Content |
IBM Security Intelligence with Big Data is the product integrating the platform of the analysis of security risks with analytics Big Data for fight against external cyber-threats, detection and prevention of internal risks of security.
Direction
The solution offers complex approach which will allow specialists in analytics of security risks considerably to expand the opportunities and to quickly reveal harmful cyber-activity.
Specific Features
The new solution integrates:
- possibilities of correlation analysis in real time for obtaining relevant knowledge of security risks;
- functions of specialized analytics of big arrays of structured data (for example, notifications about events of security of devices, registers OS, transactions of DNS servers and information flows in network) and unstructured data (the e-mail message, content of social media, the complete information about data packets and business transaction);
- expert opportunities for collecting of proofs of violations of security.
Such combination helps the organizations to solve the most complex problems of security, including "permanent threats to the increased complexity" (Advanced Persistent Threat, APT), fraud and insider threats.
Immersion
To the companies aiming to understand more deeply risks of security, the product gives unprecedented opportunities for identification of threats, integrating the analysis and considerable experience in the field of security of systems.
Broadening the sphere of a research of new data types, the solution helps the organizations to find answers to questions which earlier they could not even set. By the analysis of structured data from internal and external sources together with unstructured data of the enterprise, the solution of IBM helps to reveal the harmful activity deeply hidden in corporate information flows.
The integrated analytics of threats and analytics of Big Data
Proposed solution IBM of Security Intelligence with Big Data integrates possibilities of the platform IBM QRadar Security Intelligence Platform on correlation analysis of data on security and detection of anomalies in real time with the functions of specialized studying of large volumes of business data provided by the platform IBM InfoSphere BigInsights. As a result clients receive the complete solution, unprecedented on functionality, combining functions of intellectual monitoring and the notification with means of the analysis of threats and risks for an in-depth study of information on security and corporate data.
Advantages
- Operational correlation analysis and identification of anomalies in various on type and a format of data in security systems and networks
- High speed of a request of analytical data on security
- The flexible analysis as structured, and unstructured Big Data: information of security systems, e-mail messages, content of social media, these business processes, these transactions, etc.
- The graphical interface for visualization and a research of Big Data
- Tools for the profound analysis and control of network activity
- Powerful solutions with reliable perspective of further improvement
Components
IBM The solution Security Intelligence with Big Data includes extensive base of tools for the analysis of security risks, from a classification system and the automated ordering of data on security to a rule set and dashboards which systematize the best industry practices and accelerate an investment payback. In special cases, for acceleration of deployment and additional benefits, IBM is going to deliver InfoSphere BigInsights Application Accelerators.
Support
The solution is followed by expert professional services from IBM. These opportunities help clients to accelerate start of initiatives of security of Big Data thanks to attraction of the best techniques and broad experience of implementations. Besides, the solution is supported by services of Information Security Service of IBM Security Services which help clients to manage effectively current transactions on security, providing means of operational monitoring and management of various security technologies, for example, of SIEM (Security Information and Event Management) and also free services, in particular, for assessment of security status, speed of response to incidents, etc.
Delivery dates
Products of the IBM QRadar Security Intelligence Platform platform and the IBM Big Data Platform platform, including IBM InfoSphere BigInsights, are available already now.
Role of Big Data in the solution of complex problems of security