SOT

SOT

SOAR
Security Orchestration, Automation and Response

Automation of response to information security incidents using dynamic playbooks and information security tools, building an attack chain and with an object-oriented approach

NG SOAR
Next Generation SOAR

Automation of response to information security incidents with built-in basic correlation (SIEM), vulnerability Scanner (VS), collection of raw events directly from information security tools, dynamic playbooks, building an attack chain and an object-oriented approach. AM and VM are included

AM
Asset Management

Description of the IT landscape, detection of new objects on the network, categorization of assets, inventory, life cycle management of equipment and software on automated workstations and servers of organizations

VS
Vulnerability Scanner

Scanning information assets with enrichment from any external services (additional scanners, The Data Security Threats Database and other analytical databases) to analyze the security of the infrastructure.

VM
Vulnerability Management

Building a process for detecting and eliminating technical vulnerabilities, collecting information from existing security scanners, update management platforms, expert external services and other solutions

FinCERT
Financial Computer Emergency Response Team

Bilateral interaction with the Central Bank, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

GovCERT
Government Computer Emergency Response Team

Bilateral interaction with the state coordination center for computer incidents, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

Mail us to sales@securityvision.ru or get demo presentation

Security Vision's features: interface

Security Vision's features: interface
30.01.2023

  |  Listen on Google Podcasts  |   Listen on Mave  |   Listen on Yandex Music  |  



Roman Dushkov, Security Vision


We continue publishing the series ‘Security Vision's Features’, which is aimed at introducing you to interesting solutions in our products. We have dedicated this material to the interface features.


Interactive help with examples for each section of the platform



You don't have to know the user documentation by heart or study the table of contents to find the right section: a link from each module of the web console opens the required help section with examples and descriptions.


Customisation of any user's workplace



Allows you to create a personalised showcase of tools and data. For each user (IS or IT specialists, auditors, risk analysts) within a single product you can create personalised visibility zones, responsibilities and workplace appearance.


Visual theme adaptation



There are several variants of built-in colour schemes: for example, a dark theme is especially useful for users who work in the product constantly (it reduces the strain on eyesight) or for those who like programming and are used to the appearance of such consoles.


Adaptation of cards and dashboards to any screen size



Monitoring systems and managing processes (remotely or simply using screens of a different resolution) is important in any situation. Therefore, it is convenient to use thin clients to work with SOAR/SGRC system, as well as to adapt the appearance of objects.


The Security Vision platform is supplemented with a no-code tool for creating the appearance of any object, card, table view, report and dashboard. It can be used to modify absolute and relative sizes of individual elements and blocks.

information security SOAR SGRC

Recommended

Measuring the effectiveness of cybersecurity processes. IS metrics. Part 2
Measuring the effectiveness of cybersecurity processes. IS metrics. Part 2
Darknet - what it is, how criminals use it, what to watch out for
Darknet - what it is, how criminals use it, what to watch out for
What Kerberos authentication is, what NTLM is and how they work
What Kerberos authentication is, what NTLM is and how they work
Review of the publication NIST SP 800-40 "Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology"
Review of the publication NIST SP 800-40 "Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology"
A summary of NIST's special publications on information security. Part 2
A summary of NIST's special publications on information security. Part 2
Development without code
Development without code
SGRC by law. KII
SGRC by law. KII
MITRE publication ‘11 World-Class SOC Centre Strategies’. Strategy #8 ‘Use automation tools to support the work of SOC analysts’
MITRE publication ‘11 World-Class SOC Centre Strategies’. Strategy #8 ‘Use automation tools to support the work of SOC analysts’
Anatomy of visualisation. Part One: From Task to Execution
Anatomy of visualisation. Part One: From Task to Execution
DDoS attacks: what they are and how to protect against them
DDoS attacks: what they are and how to protect against them
The ethical hacker and his role in security
The ethical hacker and his role in security
What trusted boot tools are and what they are used for
What trusted boot tools are and what they are used for

Recommended

Measuring the effectiveness of cybersecurity processes. IS metrics. Part 2
Measuring the effectiveness of cybersecurity processes. IS metrics. Part 2
Darknet - what it is, how criminals use it, what to watch out for
Darknet - what it is, how criminals use it, what to watch out for
What Kerberos authentication is, what NTLM is and how they work
What Kerberos authentication is, what NTLM is and how they work
Review of the publication NIST SP 800-40 "Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology"
Review of the publication NIST SP 800-40 "Guide to Enterprise Patch Management Planning: Preventive Maintenance for Technology"
A summary of NIST's special publications on information security. Part 2
A summary of NIST's special publications on information security. Part 2
Development without code
Development without code
SGRC by law. KII
SGRC by law. KII
MITRE publication ‘11 World-Class SOC Centre Strategies’. Strategy #8 ‘Use automation tools to support the work of SOC analysts’
MITRE publication ‘11 World-Class SOC Centre Strategies’. Strategy #8 ‘Use automation tools to support the work of SOC analysts’
Anatomy of visualisation. Part One: From Task to Execution
Anatomy of visualisation. Part One: From Task to Execution
DDoS attacks: what they are and how to protect against them
DDoS attacks: what they are and how to protect against them
The ethical hacker and his role in security
The ethical hacker and his role in security
What trusted boot tools are and what they are used for
What trusted boot tools are and what they are used for

Other articles

Review of the publication NIST SP 800-161 Rev. 1 (Draft) "Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations"
Review of the publication NIST SP 800-161 Rev. 1 (Draft) "Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations"
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform
How to learn how to build a Kilchain
How to learn how to build a Kilchain
IPS / IDS systems. Intrusion detection and prevention
IPS / IDS systems. Intrusion detection and prevention
How to manage a flock of sheep with one dog, or current approaches to configuring network equipment
How to manage a flock of sheep with one dog, or current approaches to configuring network equipment
Penetration testing
Penetration testing
Anatomy of visualisation. Part One: From Task to Execution
Anatomy of visualisation. Part One: From Task to Execution
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
Using the Sysmon utility to improve cyber security
Using the Sysmon utility to improve cyber security

Other articles

Review of the publication NIST SP 800-161 Rev. 1 (Draft) "Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations"
Review of the publication NIST SP 800-161 Rev. 1 (Draft) "Cybersecurity Supply Chain Risk Management Practices for Systems and Organizations"
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform
How to learn how to build a Kilchain
How to learn how to build a Kilchain
IPS / IDS systems. Intrusion detection and prevention
IPS / IDS systems. Intrusion detection and prevention
How to manage a flock of sheep with one dog, or current approaches to configuring network equipment
How to manage a flock of sheep with one dog, or current approaches to configuring network equipment
Penetration testing
Penetration testing
Anatomy of visualisation. Part One: From Task to Execution
Anatomy of visualisation. Part One: From Task to Execution
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
Using the Sysmon utility to improve cyber security
Using the Sysmon utility to improve cyber security