knowledge graph. By integrating both technical and non-technical data into a single framework, it connects each piece of threat intelligence back to its original source, offering a holistic analytical viewpoint. Additionally, the platform boasts robust case management features that improve threat detection and response by centralizing data related to incidents and promoting real-time teamwork. Overall, OpenCTI serves as a powerful ally for organizations aiming to strengthen their cybersecurity posture.
API Access
Has API
No
API Access
Has API
No
Integrations
Active Directory
Yes
Amazon Web Services (AWS)
Yes
Filigran
No
Fork
No
Guardeon
Yes
MITRE ATT&CK
Yes
ManageEngine Endpoint Central
Yes
Microsoft Azure
Yes
Microsoft Entra ID
Yes
Microsoft Exchange
Yes
Integrations
Active Directory
No
Amazon Web Services (AWS)
No
Filigran
Yes
Fork
Yes
Guardeon
No
MITRE ATT&CK
No
ManageEngine Endpoint Central
No
Microsoft Azure
No
Microsoft Entra ID
No
Microsoft Exchange
No
Pricing Details
Based on number of log sources. Doesn't limit number of log data.
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
Yes
Deployment
Web-Based
No
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
Yes
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
Yes
Vendor Details
Company Name
Zoho
Founded
1996
Country
India
Website
www.manageengine.com/log-management/siem-solution-log360.html
Vendor Details
Company Name
Filigran
Founded
2022
Country
United States
Website
filigran.io/solutions/open-cti/
Product Features
Cybersecurity
AI / Machine Learning
No
Behavioral Analytics
Yes
Endpoint Management
No
IOC Verification
No
Incident Management
Yes
Tokenization
No
Vulnerability Scanning
Yes
Whitelisting / Blacklisting
Yes
Data Loss Prevention
Compliance Reporting
No
Incident Management
No
Policy Management
No
Sensitive Data Identification
No
Web Threat Management
No
Whitelisting / Blacklisting
No
Incident Response
Attack Behavior Analytics
No
Automated Remediation
No
Compliance Reporting
No
Forensic Data Retention
No
Incident Alerting
No
Incident Database
No
Incident Logs
No
Incident Reporting
No
Privacy Breach Reporting
No
SIEM Data Ingestion / Correlation
No
SLA Tracking / Management
No
Security Orchestration
No
Threat Intelligence
No
Timeline Analysis
No
Workflow Automation
No
Workflow Management
No
Log Management
Archiving
Yes
Audit Trails
Yes
Compliance Reporting
Yes
Consolidation
Yes
Data Visualization
Yes
Event Logs
Yes
Network Logs
Yes
Remediation
Yes
Syslogs
Yes
Thresholds
Yes
Web Logs
Yes
Network Security
Access Control
No
Analytics / Reporting
No
Compliance Reporting
No
Firewalls
No
Internet Usage Monitoring
No
Intrusion Detection System
No
Threat Response
No
VPN
No
Vulnerability Scanning
No
SIEM
Application Security
Yes
Behavioral Analytics
Yes
Compliance Reporting
Yes
Endpoint Management
Yes
File Integrity Monitoring
Yes
Forensic Analysis
Yes
Log Management
Yes
Network Monitoring
Yes
Real Time Monitoring
Yes
Threat Intelligence
Yes
User Activity Monitoring
Yes