Corelight

Corelight makes network and cloud activities tangible.

Corelight is based on the open source tool Zeek, as well as Suricata IDS and SmartPCAP for the efficient and highly flexible recording of network traffic (packet captures).

Zeek data has become the “gold standard” for incident response, threat hunting and forensics in large organisations and government agencies worldwide. Corelight offers a range of network sensors, both physical and virtual, at any scale that simplify the deployment of open source Zeek by adding integrations and features that large organisations require.

Advanced Threat Detection

Advanced Threat Detection is a broad term for solutions that use certain types of analysis to increase the security of systems. Among other things, these solutions can analyse and evaluate downloads or other user activities from various systems risk-free in a sandbox.

Security Information & Event Management (SIEM)

Security Information and Event Management (SIEM) is an approach to security management that aims to provide a holistic view of the security of an organisation’s IT. The SIEM system is based on the principle that relevant data about a company’s security is collected in different places and that it is much easier to recognise trends and patterns that deviate from the usual pattern if all this data can be viewed in one central location. SIEM combines the functions of Security Information Management (SIM) and Security Event Management (SEM) in one security management system.

Threat & Attack Management

Under Threat & Attack Management, we offer products for the centralised and automated analysis and handling of security problems. In contrast to SIEM, these solutions can not only recognise trends and deviations, but also take active action against threats.

Managed MDR (Managed Detection Response)

Managed Detection and Response (MDR) is a security service that prioritises the handling of detection and response capabilities on behalf of a customer. MDR enables companies to operate a turnkey Security Operations Centre (SOC) at a low percentage of the cost of building their own programme.