Reducing Time Detect with Limited Staff Using NDR Tools

Logo
Presented by

John Pescatore, SANS & Alfonso Powers, Asante

About this talk

The visible financial impact of ransomware attacks has increased the need for security operations to reduce time to detect, mitigate and restore. Financial pressures in today’s environment are also putting a premium on processes and tools that can quickly show positive return on investment without high staffing requirements. During this SANS What Works webcastSANS Director of Emerging Security Trends John Pescatore will interview Alfonso Powers. Director and Chief Information Security Officer at Asante Health to gain his insight on what he went through in the business justification details and deployment of Extrahop’s Reveal(X) to increase visibility into network traffic. Asante Health is a southern-Oregon based health care provider, with 600,000 customers and 6,500 employees across 3 hospitals. The increased visibility and the higher fidelity of detection allows Asante’s small security team to detect and disrupt most attacks in progress.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (105)
Subscribers (12424)
ExtraHop is reinventing network detection and response (NDR) to help enterprises stay ahead of emerging threats with unparalleled network visibility, context, and control. As new attack vectors rapidly emerge, SOCs face an escalating challenge: Expand visibility to effectively detect and respond to threats, enhance productivity to manage the increased volume, and do it all while reducing operational complexity. By combining the power of NDR with network performance management (NPM), intrusion detection (IDS), and packet forensics in a single, integrated platform, enterprises benefit from complete visibility and contextual insights across their entire hybrid infrastructure - from data center campuses to cloud and SASE infrastructures and beyond. ExtraHop can decrypt and unlock packet-level data at wire speeds, analyzing and correlating it with its cloud-scale machine learning models to detect, investigate, and remediate cyber risks in real-time, without the added complexity of multiple tools. Unlock the full power of network detection and response with ExtraHop today. Learn more at www.extrahop.com