McAfee Advanced Correlation Engine

McAfee Advanced Correlation Engine

Sophisticated, dedicated threat detection based on risk and real-time data

Next Steps:

Overview

McAfee Advanced Correlation Engine monitors real-time data, allowing you to simultaneously use both correlation engines to detect risks and threats before they occur. You can deploy Advanced Correlation Engine in either real-time or historical modes.

Alerts and real-time risk assessment — Identify an asset (users or groups, applications, specific servers, or subnets) and Advanced Correlation Engine alerts you if the asset is threatened. Audit trails and historical replays support forensics, compliance, and rule tuning.

Threat identification and scoring — Advanced Correlation Engine deploys alongside McAfee Enterprise Security Manager to identify and score threat events in real time using both rule- and risk-based logic.

SIEM Webcast Series

Features & Benefits

Model your enterprise risk

Provide impeccable modeling of your organizations risks by scoring attributes that matter. Develop a baseline and send notifications when normal thresholds are exceeded.

Leverage proactive risk assessments against critical data

Use both correlation engines simultaneously to detect risks and threats before they occur, so you can use risk scores within traditional correlation logic.

Achieve recursive threat assessment

Deploy Advanced Correlation Engine in historical mode and you can replay any historical data set through the traditional and rule-less correlation engines.

Customer Stories

McAfee

McAfee integrates NitroSecurity products into its portfolio, improving its SIEM offering.

Highlights
  • Significantly shortens time to analyze security events from four to six days to less than 10 minutes
  • Decreases time to produce PCI compliance reports from eight to 12 hours to 10 minutes
  • Saves administrative time and manual maintenance while eliminating unnecessary activities
  • Facilitates disaster recovery and allows for proper use of virtual machines
  • Improves the organization’s overall security posture in the industry

News / Events

Events

No results found

On Demand

No results found

Resources

Data Sheets

Advanced Correlation Engine

For a technical summary on the McAfee product listed above, please view the product data sheet.

Reports

Technology Blueprints

White Papers

Community

Forums

No results found

Blogs

  • Securing the Panama Canal
    Brian Contos - May 16, 2012
    I just finished up a trip to Panama City, Panama. I’ve been to several countries in Central America like Costa Rica, El Salvador and Guatemala, but this was my first trip to Panama. In countries like Panama, the general rule of thumb is that business is focused across three primary verticals:  financial services, telecommunications, and Read more...
  • Big Security Data – Hawkeyed Snake Abatement (Part 3)
    Kim Singletary - May 16, 2012
    In my two previous entries, I discussed the security concerns around implementing Big Data for companies and how Big Data is used to provide Security Intelligence that recognizes bad behavior and reputation for files and connections. But what can companies do today to get ahead and implement Big Security Data? With more and more connections, Read more...
  • No Sleep for Security – McAfee ePO and Intel vPro
    Ed Metcalf - May 15, 2012
    You are not scanning your enterprise for malware often enough. Nobody is. Informal polls of customers and security professionals show that “Wednesday at noon” is the typical schedule for a full virus scan. The explanation for this timing boils down to “people are usually in the office on Wednesday and eating lunch around noon.” Some Read more...
  • NACACS 2012: Information Warfare, Emerging Markets, and…Did I Mention Humidity?
    Brian Contos - May 10, 2012
    I just returned from speaking in Orlando, Florida – humidity, Mickey Mouse, and… did I mention humidity? I was there this week for the ISACA North America CACS Conference, presenting on information warfare, or more simply, nation-state attacks. I’ve spoken at around two dozen ISACA events over the last few years, and this year’s was one Read more...
  • Technology, Talent, Techniques: 3 Steps in Addressing Insider Threats
    Brian Contos - May 10, 2012
    This week I found myself in Memphis, Tennessee. Home of great music and BBQ – as you can see from the photo below. But this trip was not all pork shoulder and blues bands. I was speaking at the United States Army Medical Command (MEDCOM) Information Assurance and HIPAA Summit. My talk was on data Read more...