Inspekt Security Moves Raw Packet Capture Into the Cloud

) September 17, 2008 -- Inspekt Security, the cloud-based Security Information and Event Management (SIEM) company, today announced it has joined forces with Solera Networks, network memory leader, to offer its latest add-on feature, Inspekt Network Replay, which seamlessly integrates hosted security event monitoring with full fidelity traffic reconstruction.

"Inspekt offers a service-based ESIM/NBAD/LM hybrid," said Nick Selby, Director of Research Operations & Research Director, Enterprise Security at The 451 Group. "Adding Solera Networks' capture capabilities will provide context to specific alerts and a more accurate picture of network events."

Adding Solera Networks' capture capabilities will provide context to specific alerts and a more accurate picture of network events.

With Inspekt Network Replay, Inspekt Security can now provide InspektOne users access to all related packets for every event triggered, without requiring any hardware at the customer site.

This provides forensic investigators with an unprecedented level of detail, and the ability to combine the machine learning algorithms of Inspekt Security with downloadable PCAP files for deep packet investigation, redefining practical information security auditing.

"Unlike other capture solutions we have reviewed, only Solera Networks was able to provide a solution that does not rely on proprietary hardware," said Marco MacArtney, Inspekt Security CEO. "Their software-based solution for complete packet capture was a perfect fit in our 'in the cloud' service offering."

Every time an event is triggered using Inspekt Security's proprietary machine learning algorithms, a PCAP file with the raw packets for the event (+/- five seconds) is generated using the Solera Networks Capture Stack™ linked to the customer log data. If a full forensic investigation is required for en event, the forensic investigator can download the relevant PCAP file and analyze the packets in his tool of choice - for instance Wireshark. Being a cloud-based service, the Inspekt system never runs out of disk space and the PCAP files can be stored indefinitely.

Inspekt Network Replay is an add-on feature to the InspektOne SIEM solution that will be available for all existing and new customers. Pricing starts at $500/month.

About Inspekt Security
Inspekt Security delivers an easy to use, easy to deploy security information and event management (SIEM) solution as an "in the cloud" service offering. With zero hardware at the customer site, unlimited storage capacity, and machine learning technology to find the interesting "needles in the haystack" of log data, Inspekt Security offers a uniquely scalable solution to the market. An innovative user interface, and low monthly fees secure access to network security information in the easiest possible way. For more information on Inspekt Security visit http://www.inspektsecurity.com
About Solera Networks
Solera Networks' DS Series is a line of high-performance network appliances, including software-only virtual appliances, which capture, record and archive 100% of network traffic at speeds up to 10Gbps. The data is then accessible instantly via Solera Networks' search, alert and archive interfaces, or via any standards-based security, forensics, compliance, analytics or network management application. For more information on Solera Networks, visit http://www.soleranetworks.com.

###

Similar entries

  • ) March 31, 2009 -- Solera Networks, a provider of innovative network forensics software and search appliances, today announced that it has been named a 2009 Hot Company by Network Products Guide, a leading technology solutions publication. The company's president and CEO Steve Shillingford presented last week at the awards ceremony and 2009 Technosium World Executive Alliance Summit in San Francisco to an audience of industry and end-user executives, including Chief Information Officers (CIOs) and Chief Information Security Officers (CISOs).

  • ) April 13, 2009 -- Simena®, the innovative leader in appliance based network test solutions, announces a new product, Packet Flow Switch (PFS), which is a highly sophisticated network appliance that can be used as a tool aggregator, traffic consolidator, and traffic divider. PFS was designed to help users increase their productivity in monitoring and troubleshooting by providing flexibility with test configurations using existing network tools while saving valuable SPAN ports on switches.

    Simena - Packet Flow Switch

  • ) April 13, 2009 -- Simena®, the innovative leader in appliance based network test solutions, announces a new product, Packet Flow Switch (PFS), which is a highly sophisticated network appliance that can be used as a tool aggregator, traffic consolidator, and traffic divider. PFS was designed to help users increase their productivity in monitoring and troubleshooting by providing flexibility with test configurations using existing network tools while saving valuable SPAN ports on switches.

    Simena - Packet Flow Switch

  • ) October 27, 2009 -- Relevant Security Corporation and bitRail LLC have partnered to develop Revolution Security and its line of RevSecure advanced multi-service network appliances designed to meet the critical security needs of organizations in data-intensive, security-imperative computing environments. Through a licensing agreement, Relevant Security's RPM technology - which offers continuous mutual authentication and security for data and electronic communications between all nodes on any network at the transaction level - is now fully integrated with bitRail's edge-of-network appliances, which manage the security, communications and networking of converged networks. Three RevSecure devices have been released in the initial line, the Citizen, Patriot and Hero.

  • A new network security assessment solution from PCIS is now on the market to help organizations meet their network security compliance mandates, providing a roadmap of security improvements

  • Automatic detection and informed remediation of loopholes in an IT infrastructure hasn't been easy before for many organizations. This partnership would help organizations to leverage the automated vulnerability management platform and proactively fix the security loopholes in their network and applications.

  • ) March 26, 2009 -- Clear Blue Security™, a global leader in computer network security monitoring, is pleased to announce the launch of their new website at ClearBlueSecurity.com.

    Monitor Laptop Security


    Clear Blue Security is a revolutionary Software-as-a-Service (SaaS) based virtual computer network security monitoring assistant. It was launched in Europe in June of 2008 after two years in development and testing. The product rollout continued with its release in the United States in December of 2008.

  • ) April 1, 2009 -- NitroSecurity, Inc. today released additional signatures and updates to bolster protection against the growing threat of the Conficker worm. NitroSecurity utilizes IPS blocking technology, windows registry & log monitoring, and SIEM correlation features all as one integrated solution to detect and block the Conficker worm.

  • August 12, 2008 --
    Its web-based, PC and mobile clients were developed to provide companies with security, management and regulatory compliance. This includes authenticating, encrypting and logging IM communication to comply with rules.

  • ) May 7, 2009 -- Clear Blue Security™, a leader in computer network security monitoring, today announced that it entered into a partnership with Interglobe Communications to deliver enterprise-class network security monitoring and IT security services to small and medium sized businesses. Interglobe Communications is an IT consultancy company supplying solutions/components for setting up and configuring IT-networks with SMB's and public institutions.

    Network Monitoring Dashboard

  • ) October 27, 2008 -- Intellitactics, a leader in enterprise security and compliance management solutions, and Programatic, a leading enterprise security solutions provider in Italy today, announced a business partnership where Programatic will sell and provide services for Intellitactics' security information and event management (SIEM) software and appliances.

  • ) February 19, 2009 -- This new version of the AppGate Security Server enables organizations and people to grow with the AppGate Security Server Solution step by step. The virtualized server can run on almost any hardware platform based on x86 technology, for example under VMware and enables customers to experience the full potential of the AppGate Security Server, its ease of use and at the same time benefit from having a fully functional security solution without cost. The only limitation from the professional Editions is that it is limited to 20 concurrent users and support has to be purchased separately.

  • ) June 16, 2009 -- Quest, a mainstay of the Top VAR 500, and Intellitactics, a leading provider of appliances and software for enterprise security management, announced an agreement that features Intellitactics SAFE enabling a menu of new managed security services from Quest. Under this agreement Quest will offer a new Managed Service model where Quest will locate the Intellitactics SAFE appliance on the Client's premise and provide remote expertise to monitor logs and analyze security events for compliance and threat management.

  • ) May 18, 2009 -- Astaro Corporation, a leading network security vendor, today announced the availability of the Astaro Web Gateway and Astaro Mail Gateway as virtual appliances.

  • ) May 8, 2009 -- Qosmos, the innovative provider of software modules and appliances specially designed to collect network intelligence, has selected the BreakingPoint Elite for comprehensive Layer 2-7 network equipment testing.
    Qosmos' technology identifies and extracts information traveling over networks in real time, enabling a wide range of applications such as lawful interception, network protection, data retention, regulatory compliance, content-based billing, audience measurement and service optimization.

    BreakingPoint Elite Layer 2-7 Testing Tool

  • ) June 4, 2009 -- BrightCloud today announced that Microsoft has selected BrightCloud to provide URL categorization services for Microsoft products. Microsoft has licensed access to BrightCloud's Hosted Internet Security Service in order to incorporate URL categorization into numerous Microsoft and Forefront-branded security products and services such as their upcoming Threat Management Gateway.

  • EEye Digital Security (www.eeye.com), an expert in integrated security and threat management solutions, today announced the availability of Retina OnDemand, which provides network security via the Software-as-a-Service (SaaS) model.

  • ) December 9, 2008 -- BreakingPoint announces that network security leader StoneSoft is using its testing tools to accelerate product development while reducing costs

    Business relies on high-performance and secure networks that can adapt to the changing impact of new applications and threats. Network devices such as Intrusion Prevention Systems (IPS) and firewalls are critical elements in the protection of a network and the continuity of business. Stonesoft, as the innovative developer of StoneGate Firewall/VPN, IPS and SSL VPN solutions, helps protect networks with sophisticated content-aware network security equipment. These devices use granular packet inspection and intelligent event correlation capabilities to protect the network while ensuring resilient connectivity.

  • ) June 2, 2009 -- Countrywide Training now offers CCNA Security bootcamp classes that provide students with the knowledge needed to successfully pass the certification exam and become a certified Cisco professional within the IT world.

  • ) October 15, 2009 -- OpenService, Inc., a provider of compliance, security, and network management solutions announced today a re-branding of the Company as LogMatrix.

  • ) November 19, 2008 -- Today ServePath, the leading Silicon Valley Managed Hosting Provider, and GoGrid, the largest Windows Server 2003/2008 and Linux Cloud Computing Infrastructure provider, released "Cloud Connect" which enables high-speed, private network connectivity between ServePath high-end dedicated servers and GoGrid Windows or Linux Cloud servers. Also, known as "cross connects," the new "Cloud Connect" service allows for customers to retain high-end and robust dedicated servers and all managed services, while receiving elasticity, ease and scalability benefits of GoGrid Cloud Web and Application servers.

  • New research finds computers located in Iran, North Korea, China, and Russia scouring computer peer-to-peer file-sharing networks for information that could place national security at risk.

  • ) February 20, 2009 -- The security experts at Agnitum, developers of the Outpost Pro product line, are pleased to announce the latest implementation of the company's core business security solution. Outpost Network Security (ONS) 3.0 delivers comprehensive anti-malware and intrusion protection for Windows-based networks.

    Outpost Network Security 3.0

  • ) May 13, 2009 -- Leaf Networks, LLC announced today a licensing agreement with NETGEAR, Inc. Under the agreement, NETGEAR is licensing Leaf Networks peer-to-peer VPN technology that enables ReadyNAS® users to remotely access their network attached storage devices through the ReadyNAS Remote application from anywhere as if they were on their local area network.

  • ) December 4, 2008 -- Rivulet Communications, whose technology dramatically improves the performance of Ethernet networks, today announced that it has been issued US patent #7,453,885, "Network Connection Device," for its wide-area network (WAN) Internet Protocol (IP) network Quality of Service (QoS) technology. This new technology enables the same guaranteed performance on IP networks that Rivulet's first patent does for local Ethernet networks.

  • ) February 6, 2009 - Astaro (http://www.astaro.com), a leading network security vendor, today announced that users of Apple's iPhone can now automatically setup a secure, IPsec VPN (virtual private network) tunnel with no technical knowledge required. This new process adds yet another method that iPhone users can use to connect to Astaro Gateway products. In addition to the iPhone's PPTP and L2TP VPN connectivity options, Astaro users can now use the iPhones IPsec VPN capabilities--widely accepted as the best security choice for VPN tunneling--to connect to their home and business networks.

    Gert Hansen, Founder and VP of Product Marketing at Astaro

  • Brookline (MA) USA, : All the advanced security services are capably integrated and are competently channelized by Boston computer service towards ensuring that no data or information gets hacked. In fact, these high-tech security solutions properly check all the system related issues and provide timely security assessment, Internet protection, data encoding, and e-mail/ password security to ensure complete secrecy of your business details.

  • Net Onboard Sdn Bhd is now appointed as a Malaysia Reseller of the well known Barracuda Network - industry's leading provider of email security, web filtering, and IM security appliances worldwide.

  • ) February 4, 2009 -- enStratus Networks LLC announced today that it is formally launching with its first public demo on Friday, February 6 at MinneDemo, a premier technology demo and networking event. Already serving a dozen companies across a variety of industries, enStratus provides tools for managing the secure and reliable deployment of enterprise applications in the Amazon Cloud and other cloud infrastructures. enStratus will bring confidence in the cloud to companies who have been looking for a secure, high-availability approach to cloud computing.

  • ) December 2, 2008 -- Astaro Corporation (www.astaro.com), a leading network security provider, today announced that its flagship product, the Astaro Security Gateway, is now certified on the Intel® Modular Server platform through the Intel® Enabled Server Acceleration Alliance (Intel® ESAA) program. Through its Intel ESAA program membership, Astaro will provide an additional Network Security deployment option for organizations that seek the benefits and cost savings of consolidating server and network resources.

    Astaro Corporation logo

  • ) July 22, 2009 -- Astaro Corporation (www.astaro.com), a leading network security vendor, today announced that Astaro is offering a free silent business audit and forensic analysis for small businesses.

  • New Security Item in the US Security Market - Mini Gadgets Inc of Atlanta, GA introduces the HS1450 complete security device that can support up to 4 cameras - this is a great economical product

  • ) December 8, 2008 -- Intellitactics announced that Alan Paller, Director of Research for the SANS Institute, and customer Arlan McMillan, VP/Director of Global Information Security Operations at ABN AMRO, will discuss what works with security in formation and event management (SIEM) on December 11 during a special webcast at 1 PM EST. This popular SANS feature, the What Works webcast, tells the story of how ABN AMRO correlates and analyzes massive data flows using Intellitactics. It wasn't a success story from the beginning.

  • September 9, 2008 --
    Installed by systems integrator, Thompson AVC, the Universities CCTV recording system now spans the three city centre campuses of Wolverhampton, Walsall and Telford. With the system upgrade to IP-based recording the existing network of OCTAR DVR’s has been incorporated to deliver a single recording to the Universities Security department.
    "The University is dedicated to providing a secure environment to support the development of students and staff alike. Developing a comprehensive CCTV monitoring and recording solution is a key element in achieving this". – Security Manager – Sandy Shaw

  • ) June 2, 2009 -- IT professionals looking to enhance their knowledge on the updated Security+ 2008 objectives can now take a boot camp class from Countrywide Training. The new version features enhance objectives and updates, which require IT professionals to undergo a bit of training to properly pass the 2008 Security+ certification exam.

  • ) January 6, 2009 -- ARX announced today that PrivateServer, their multipurpose HSM (Hardware Security Module), is now interoperable with Cyber-Ark Software, Inc.'s Digital Vault Server, the infrastructure for all Cyber-Ark products. Using PrivateServer with Cyber-Ark products will increase the secure capacity of Cyber-Ark's Enterprise Password Vault ™, their Inter-Business Vault, and their Sensitive Document Vault® offerings. Cyber-Ark's vaulting solutions create safe havens-distinct areas for storing, protecting, and sharing the most critical business information.

    ARX

  • Quantiq International, the preferred regional security architect based in Singapore receives recognition from the worlds most renowned global information security and computer forensic expert, Paul Henry on his interview with SANS Security Hero.

  • ) July 23, 2009 -- Security Innovation, a leading provider of software security solutions, is acquiring NTRU, who specializes in hardware and embedded security. This acquisition is a strong complement to Security Innovation's existing software security products and Information Risk services. The combined entity will offer a more complete data protection and transmission solution for organizations that build complex systems and seek total platform security.    

  • ) April 2, 2009 -- MassBiz, LLC announced today its new web site called PhySecTech.org. PhySecTech.org is a physical security technology community group site, enabling industry peers to share professional knowledge about physical and IT security technologies, news, events, ideas, solutions and projects. PhySecTech.org is part of a new class of websites that empower people to come together and make things happen is up and running. We combine the most useful features of traditional websites, blogs, collaboration software and social networks.

  • ) July 23, 2009 -- Security Innovation, a leading provider of software security solutions, is acquiring NTRU, who specializes in hardware and embedded security. This acquisition is a strong complement to Security Innovation's existing software security products and Information Risk services. The combined entity will offer a more complete data protection and transmission solution for organizations that build complex systems and seek total platform security.