logo
#

Latest news with #InformationandEventManagement

GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation
GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation

Yahoo

time3 days ago

  • Business
  • Yahoo

GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation

VIENNA, Va., June 05, 2025 (GLOBE NEWSWIRE) -- Today, USX Cyber® announced that its flagship Guardient®, a Unified Security Platform, already aligns with the core recommendations released by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the Australian Cyber Security Centre (ACSC) on effective Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) implementations. Last week's joint guidance from the two agencies emphasizes log prioritization, centralized visibility, incident response automation, and modular integration as foundational elements of a successful SIEM/SOAR deployment. These best practices have been embedded in the Guardient platform from day one.'It's validating to see the public sector reinforcing what we've been delivering to private industry for years,' said Clyde W. Goldbach, Jr., President & CEO of USX Cyber. 'Guardient was designed for visibility, speed, and actionability—core principles echoed in the CISA and ACSC release. We're proud to help businesses of all sizes achieve compliance with these evolving expectations.'Guardient XDR combines real-time threat detection, automated response, and compliance-driven workflows in a single, lightweight platform. The solution is built for MSPs, compliance teams, and security teams seeking faster time to value, ease of use, and affordability without the bloat of traditional SIEMs or fragmented point solutions. Guardient's key capabilities aligned with the new guidance include: Cloud-Native Ingestion & Priority Log Filtering Built-In SOAR for Instant Action & Ticket Enrichment Modular Agent-Based Deployment for Mac, Linux, and Windows Compliance-Centric Use Cases Across CMMC, HIPAA, and SOC 2 Integration with IoT, Firewall, Cloud, and Network Infrastructure Logs The newly released CISA/ACSC guidance is aimed at raising the security baseline for organizations across critical sectors. Guardient provides an accessible, battle-tested path to achieve that baseline USX Cyber®USX Cyber® offers a unified cybersecurity solution that balances technical defense with audit-readiness. Its flagship platform, Guardient®, equips IT teams and service providers with an integrated suite that combines SIEM, SOAR, XDR, threat intelligence, and compliance automation in a single, easy-to-deploy Contact:Megan DonovanExternal Communications DirectorUSX Cyber, LLCmegan@ 732-245-3399Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation
GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation

Yahoo

time4 days ago

  • Business
  • Yahoo

GUARDIENT® Aligns with New CISA and ACSC Guidance on SIEM and SOAR Implementation

VIENNA, Va., June 05, 2025 (GLOBE NEWSWIRE) -- Today, USX Cyber® announced that its flagship Guardient®, a Unified Security Platform, already aligns with the core recommendations released by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the Australian Cyber Security Centre (ACSC) on effective Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) implementations. Last week's joint guidance from the two agencies emphasizes log prioritization, centralized visibility, incident response automation, and modular integration as foundational elements of a successful SIEM/SOAR deployment. These best practices have been embedded in the Guardient platform from day one.'It's validating to see the public sector reinforcing what we've been delivering to private industry for years,' said Clyde W. Goldbach, Jr., President & CEO of USX Cyber. 'Guardient was designed for visibility, speed, and actionability—core principles echoed in the CISA and ACSC release. We're proud to help businesses of all sizes achieve compliance with these evolving expectations.'Guardient XDR combines real-time threat detection, automated response, and compliance-driven workflows in a single, lightweight platform. The solution is built for MSPs, compliance teams, and security teams seeking faster time to value, ease of use, and affordability without the bloat of traditional SIEMs or fragmented point solutions. Guardient's key capabilities aligned with the new guidance include: Cloud-Native Ingestion & Priority Log Filtering Built-In SOAR for Instant Action & Ticket Enrichment Modular Agent-Based Deployment for Mac, Linux, and Windows Compliance-Centric Use Cases Across CMMC, HIPAA, and SOC 2 Integration with IoT, Firewall, Cloud, and Network Infrastructure Logs The newly released CISA/ACSC guidance is aimed at raising the security baseline for organizations across critical sectors. Guardient provides an accessible, battle-tested path to achieve that baseline USX Cyber®USX Cyber® offers a unified cybersecurity solution that balances technical defense with audit-readiness. Its flagship platform, Guardient®, equips IT teams and service providers with an integrated suite that combines SIEM, SOAR, XDR, threat intelligence, and compliance automation in a single, easy-to-deploy Contact:Megan DonovanExternal Communications DirectorUSX Cyber, LLCmegan@ 732-245-3399Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

Rapid7 unveils platform to help SOC teams cut through alert noise
Rapid7 unveils platform to help SOC teams cut through alert noise

Techday NZ

time23-04-2025

  • Business
  • Techday NZ

Rapid7 unveils platform to help SOC teams cut through alert noise

Rapid7 has launched Intelligence Hub, a platform intended to equip security teams with actionable intelligence and contextual insights for improved threat detection and response. The introduction of Intelligence Hub comes amid increasing challenges faced by security teams, with a recent survey indicating that two-thirds of Security Operations Centre (SOC) analysts have experienced a significant rise in the number of security alerts over the past three years. Additionally, 70% of respondents reported a substantial increase in the number of security tools they are required to use. Intelligence Hub seeks to address industry issues such as fragmented intelligence platforms, lack of contextual information, and difficulties in prioritising security threats. The platform curates data from multiple sources, including Rapid7's proprietary honeypot network and research, as well as open-source communities. According to the company, a particular focus is placed on verifying low-prevalence, high-impact indicators to reduce the occurrence of false positives. This curated intelligence is available directly in the Rapid7 Command Platform, which enables analysts to incorporate relevant threat information within their existing workflows. The system aims to help teams prioritise the most significant threats and accelerate remediation activities. Raj Samani, Chief Scientist at Rapid7, commented: "Security organisations are drowning in noise, making timely responses to threats nearly impossible. Intelligence Hub addresses this challenge by focusing on curated intelligence, providing only the most relevant and verified indicators to enable rapid and effective action." Intelligence Hub offers features designed to help security teams contextualise threats based on the specific industry sector, geographical location, exposure to vulnerabilities, and the tactics and techniques used by threat actors. The methodology for attributing threats is clearly defined to support targeted mitigation strategies and improved resource allocation. The platform is structured to integrate with existing security tools, including Rapid7's next-generation Security Information and Event Management (SIEM) solution, InsightIDR. By delivering intelligence within established tools, Rapid7 aims to reduce the need for analysts to switch contexts during investigations, potentially leading to faster and more accurate responses. The company states that Intelligence Hub prioritises the most relevant threats by analysing active attacker campaigns, sector-specific targeting, and exploitability. The intelligence is curated by Rapid7 Labs researchers, combining honeypot data, open-source information, and internal research. The intention is to present security teams with high-fidelity alerts that are most likely to be actionable. Monika Soltysik, Senior Research Manager at IDC, highlighted some of the broader challenges in the threat intelligence market: "In IDC's October 2024 survey of U.S. organisations, the top three challenges with threat intelligence solutions were cost (42.2%), false positives and alert fatigue (40.0%), and data quality and reliability (39.7%). Solution providers that are proactively addressing these challenges, like Rapid7, are making it easier for their customers to understand and secure their attack surface." Rapid7 positions Intelligence Hub as a proactive tool for helping organisations cut through data overload, reduce noise, and ensure that resources are allocated to managing verifiable and relevant security threats.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into the world of global news and events? Download our app today from your preferred app store and start exploring.
app-storeplay-store