SecurityBrief Australia - Technology news for CISOs & cybersecurity decision-makers
Story image
Cybereason & Observe launch advanced SIEM Detection & Response platform
Tue, 2nd Apr 2024

In a major boost to technology infrastructural security, Cybereason, an industry leader in future-ready attack protection, alongside Observe, has launched a new SIEM (Security Information and Event Management) Detection and Response (SDR) solution. Aimed at optimising and revolutionising security with enhanced observability in the era of generative artificial intelligence, the new SDR solution provides an advanced, unified platform for increased security and visibility.

The innovative SDR platform is designed to address existing issues with outdated SIEM architectures and boost SOC (Security Operations Centre) effectiveness. It does this by automating the ingestion and enrichment of data across an organisation’s digital footprint. Obsolete SIEM architectures have long been a stumbling block in the pursuit of effective enterprise security, but SDR presents a robust solution; by removing the cost barrier to ingest a variety of security-relevant data, unprecedented visibility across enterprises can be achieved.

Unlike legacy SIEM architecture, SDR consolidates all security data into a single data lake, effectively breaking down individual purpose-built silos into one unified observability platform. This streamlines detection, investigation, and response processes, ensuring rapid breaching detection and bolstering business resilience overall.

A key highlight of the Cybereason solution is its open architecture, which allows organisations to ingest structured and unstructured data to glean significant insights across all their existing IT and security stacks, without being bound by restrictive vendor platforms. Consequently, businesses can seamlessly integrate SDR into their current infrastructure, maximising returns on their investment while minimising disruption.

By combining observability with advanced detection and response capabilities, the solution enables SecOps teams to utilise AI-driven analytics across the entire IT infrastructure. Cybereason's core technology, underpinned by the MalOp Detection Engine, enables automated triage and investigation workflows which significantly reduce the Mean Time to Detection (MTTD). Guided remediation facilitated through Cybereason’s Unified Portal enables faster responses to sophisticated cyber attacks.

Eric Gan, CEO of Cybereason, expressed his enthusiasm for the new SDR solution, stating, "We are excited to launch this powerful solution. Working for months with our partners gave us the opportunity to build technology that fit the actual needs of our customers; such as exponential data growth, IT complexity and advanced generative AI threats. The new solution provides a scalable observability platform to quickly correlate threats across diverse IT platforms while reducing data cost and enabling software consolidation."

Observe CEO Jeremy Burton also recognised the value of the joint effort, saying, "Cybereason recognises that Security is a data problem. Observe enables consolidation of all security event data in a single, central, data lake. This improves visibility into the security posture of an organisation and also lowers costs because of its modern cloud architecture.”