Endace Integrates with Microsoft SentinelEndace Integrates with Microsoft Sentinel for Deep Network VisibilityEndaceProbe and Microsoft Sentinel combine AI-powered intelligent SIEM with always-on packet capture, and deep network visibility for accelerated incident response in hybrid cloud environmentsEndace announced an integration between EndaceProbe and Microsoft Sentinel, a next-generation cloud security, information, and event management solution. The integration provides NetOps and SecOps teams with one-click access to definitive, full packet evidence from within Microsoft Sentinel to streamline investigations. Access to Endace’s Always-On packet capture enables accurate event reconstruction and helps security teams to investigate and respond to threats more quickly, with absolute confidence. Benefits of the integration include:
“Deep visibility into network activity is essential when responding to serious cybersecurity events, service outages, or performance issues. One-click access to EndaceProbe’s recorded packet data directly from Microsoft Sentinel shows incident responders exactly what happened before, during, and after any serious event,” said Cary Wright, VP Product at Endace. “Microsoft Sentinel’s built in machine learning reduces noise and uncovers sophisticated threats while EndaceProbes provide a complete, packet-level record of network history. Integrating these two solutions gives SecOps teams easy access to definitive evidence required to triage the most serious threats on the network.” Source: Endace media announcement |