Situational and risk aware SIEM

1 August 2012 Security Services & Risk Management, Products & Solutions

McAfee has announced situational awareness and accuracy for Security Information and Event Management (SIEM). The introduction of McAfee Enterprise Security Manager (formerly NitroView) expands SIEM from simple event analysis to accurate and actionable information through the integration of threat, user and counter measure intelligence. The McAfee ‘built for Big Security Data’ SIEM, includes dynamic threat visibility from McAfee Global Threat Intelligence, and counter measure awareness through McAfee ePolicy Orchestrator software and McAfee Risk Advisor.

McAfee Enterprise Security Manager provides meaningful intelligence and takes SIEM to a real-time understanding of the global threat landscape by delivering immediate information on events, users, systems, data, risks, and counter measures for accurate situational awareness. This rich understanding of security – by connecting the dots and pinpointing attacks – reduces time to respond and provides intelligently prioritised security alerts.

The big data challenge

Core to increasing situational awareness is the ability to collect, maintain and intelligently process billions of relational data points both in real-time and historically. Unlike other SIEMs that are struggling to keep up with exponentially increasing data flows, McAfee Enterprise Security Manager has a scalable database that was built to handle big security data. With this unique capability, the solution is capable of not only processing billions of events per day, but connecting those events with threat, counter measure and user identity information to provide accurate and actionable intelligence.

Two-way integration with McAfee ePolicy Orchestrator software extends visibility and control across the entire security and compliance environment. Integration with Global Threat Intelligence from McAfee Labs provides the ability to correlate real-world source reputation information with security events so organisations can automatically pinpoint probing and active attacks and immediately shut them down. Through integration with McAfee Risk Advisor, McAfee Enterprise Security Manager leverages risk, vulnerability and counter measure context to provide the most accurate risk score available – allowing enterprises to prioritise responses based on the security posture of the target.

The Security Connected Reference Architecture is an open framework supported by McAfee Enterprise Security Manager, providing an easy to use GUI that allows for parsing of security data from custom applications or other third-party sources. McAfee currently supports over 300 security data sources as input into Enterprise Security Manager and is committed to extending support for third-party data sources, having added 70 new sources since the Nitro Security acquisition.

For more information visit http://us/products/siem/index.aspx

For more information contact McAfee, +27 (0)11 707 5500, [email protected], www.mcafee.com





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

ArxTech: Over 30 years of evolving security solutions for South Africa’s toughest challenges
Security Services & Risk Management Integrated Solutions
[Sponsored] For over 30 years, a Centurion-based company has helped shape how security technology is designed, deployed, and supported in South Africa. Originally known as CellSecure, it now operates as ArxTech.

Read more...
Innovations shaping the safety and security landscape
Integrated Solutions Products & Solutions
TMT Services and Supplies is excited to connect with all attendees, share insights, and explore the latest trends and innovations shaping the safety and security landscape.

Read more...
Putting security in gear
Asset Management Products & Solutions
The inaugural Securex Cape Town 2025 will showcase a number of companies focused on vehicle and fleet security on South Africa’s dangerous and often crime-infested roads.

Read more...
Managing assets and clear communication
Asset Management Products & Solutions
Communication is essential for security management as well as efficient asset control. A few companies at Securex Cape Town 2025 might have the solution you are looking for.

Read more...
Drones and a hint of access control
Surveillance Products & Solutions
Drones are an indispensable tool for security operations, with more functionality and capabilities than ever. Securex Cape Town 2025 will naturally have drone service providers available to light the way for interested parties.

Read more...
Don’t Miss the Exclusive Launch of the AirXpress 3 SCBA
Security Services & Risk Management
Be the first to experience the all-new AirXpress 3 Self-Contained Breathing Apparatus (SCBA), designed and manufactured by MSA, and brought to you by PSA Africa.

Read more...
Transform WhatsApp chaos into real-time security intelligence
Security Services & Risk Management
The HYDRA AI security intelligence software plugs into existing guard chat groups to automatically convert voice notes, photos, and texts into structured, real-time security data and insights.

Read more...
SABRIC Annual Crime Statistics 2024
News & Events Security Services & Risk Management Residential Estate (Industry)
SABRIC has released its Annual Crime Statistics for 2024, reflecting a significant decline in financial crime losses, but also warning of the growing threat posed by artificial intelligence (AI) in fraud schemes.

Read more...
Advanced time & attendance solutions
Technews Publishing Access Control & Identity Management Products & Solutions
From biometric devices to a powerful mobile app, you will see how businesses of all sizes save time, cut costs, and improve productivity with BioSyn.

Read more...
Health, safety, and environmental eLearning
Training & Education Security Services & Risk Management
SHEilds is a global leader in health, safety, and environmental eLearning, delivering internationally recognised qualifications such as NEBOSH, IOSH, IEMA, and ProQual NVQs.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.