DDI data – a Critical Enabler of SOAR

Logo
Presented by

Srikrupa Srivatsan; Dave Shackleford

About this talk

Constantly evolving threats and shortage of qualified cybersecurity professionals have led security teams to move to security workflow automation to meet the demands. Its not enough to have a great tool nowadays. These tools have to work better together to meet todays security challenges. Security orchestration, automation and response (SOAR) tools improve efficiency and efficacy of security operations by automating threat intel management, event monitoring and incident response processes. One of the key sources of contextual network and threat intel data comes from infrastructure that organizations already rely on for connectivity DNS, DHCP and IPAM. This data along with timely, reliable and accurate threat intel can be used to improve scoring and investigation, assist in prioritizing incoming incidents, and can be relied upon to build automation. Join this webinar to learn how a well architected DNS, DHCP and IPAM can power SOAR platforms to: *Block/unblock domains using context *Enrich other security tools with valuable IPAM data *Enhance and improve incident response with better threat intelligence
Related topics:

More from this channel

Upcoming talks (6)
On-demand talks (201)
Subscribers (25244)
Infoblox unites networking and security to deliver unmatched performance and protection. Trusted by Fortune 100 companies and emerging innovators, we provide real-time visibility and control over who and what connects to your network, so your organization runs faster and stops threats earlier.