LogicHub Security Automation Capabilities Review

Logo
Presented by

SANS Institute analyst Chris Crowley

About this talk

Addressing the challenges of overburdened security operations with limited staff and resources, combined with an exponential increase in threats and alerts, demands a new approach that leverages advanced automation, AI, and machine learning. Teams must develop capabilities that combine the skills of expert human analysts with the speed and scale of computer automation. The LogicHub platform combines elements of XDR, SOAR, SIEM, MDR, and proactive threat hunting to automatically respond to adverse events or filter through the volume of network alerts to only exposed critical alerts to a human analyst. The sophisticated AI progressively learns from data as well as its human counterparts, who can encode their expertise and techniques into the program. Security teams can automate complex repetitive tasks and create threat detection playbooks to automatically triage threats or escalate them for human action with a recommended response. SANS Institute analyst Chris Crowley explores different features of the LogicHub platform, including integrations, protections mapped to the MITRE ATT&CK framework, case management, and an AI threat detection assistant.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (48)
Subscribers (3828)
LogicHub harnesses the power of AI and automation for superior detection & response at a fraction of the cost. From small teams with security challenges, to large teams automating SOCs, LogicHub makes advanced detection & response easy and effective for everyone.