Savvius Vigil Designated Ready for IBM Security Intelligence by IBM PartnerWorld
Savvius Vigil integrates with IBM QRadar to increase effectiveness of security alert investigations
Las Vegas, Nevada. – August 1st, 2016 – Savvius™, Inc., leader in packet intelligence solutions for security investigations and network performance diagnostics, today announced it has received IBM PartnerWorld’s Ready for IBM Security Intelligence designation for Savvius Vigil 2.0, the latest version of the network forensics appliance that automates the collection of network traffic associated with security incidents. As a result, Savvius Vigil has been validated to integrate with the IBM® QRadar® Security Intelligence Platform to help better protect customers around the world. The integration capitalizes on Vigil’s ability to store only the most useful network packet data to enhance security investigations, even into incidents that took place weeks or months ago.
"Vigil’s integration with QRadar means our customers can respond more quickly to security alerts, reducing the likelihood of a successful data breach," said Mandana Javaheri, Chief Technology Officer at Savvius. "When breaches do occur, Vigil and QRadar users will be able to investigate and respond much more quickly and effectively to mitigate the cost and damage of a breach."
This integration allows Vigil and QRadar users to operate a closed-loop cycle for identifying, tracking, and investigating alerts that have potential to become security breaches. Security investigators using the joint solution can now examine security events more efficiently with the ability to immediately access the most useful and pertinent packet data for a particular alert.
A recent survey conducted by analyst firm EMA revealed that most enterprises investigate and resolve fewer than 5 percent of their total security alerts, showing a clear need for automation and improvement in the incident response process. Most intrusions that become breaches are not discovered for months, by which time security investigators must have the assistance of Savvius Vigil or rely solely on incomplete information from logs and metadata stores.
The new integration allows Savvius Vigil to store appropriate network traffic for each threat detected by the IBM QRadar SIEM, even packet information from the five minutes leading up to the alert. By presenting only forensically relevant data to investigators, Vigil enhances the speed and accuracy of their investigations. The forensically relevant data is placed in long-term storage in the Vigil appliance, providing insurance against inadequate information during a major breach when time to resolution is particularly critical.
Savvius is attending Black Hat 2016 in Las Vegas (booth #1361). The company will showcase its Vigil network forensics appliance and Insight mini network management appliance, and provide visitors with a sneak peek of the upcoming Omnipeek Security software. More information can be found at http://events.savvius.com/black-hat-2016.
About Savvius VigilSavvius Vigil is the security industry’s first network forensics appliance. Savvius Vigil automates the collection of network traffic needed for security investigations into both alerts, reducing the likelihood of a breach, and into breaches, minimizing their impact. Even breaches not discovered for months can be effectively investigated using Vigil. Savvius Vigil, which integrates with all leading IDS/IPS systems, includes Omnipeek, award-winning network forensics software. For more information about Vigil, visit https://www.savvius.com/products/security/savvius_vigil.
About IBM PartnerWorld’s Ready for IBM Security Intelligence DesignationThe Ready for IBM Security Intelligence alliance is designed to promote technology collaboration and integration to expand and enhance security coverage, collapse silos of information, and increase situational awareness and insights. With the PartnerWorld program and Ready for Security Intelligence validation, IBM supports collaboration with its Business Partners to enable the integration of product capabilities and improved security capabilities for mutual customers.
About IBM QRadarIBM QRadar SIEM consolidates log events and network flow data from thousands of devices, endpoints and applications and correlates raw data to identify security offenses and anomalies. It provides real-time visibility to the entire IT infrastructure for threat detection and prioritization. For more information about QRadar, visit www.ibm.com/software/products/en/qradar-siem.
About Savvius, Inc.Savvius offers a range of powerful software and appliance products that automate the collection of critical network data for network forensics in security investigations and for network and application visibility and performance diagnostics. Savvius products are trusted by network and security professionals at over 6,000 companies in 60 countries around the world. Visit www.savvius.com for information about Savvius Omnipliance®, Savvius Omnipeek®, Savvius Vigil™, and Savvius Insight™, and to learn about Savvius technology and channel partners.
Media ContactsSavvius North America: Mark Chisholm
Savvius Europe: Susie Taylor