Skip to main content

Securonix Investigate Powered by Polarity Provides On-demand Context and Improves Analyst Collaboration, Expediting Incident Investigation and Response Times

Polarity combined with Securonix Next-Gen SIEM, XDR and SOAR capabilities enables analysts to rapidly identify and prioritize threats from a single unified console

Securonix, Inc., a leader in Next-Gen SIEM and XDR, today announced Securonix Investigate, a new product offering powered by Polarity and embedded in the Securonix Next-Gen SIEM platform. Securonix Investigate is the industry’s first integrated SIEM, SOAR and Investigation offering that enables SOC teams to inspect threats identified by Securonix and take rapid action, reducing the meantime to respond by more than 50 percent and improving operational efficiency.

Security Analysts may not know what context they need before investigating an incident, so traditional context enrichment may not have all the answers. Securonix Investigate enables the Security Analyst to extract on-demand context from Securonix Threat Labs intelligence as well as additional internal and external sources for in-flight investigations. This eliminates the need for security teams to comb through multiple data sources or develop playbooks when additional or new context is needed. Analysts can annotate their findings within the investigation workflow to share knowledge of their investigation without pivoting to external tools like ticketing, email, or messaging platforms.

“Securonix Threat Labs’s mission is to empower security teams with the tools and content they need to respond quickly to emerging and advanced threats,” said Nanda Santhana, SVP, Cyber Security Solutions and Threat Labs at Securonix. “Adding Polarity’s investigation capabilities to our Security Analytics and Operations platform enables analysts to rapidly investigate and prioritize threats by providing the data analysts need to make faster and more consistent decisions, all from a single console.”

Key features of Securonix Investigate include:

  • On-demand enrichment of data against contextual information repositories: Identity, Threat Intelligence, Geolocation, Historical Analyst Observations
  • Ability to have analysts annotate, document, and share observations made during investigations
  • Reducing the dependency on SIEM/SOAR configurations for data and alert enrichment
  • Information sharing channels that can be used for blue, purple, and red teams, as well as intracompany and intercompany communications

Securonix Investigate strengthens the collaborative fabric between analysts and hunters, allowing them to save and share the knowledge and experience that is often lost during analyst turnover, reduce investigation fatigue, and minimize duplicative efforts.

“Polarity’s investigation capabilities in Securonix Investigate empowers Security Analysts and Threat Hunters throughout the investigation phase, not just at the time alerts are announced,” said Joseph Rivela, CSO and Co-Founder of Polarity. “When investigating an incident, analysts need on-demand context during their analysis to better understand threats and communicate key findings across the team. By automatically enriching content and streamlining information sharing, Securonix Investigate provides the comprehensive visibility and context needed to shorten investigation times.”

About Securonix

Securonix is redefining threat detection and response for today’s hybrid cloud, data-driven enterprise. Securonix Next-Gen SIEM, XDR and SOAR are powered by the most advanced analytics and built on a scalable, flexible cloud-native architecture. Securonix leverages behavioral analytics technology that pioneered the UEBA category to reduce noise, prioritize high fidelity alerts, and enable fast and precise response to insider and cyber threats. For more information visit www.securonix.com or follow us on LinkedIn, Facebook, and Twitter.

About Polarity.io

Polarity fuses knowledge and data together into one unified view, enabling information delivery, automating knowledge transfer across teams, and allowing leaders to understand which of their data sources deliver value. Polarity up-levels teams in security operations at Fortune 100 companies, incident response for health care organizations, threat intelligence at financial services companies, hunt operations for the US federal government, and more. Learn more at www.polarity.io or follow us on LinkedIn, Twitter, or YouTube.

Contacts

Data & News supplied by www.cloudquote.io
Stock quotes supplied by Barchart
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the following
Privacy Policy and Terms and Conditions.