DFLabs Transforms Security Operations with Automated Triage for Incident Response

Back to all articles

DFLabs SOAR has released a new version of the IncMan SOAR platform that uses automated event triage which will help to significantly reduce the number of cyber security incidents generated from alerts. This capability, first of its kind, called START (Simple Triage And Rapid Treatment) Triage, is being used by a major European bank to eliminate manual first line assessment of suspected fraudulent online transactions. In addition, this new version of IncMan SOAR includes even more enhancements including several new bidirectional integrations from a variety of product categories including SIEM, network defense, endpoint protection and threat intelligence, that expand its orchestration and automation capabilities even further.

Not every alert deserves to become and be processed as a security incident, yet that is how SOAR products currently operate. The new release of IncMan SOAR is breaking this cycle,” said Michele Zambelli, CTO of DFLabs. “By applying our automation engine, enrichment and containment capabilities to events using a triage process, we can dramatically reduce the number that are turned into incidents and placed into the queue for deeper assessment by IncMan and security analysts.

The new version 4.4 with triage of DFLabs IncMan SOAR Platform will be available immediately from DFLabs and its business partners worldwide.

DFLabs will demonstrate the new version 4.4 of IncMan SOAR with triage at Black Hat booth #IC2329 on August 8-9, 2018 at Mandalay Bay in Las Vegas.

You can read the full article here

Read article

Get Started with a One-to-One Personalized Demo

Dramatically reduce the mean time to detection, response and remediation of all potential security incidents, ensuring no alert goes untouched.

See IncMan SOAR in Action.

Request Your Live IncMan SOAR Demo.

DFLabs IncMan SOAR is the pioneering Security Orchestration, Automation and Response (SOAR) platform to automate, orchestrate and measure security operations tasks.

IncMan SOAR harnesses machine learning and automation capabilities to augment human analysts to maximize the effectiveness and efficiency of security operations teams, reducing the time from breach discovery to resolution by up to 80%.

What You'll See in a Demo

See for yourself why IncMan SOAR is the preferred solution of Fortune 500, Global 2000 and MSSP clients. DFLabs IncMan SOAR at a glance:

  • Full and semi-automated Incident Response, improving response times by up to 80%
  • Covers the entire spectrum of IR and SecOps
  • Automated Responder Knowledge (ARK) generated by machine learning
  • Highly flexible and customizable, with over 100 templates and automation actions out of the box
  • Correlation engine correlates all relevant IOCs and artefacts between incidents
  • Multi-tenancy and granular role-based access
  • Dual mode playbooks and intelligence sharing
  • Powerful case management with integrated forensics capabilities.

Yes, I want a demo

DFLabs would like to stay in touch to provide you with marketing related content. By ticking the box you consent to receive educational, company and promotional information from DFLabs and accept DFLabs' Privacy Policy.

* Required fields