RSA to acquire Fortscale

Fortscale will become part of the RSA NetWitness Platform to deliver the most comprehensive UEBA solution on the market.

  • 6 years ago Posted in
RSA is to to acquire Fortscale, a pioneer in embedded behavioral analytics. Terms of the deal were not disclosed and are subject to customary closing conditions. RSA's acquisition of Fortscale is designed to provide customers with new user and entity behavioral analytics (UEBA) capabilities through the RSA NetWitness Platform.

 

RSA is also unveiling the newest version of RSA NetWitness Platform that helps security teams detect and respond to modern threats, as well as two new offerings, RSA NetWitness UEBA and RSA NetWitness Orchestrator to strengthen the evolved SIEM and threat defense platform, a revolutionary centerpiece of security operations teams.

 

"The RSA NetWitness Platform has helped our team increase their visibility, detect threats with higher fidelity, and automate response to the threats that pose the greatest risk to our organization" said John Byers, Senior Vice President, Information Security and CISO, IBC Bank. "Our security analysts cite RSA NetWitness Platform as the technology that marks the biggest impact on their effectiveness, making the process of identifying and intelligently responding to threats more streamlined and efficient."

 

In an era of ever-expanding attack surface, protecting against threat actors – from commodity malware and insider threats, to state sponsored exploits and hacktivists – has become increasingly complex. Disconnected silos of prevention, monitoring, and investigation technologies are failing to provide the true end-to-end visibility, detection and automated response needed in a modern digital enterprise.

 

"Adding more security monitoring and prevention tools is a common response to the growing digital risk environment, but too often, the influx of data creates unattended alerts, overwhelming analysts," said Michael Adler, Vice President, RSA NetWitness Platform. "The new UEBA and orchestration capabilities in RSA NetWitness Platform provide heightened visibility and analytics, allowing analysts to keep up with their SIEM data, investigate issues, and automate threat responses, all on a single integrated platform."

 

Introducing RSA NetWitness UEBA

 

RSA's acquisition of Fortscale will provide customers embedded UEBA capabilities integrated with the Platform. RSA NetWitness UEBA directly addresses and overcomes obstacles that standalone solutions have encountered due to their high cost and high touch requirements. RSA NetWitness UEBA requires minimal customization and no manual tuning. Its patented, three-tier unsupervised machine learning analytics engine automatically finds known and unknown threats that rule-based systems cannot with greater accuracy.

 

Fortscale facilitates the automatic identification of deviations from normal user behaviors, to uncover risky and previously hard to detect threats. By understanding behavior, Fortscale can highlight potential risks such as shared user credentials, privileged user account abuse, geolocation and remote access anomalies. Organizations are able to find unknown threats that hide among the huge volume of security data that is typical in today's complex IT environments without heavy installation, maintenance or analyst oversight. Fortscale is designed to:

 

  • Provide fully automatic, unsupervised machine learning;
  • Reduce the need for organizations to have big data experts in their analyst team;
  • Detect unknown threats (compromised credentials, insider threats, data exfiltration);
  • Address malicious behavior in which exploits have received elevated permissions;
  • Be dynamic, automatically learning behavior specific to the environment; and,
  • Require no customization, rule authoring or ongoing care, tuning, rule creation/adjustment.
Sophos has formed a strategic partnership with Tenable to provide Sophos Managed Risk, a worldwide...
Celonis and the BMW Group have significantly expanded their strategic partnership in order to...
Powerful combination of the AI-native CrowdStrike Falcon XDR platform and the Rubrik Security Cloud...
Cockroach Labs has formed a new partnership with Crayon, a global provider of software and cloud...
Research by Alteryx finds that data silos and quality pose (surmountable) challenges as IT teams...
With Splunk, Cisco becomes one of the largest software companies globally.
Proprietary AI engine identifies issues before an influx in help desk tickets.
Only 25% of data professionals believe their organisation’s strategic decisions are data-driven.