TAAS NetAnalyzer™ delivers advanced post-infection behavioral detection and analysis of network-based malware activity.
Unlike signature or event-based network detection technologies like application firewalls, deep packet inspection or IDS, TAAS NetAnalyzer looks for malicious activities which fit the profile for malware's behavioral life cycle.
Advanced correlation instantly interprets network behavior, identifies the exact category of infection, and automatically builds a forensic chain of evidence to improve your malware response time – showing you every machine infected or under attack. It’s like having a security analyst in a box!
Installed as a virtual appliance throughout your network, the software collects behavioral evidence to analyze malware patterns, identify and categorize threats, and determine a “forensic confidence score” to build a complete infection diagnosis.
As NetAnalyzer discovers a series of infection behavior profiles, it automatically links them together and displays a composite score based on patterns of malicious activity. The software correlates events and assigns weighted scores to produce a conclusive diagnosis.
NetAnalyzer improves operational efficiencies through zero-administration to configure the rules engines that engage with coordination-centric attack vectors, and provides automated security analytics to scale infection diagnosis in large data center environments. The virtual appliance does not sit inline, and offers distributed and grid-based deployment options for scalability within virtualized ecosystems.
The result: TAAS NetAnalyzer reduces false positives to eliminate the noise typically encountered by today’s security solutions, identifies previously undiscovered malware, and reduces the hours most SOCs have to spend sifting through hundreds of unrelated events. By deploying TAAS NetAnalyzer throughout an enterprise network, our users reduce their window of exposure, improve remediation response time and gain new visibility into the soft core of their network and servers.