SOT

SOT

SOAR
Security Orchestration, Automation and Response

Automation of response to information security incidents using dynamic playbooks and information security tools, building an attack chain and with an object-oriented approach

NG SOAR
Next Generation SOAR

Automation of response to information security incidents with built-in basic correlation (SIEM), vulnerability Scanner (VS), collection of raw events directly from information security tools, dynamic playbooks, building an attack chain and an object-oriented approach. AM and VM are included

AM
Asset Management

Description of the IT landscape, detection of new objects on the network, categorization of assets, inventory, life cycle management of equipment and software on automated workstations and servers of organizations

VS
Vulnerability Scanner

Scanning information assets with enrichment from any external services (additional scanners, The Data Security Threats Database and other analytical databases) to analyze the security of the infrastructure.

VM
Vulnerability Management

Building a process for detecting and eliminating technical vulnerabilities, collecting information from existing security scanners, update management platforms, expert external services and other solutions

FinCERT
Financial Computer Emergency Response Team

Bilateral interaction with the Central Bank, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

GovCERT
Government Computer Emergency Response Team

Bilateral interaction with the state coordination center for computer incidents, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

Mail us to sales@securityvision.ru or get demo presentation

Webinars on analytics and report builders on the Security Vision platform

Webinars on analytics and report builders on the Security Vision platform
28.08.2023

We continue publishing webinars, which provide a clear look at the functionality of the Security Vision platform. We present two new webinars - ‘Analytics Builder’ and ‘Report Builder’. The material was prepared by Roman Dushkov, Presale Manager of Security Vision.


The analytics builder allows you to create any widgets with data to be used in dashboards, cards and reports. The builder uses its own BI engine to display data in familiar charts, graphs, chains of events and parameters. For example, a pie chart by asset type, a chart by incident count, or the location of assets on a world, city or office map, or a relationship graph for assets, risks and incidents.





Reports are created using the document template editor built into the platform. It allows you to generate a document of the required size, page orientation and content with format control over the display of each parameter. The designer does not limit users in the variability and number of required documents and tables, which may be necessary due to internal regulations or regulatory requirements, as well as for storing data in an alienable format.




Previously published webinars Object Builder, Menu and Role Builder, Workflow Builder and Connector Builder can be found here: https://www.securityvision.ru/web/

Recommended

Using the Sysmon utility to improve cyber security
Using the Sysmon utility to improve cyber security
FSTEC certification
FSTEC certification
Dark sides of containers: risks and security measures
Dark sides of containers: risks and security measures
Overview of information security tools: users and data
Overview of information security tools: users and data
The Hive. Parsing an open source solution
The Hive. Parsing an open source solution
Security Vision's ‘features’: general
Security Vision's ‘features’: general
Dynamic playbooks
Dynamic playbooks
Metrics: their charms and insidiousness
Metrics: their charms and insidiousness
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform
Security Vision's ‘tricks’: objects and processes
Security Vision's ‘tricks’: objects and processes
Using MITRE ATT&CK in the Threat Intelligence Platform
Using MITRE ATT&CK in the Threat Intelligence Platform
IT and IS processes
IT and IS processes

Recommended

Using the Sysmon utility to improve cyber security
Using the Sysmon utility to improve cyber security
FSTEC certification
FSTEC certification
Dark sides of containers: risks and security measures
Dark sides of containers: risks and security measures
Overview of information security tools: users and data
Overview of information security tools: users and data
The Hive. Parsing an open source solution
The Hive. Parsing an open source solution
Security Vision's ‘features’: general
Security Vision's ‘features’: general
Dynamic playbooks
Dynamic playbooks
Metrics: their charms and insidiousness
Metrics: their charms and insidiousness
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform
Security Vision's ‘tricks’: objects and processes
Security Vision's ‘tricks’: objects and processes
Using MITRE ATT&CK in the Threat Intelligence Platform
Using MITRE ATT&CK in the Threat Intelligence Platform
IT and IS processes
IT and IS processes

Other articles

MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
Security Vision's ‘features’: general
Security Vision's ‘features’: general
New generation of reports
New generation of reports
Review of the publication NIST SP 800-210 "General Access Control Guidance for Cloud Systems"
Review of the publication NIST SP 800-210 "General Access Control Guidance for Cloud Systems"
Development without code
Development without code
Interaction module with NCCI on the Security Vision platform
Interaction module with NCCI on the Security Vision platform
Review of NIST Publication SP 800-125 "Guide to Security for Full Virtualization Technologies"
Review of NIST Publication SP 800-125 "Guide to Security for Full Virtualization Technologies"
Dynamic IRP/SOAR 2.0 playbooks on the Security Vision 5 platform
Dynamic IRP/SOAR 2.0 playbooks on the Security Vision 5 platform
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform

Other articles

MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
MITRE's publication ‘11 Strategies for a World-Class SOC Centre’. Strategy #10 ‘Apply performance metrics to improve SOC performance’
Security Vision's ‘features’: general
Security Vision's ‘features’: general
New generation of reports
New generation of reports
Review of the publication NIST SP 800-210 "General Access Control Guidance for Cloud Systems"
Review of the publication NIST SP 800-210 "General Access Control Guidance for Cloud Systems"
Development without code
Development without code
Interaction module with NCCI on the Security Vision platform
Interaction module with NCCI on the Security Vision platform
Review of NIST Publication SP 800-125 "Guide to Security for Full Virtualization Technologies"
Review of NIST Publication SP 800-125 "Guide to Security for Full Virtualization Technologies"
Dynamic IRP/SOAR 2.0 playbooks on the Security Vision 5 platform
Dynamic IRP/SOAR 2.0 playbooks on the Security Vision 5 platform
Vulnerability Management module on the Security Vision platform
Vulnerability Management module on the Security Vision platform