Defensys has presented a new version of the flagship product Defensys SIEM 1.8 with extended functions. The version has audit of cyber event sources for a quick problem’s identification and elimination, Kubernetes performance monitoring for glitch risk minimization, and a faster user authentication through LDAP-protocol.
New level of event source management
In the new version of the Defensys SIEM users can track sources’ statuses, that transfer events to collectors. The status is assessed based on the events’ quantity and quality, which makes the abnormalities detection possible.
For this purpose, the system provides customizable source auditing policies. They track changes in the event pipeline and send notifications via customized integrations when specified threshold values are reached.
Timeliness and completeness of incoming events are crucial aspects for SOC functionality. That’s why the developer has added metrics for sources control which help to promptly detect and eliminate possible problems, such as missing events from one of the sources.
Kubernetes performance monitoring