"Nitro's ability to meet feature demands, coupled with its super fast NitroEDB data management engine on the back end put it in a unique position among SIEM vendors"
— Paul Roberts, Analyst, the 451 Group
 
 

Real-Time Analysis of Information from Logs, Network Flows, and Security Alerts

Log management, in terms of compliance, is primarily focused on the secure collection, encryption, and storage of raw log files—for use in compliance audits and for use as evidence, if needed. However, outside of compliance logs must also be analyzed for security purposes. The result has been a dual-solution approach: implement Log Management system such as NitroView ELM for compliance, and a Security Information Management system such as NitroView ESM for analysis, correlation, incident detection, mitigation and remediation.

Wouldn't it be easier if Log Management & SIEM were combined?

The Integration of Log Management & SIEM

Logs need to be managed, stored, and protected ... but they also need to be analyzed. That's why many log management companies are starting to provide basic SIEM functionality, and why many SIEM companies are selling add-on log management solutions. NitroSecurity believes in the complete integration of Log Management and SIEM.

The first steps are here today: leveraging the ad-hoc reporting capabilities of NitroView ESM to provide robust analysis of most logs, and NitroView ELM's universal log management capabilities to examine the rest: if LogCaster sees anything out of the ordinary, it will send a compatible event to the ESM, so that it can be correlated with other security events and log data, and even network flows.

Enterprise Log Management & Information Analysis

What's next for SIEM & Log Management? Leveraging the full power of our high-performance data management architecture, NitroSecurity has developed NitroView ELM; a true, enterprise-class system integrating the features of Log Management, Log Analysis & SIEM — including a common management and analysis interface, universal log collection, analysis & storage, full log search capability, and the ability to instantly locate the signed & encrypted raw log file associated with any given event&all from a single interface.

Want to know more about NitroView ELM? Register today and receive notifications of product availability, beta programs, and more.



These icons link to social bookmarking sites to help share this content.
  • bodytext
  • del.icio.us
  • Reddit
  • Slashdot
  • Technorati
  • Propeller
  • TwitThis
              
 

Search NitroSecurity.com