datasheet
Users of ExtraHop’s RevealX platform gain enhanced ability to streamline and automate investigation of network threats, including up to 365 days of full record search, with the new Premium Investigation option. This also gives users a new way to programmatically access RevealX records for correlation with other security tools like a SIEM and/or SOAR. For SOC leaders searching for more methods to enable automated workflows using network data and analytics, Premium Investigation is a must-have. Pre-built parsers, dashboards, and correlation rules are packaged with Premium Investigation to make integration with Splunk, CrowdStrike, and other SIEM/SOAR solutions fast and easy.
What does the RevealX Premium Investigation option provide?
It provides an enhanced ability to streamline and automate investigation of network threats, including up to 365 days of full record search.
How does Premium Investigation help with integrating other security tools?
It gives users a new way to programmatically access RevealX records and includes pre-built parsers, dashboards, and correlation rules to make integration with SIEM/SOAR solutions fast and easy.
Who is Premium Investigation a must-have for?
It is a must-have for SOC leaders searching for more methods to enable automated workflows using network data and analytics.