Situational and risk aware SIEM

1 August 2012 Security Services & Risk Management, Products & Solutions

McAfee has announced situational awareness and accuracy for Security Information and Event Management (SIEM). The introduction of McAfee Enterprise Security Manager (formerly NitroView) expands SIEM from simple event analysis to accurate and actionable information through the integration of threat, user and counter measure intelligence. The McAfee ‘built for Big Security Data’ SIEM, includes dynamic threat visibility from McAfee Global Threat Intelligence, and counter measure awareness through McAfee ePolicy Orchestrator software and McAfee Risk Advisor.

McAfee Enterprise Security Manager provides meaningful intelligence and takes SIEM to a real-time understanding of the global threat landscape by delivering immediate information on events, users, systems, data, risks, and counter measures for accurate situational awareness. This rich understanding of security – by connecting the dots and pinpointing attacks – reduces time to respond and provides intelligently prioritised security alerts.

The big data challenge

Core to increasing situational awareness is the ability to collect, maintain and intelligently process billions of relational data points both in real-time and historically. Unlike other SIEMs that are struggling to keep up with exponentially increasing data flows, McAfee Enterprise Security Manager has a scalable database that was built to handle big security data. With this unique capability, the solution is capable of not only processing billions of events per day, but connecting those events with threat, counter measure and user identity information to provide accurate and actionable intelligence.

Two-way integration with McAfee ePolicy Orchestrator software extends visibility and control across the entire security and compliance environment. Integration with Global Threat Intelligence from McAfee Labs provides the ability to correlate real-world source reputation information with security events so organisations can automatically pinpoint probing and active attacks and immediately shut them down. Through integration with McAfee Risk Advisor, McAfee Enterprise Security Manager leverages risk, vulnerability and counter measure context to provide the most accurate risk score available – allowing enterprises to prioritise responses based on the security posture of the target.

The Security Connected Reference Architecture is an open framework supported by McAfee Enterprise Security Manager, providing an easy to use GUI that allows for parsing of security data from custom applications or other third-party sources. McAfee currently supports over 300 security data sources as input into Enterprise Security Manager and is committed to extending support for third-party data sources, having added 70 new sources since the Nitro Security acquisition.

For more information visit http://us/products/siem/index.aspx

For more information contact McAfee, +27 (0)11 707 5500, [email protected], www.mcafee.com





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Hikvision launches AcuSeek NVR
Surveillance Products & Solutions AI & Data Analytics
By integrating natural language interaction, Hikvision’s AcuSeek NVR enables precise video and image retrieval within seconds, marking a transformative milestone for the security industry's advance into intelligent and efficient applications.

Read more...
Analyse, automate, and optimise logistics processes
neaMetrics Surveillance Transport (Industry) Products & Solutions Logistics (Industry)
In today’s rapidly evolving logistics sector, the pressure to improve process efficiency, optimise resource usage, and ensure seamless security is more intense than ever. Smart, proactive surveillance is no longer a luxury — it is a critical operational necessity.

Read more...
Risk management and compliance enforcement
Security Services & Risk Management
Having a risk management and compliance programme (RMCP) is not just a procedural formality; it is a legal requirement under Section 42 of the Financial Intelligence Centre Act (FICA).

Read more...
The dangers of poor-quality solar cables
Security Services & Risk Management Smart Home Automation
Reports indicate that one in six fires attended by South African firefighters is linked to substandard solar installations, often due to faulty wiring or incompatible components.

Read more...
Growing risks for employers
Security Services & Risk Management
With South Africa’s unemployment rate exceeding 32% and expected to rise beyond 33% this year, desperation is fuelling deception in the job market. Trust is no longer a given, it is a gamble.

Read more...
Chubbsafes celebrates 190 years
Gunnebo Safe Storage Africa News & Events Security Services & Risk Management
Chubbsafes marks its 190th anniversary in 2025 and as a highlight of the anniversary celebrations it is launching the Chubbsafes 1835, a limited edition 190th-anniversary collector’s safe.

Read more...
New law enforcement request portal
News & Events Security Services & Risk Management
inDrive launches law enforcement request portal in South Africa to support safety investigations. New portal allows authorised South African law enforcement officials to securely request user data related to safety incidents.

Read more...
Continuous AML risk monitoring
Access Control & Identity Management Security Services & Risk Management Financial (Industry)
AU10TIX, launched continuous risk monitoring as part of its advanced anti-money laundering (AML) solution, empowering businesses to detect behavioural anomalies and emerging threats as they arise.

Read more...
Growing risks for employers
Security Services & Risk Management
With South Africa’s unemployment rate exceeding 32% and expected to rise beyond 33% this year, desperation is fuelling deception in the job market. Trust is no longer a given, it’s a gamble.

Read more...
Advanced surveillance storage from ASBIS
Infrastructure Surveillance Products & Solutions
From a video storage solutions perspective, SkyHawk drives, designed for DVRs and NVRs, offer high capacity, optimised firmware, and a reliability workload rating of hundreds of terabytes per year.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.