Home Contact Us See a Demo Support
Products Solutions News Resources Partners Company

Solutions

 

mSuite Security Event Manager

Security has become increasingly complex within the world of Information Technology today. Security used to be synonymous with password management and perimeter defense via a firewall. This is no longer the case. Organizations today are deploying intrusion detection, intrusion prevention, content scanners, anti-span, anti-virus, desktop firewalls, token based solutions and encryption just to name a few.

More and more security defenses seemingly get added on a constant basis. Now consider the need to incorporate syslogs from your network infrastructure devices into the equation, NT Event Logs from your Windows servers and syslogs from your linux/unix servers.

The key challenge facing security departments is how to holistically manage this albatross. It seems as though each piece of the security juggernaut has its own administration, configuration and alerting console.

Regulations and security best practices dictate the need to incorporate all of these security defenses into a consolidated security event management system. This allows your organization to see and respond to issues as they are occurring within your network infrastructure. Trying to tie all of this information together in a manual fashion is next to impossible and is sure to cause your organization to miss important issues. Security auditors will also present major challenges. How can you pass an audit when you cannot provide detailed reports on the state of your security defenses?

Monolith Secure SEM addresses these issues. Monolith has aggregators that pull in events from any type of device or system that your organization has. We then normalize, de-duplicate, correlate, filter, prioritize, notify, escalate and open tickets as dictated by your business processes. There are many systems on the market that take in feeds from multiple systems to present you with consolidated security views.

The biggest differentiator that Monolith brings to the table is our ability to serve more than just the security group. Monolith is a solution that can be leveraged to meet the needs of the network and the server teams as well. After all, when is a syslogs a firewall event versus an router event versus a linux server event? When is a NT Event Log a system versus application versus security event? The point is they could be all of the above. The system needs to be able to address and accommodate these distinctions.

Monolith also addresses operational concerns needed within most organizations. Monolith has excellent ticketing integration (bi-directional), notification & escalation, asset management and historical reporting. Many tools only keep the de-duplicated summary of events. With Monolith we retain the individual events for detailed historical analysis.

Contact us for information on our Secure SEM solution offering.