New from Corelight💡:

1. Enhanced IDS rules management functionality

2. Extended analyst visibility around hosts, devices, users, and more

3. Upgraded Corelight Software Sensor to give customers more NDR deployment flexibility

Learn how these new developments from Corelight can seamlessly integrate with and complement your adjacent security investments in this blog ➡️ https://corelight.com/blog/replace-ids-and-extend-entity-visibility

#CybersecuritySolutions #SecurityAnalytics #NTA #SecurityAnalysts #IncidentResponse #IncidentResponders #NetworkData #NetworkEvidence #SecurityOperations #SecOps #NetworkSecurity #CloudSecurity #Cybersecurity #NetworkDetectionandResponse #NDR #DFIR

Replace IDS and extend entity visibility

Corelight v27 software release enhances the platform’s integrated Suricata IDS functionality, further integrating alerts with rich context.

"What hosts are offering SSH on my network?"
"What usernames have been used to login over the past week from an IP address?"
“Can I tell where this device is and how it might be related to the organization?”

These are just a few of the questions that might be on your security team’s mind. Help them get the answers they need to defend your network with Corelight’s latest security analytics collection, the Corelight Entity Collection. The Entity Collection identifies apps and subnets, and summarizes activity for hosts, devices, names, services, certs, users, and domains to help customers track assets and speed investigations via immediate asset context. Learn more in this blog from Vince Stoffer: https://corelight.com/blog/corelight-launches-the-entity-collection

#SecurityAnalytics #NetworkData #NetworkEvidence #SecurityAnalysts #SecurityOperations #SecOps #NetworkSecurity #Cybersecurity #NTA #NetworkDetectionandResponse #NDR

Corelight launches the Entity Collection

Corelight Entity Collection, now available in v26 software release, features 3 new packages: Known Entities, Application Identification and Local subnets.