NetWitness Platform
NetWitness | 12.5.0.0Linux/Unix, Other 8.10 - 64-bit Amazon Machine Image (AMI)
Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
Threat hunting playform
What do you like best about the product?
Netwitness siem solution is a great tool for threat hunting
What do you dislike about the product?
Api integration needs to be enhancement for soc
What problems is the product solving and how is that benefiting you?
API integration
- Leave a Comment |
- Mark review as helpful
NetWitness Platform XDR
What do you like best about the product?
Customer Support
Number of Features
Threat correlation
Number of Features
Threat correlation
What do you dislike about the product?
Integration Challenges and Resource demands
What problems is the product solving and how is that benefiting you?
Handling multiple environment are able to support multi-tenancy, correlating seemingly unrelated events, providing a more coherent picture of potential security incidents and aiding in the identification of complex attack patterns.
An Intelligent Platform for Businesses - NetWitness Platform XDR
What do you like best about the product?
As a user and part of security team in my company, the platform's ease of use and compact interface is a must on our daily monitoring. This alone is vital in part of investigation and response to any incidents that may arise. Based on my colleague, support team is also helpful and there are resources that is available to the community. Overall a great tool to assist on our job.
What do you dislike about the product?
It will take some time to get into the familiarity of navigating through the platform. This is not for an entry-level position, but learnings this tool will be a solid help in the future.
What problems is the product solving and how is that benefiting you?
This greatly helps in our day-to-day monitoring and response which improves our overall team performance.
Netwitness XDR Experience
What do you like best about the product?
It is easy to use and provide better analysis options
What do you dislike about the product?
Support can be improved on devices integrations and troubleshooting
What problems is the product solving and how is that benefiting you?
It provides overall security posture view, easy to investigate and provide customize alerts to configure
Exploring new waters
What do you like best about the product?
Few weeks ago, I had an opportunity using the platform. And for what I have found out that its not so complicated after all.
What do you dislike about the product?
DIdnt find any as of this few weeks using it.
What problems is the product solving and how is that benefiting you?
For some security platforms kinda hard to make a playbook. But on this platform I just could create it very quick and run it right away so easily.
RSA NetWitness and SOC
What do you like best about the product?
1- The visibility RSA NetWitness packet (NDR) provides is brilliant.
2- Easy installation and deployment.
3- The scalability of deployment is very good.
4- The combination of NDR, EDR and Logs in the same interface.
5- Effective technical support.
2- Easy installation and deployment.
3- The scalability of deployment is very good.
4- The combination of NDR, EDR and Logs in the same interface.
5- Effective technical support.
What do you dislike about the product?
1- Documentation that is poor.
2- Integration with log sources is limited in comparison with other brands.
3- Building use cases is not easy, and poor built-in use cases.
4- Weak parsing of logs.
5- The user interface is not friendly enough.
6- Respond module requires significant enhancement.
2- Integration with log sources is limited in comparison with other brands.
3- Building use cases is not easy, and poor built-in use cases.
4- Weak parsing of logs.
5- The user interface is not friendly enough.
6- Respond module requires significant enhancement.
What problems is the product solving and how is that benefiting you?
1- Databases stability.
2- Meeting client expectations.
3- Solving contract conflicts.
4- Maintaining the NetWitness service availability.
5- Engaging RSA NetWtiness management to solve complex problems and disputes.
2- Meeting client expectations.
3- Solving contract conflicts.
4- Maintaining the NetWitness service availability.
5- Engaging RSA NetWtiness management to solve complex problems and disputes.
It's powerfull and complex
What do you like best about the product?
alerts are a powerful tool to notify you of an incident
What do you dislike about the product?
set up could be complicated , and support it's nota the best
What problems is the product solving and how is that benefiting you?
I use notification about incidents
Recommendations to others considering the product:
Yes , it's a powerfull tool when it's configured correctly
RSA - Walkthrough
What do you like best about the product?
Ability to find and decode base65 and hex.
Inbound SSL decryption.
The ability to run anywhere, physical hardware, cloud etc.
SOAR capabilities can be used to scale security operations.
Inbound SSL decryption.
The ability to run anywhere, physical hardware, cloud etc.
SOAR capabilities can be used to scale security operations.
What do you dislike about the product?
No cross platform SOAR compatibility.
Difficult to learn and use initially.
Setting up the solution is complex for first timers.
Integrating newer devices is a tough task.
Difficult to learn and use initially.
Setting up the solution is complex for first timers.
Integrating newer devices is a tough task.
What problems is the product solving and how is that benefiting you?
Helpful in full PCAP analysis.
Threat hunting feeds have quite helped with day to day operations, making the organisation more secure.
The level of details is intense, given that solution is implemented correctly
Threat hunting feeds have quite helped with day to day operations, making the organisation more secure.
The level of details is intense, given that solution is implemented correctly
Good experience
What do you like best about the product?
Great to get insights about the risk score and alerts and incidents give a broader picture on activity
What do you dislike about the product?
Dashboards could habe been a bit more pleasing to see. Nonetheless this will be achieved in the near future probably
What problems is the product solving and how is that benefiting you?
It's a one stope solution to SIEM , to identify threats and take necessary actions well in time. To protect endpoints from danger
Best siem out there in market, best in performance best in managing
What do you like best about the product?
The best part the ueba and the latest soar capability which reduces multiple work heads collate under one umbrella.
What do you dislike about the product?
The complexity in the architecture, most of the issues which occur in environment requires lot of investigation to find the RCA.
What problems is the product solving and how is that benefiting you?
The day to day security incidents and event management, combined together with soar capability the response has also become more easy.
showing 1 - 10