Reducing attack dwell times

Latest release enables security teams to find attacks faster, reconstruct attacker activity and prevent data theft.

  • 7 years ago Posted in
Fidelis Cybersecurity has released Fidelis Network 8.2 (formerly Fidelis XPS). The new release cuts security analysts’ response times with new detection capabilities that find the tools and tactics employed by advanced attackers. An enhanced user experience and tighter integration with Fidelis Endpoint also extend the reach of security teams by enabling them to trace threats from the network out to specific endpoints so they can stop data theft before it occurs.
“Security teams are buried in alerts. Advanced threat actors use this confusion to compromise organisations and roam freely in their networks,” said Fidelis Cybersecurity’s senior vice president of products, Brian Karney. “Fidelis Network helps security teams turn the tables on attackers by focusing on the alerts that matter. With the release of Fidelis Network 8.2, security teams can detect, prioritise and investigate suspected incidents faster. Improved context and analytics further help security teams understand the potential risk so they can reduce the impact of suspected security incidents.”
Historically, security teams have had to piece together multiple solutions to triage and investigate suspected threats. Fidelis Network allows security teams to consolidate their security infrastructure by bringing together advanced threat detection, data loss prevention (DLP) and security analytics capabilities within one solution.
“Fidelis Network looks deeper and broader than other network security products. It analyses all of an organisation’s network traffic at multi-gigabit speeds. Then, it decodes the content in real-time, no matter how deeply embedded it is,” said Fidelis Cybersecurity’s CTO, Kurt Bertone. “We don’t just look for malware, we see lateral movement, the staging of data for exfiltration, and other suspicious activity.”
New capabilities in Fidelis Network 8.2
Enhancements in this release expand the detection capabilities of Fidelis Network and automate tasks security analysts perform every day. New capabilities include:
  • Spot suspicious activity with new detection and hunting tools: Enhanced analytics reduce attacker dwell time by evaluating historical network metadata to uncover anomalous and malicious behaviours
  • Find threats faster with enhanced analysis, detection and investigation: Richer analysis of embedded email links identify “phished” email users targeted by attackers. Fidelis Network correlates users’ IP or MAC address to network sessions using active directory login and DHCP transaction information
  • Automate endpoint investigation from within Fidelis network: Seamless navigation between Fidelis Network and Fidelis Endpoint automatically collects information about endpoints related to network alerts so analysts can pivot from detection to response within one interface
  • Prioritise the most significant threats in your environment: New alert ratings incorporate feedback from the Fidelis user community so analysts can prioritise and triage alerts more effectively
  • Monitor inbound and outbound mail threats: New mail sensor features improve detection of inbound malware and outbound data theft to support use cases for data loss prevention (DLP) and advanced threat detection in a single solution
Research shows ‘game needs to be changed,’ with security innovation years behind that of the...
73% of organizations lack automated patch management, and 62% experienced incidents involving...
Quest Software has signed a definitive agreement with Clearlake Capital Group, L.P. (together with...
Dell EMC PowerProtect Cyber Recovery for AWS provides a fast, easy-to-deploy public cloud vault to...
Aqua’s cloud native application protection platform becomes the only solution that protects cloud...
54% of organisations working on a security transformation project now or in the next 12 months.
Node4 has released its Mid-Market IT Priorities Report 2021. The independent report reveals that...
Zscaler Zero Trust exchange cloud-based architecture enables superior green security capabilities...