ArcSight SIEM Platform
ArcSight (NASDAQ: ARST) is a leading global provider of security and compliance management solutions that protect businesses and government agencies. ArcSight identifies, assesses, and mitigates both internal and external cyber threats and risks across the organization for activities associated with critical assets and processes. With the market-leading ArcSight SIEM platform, organizations can proactively safeguard their assets, comply with corporate and regulatory policy and control the risks associated with cyber-theft, cyber-fraud, cyber-warfare and cyber-espionage.
For more information, click here. (ARST-IR)
ArcSight ESM
ArcSight ESM is the brain of the ArcSight SIEM platform. It analyzes and correlates every event that occurs across the organization every login, logoff, file access, database query, etc. to deliver accurate prioritization of security risks and compliance violations. The powerful correlation engine of ArcSight ESM sifts through millions of log records to find the critical incidents that matter. These incidents are then presented through real-time dashboards, notifications or reports to the security administrator.
With deep understanding of network activities and flows, users, and roles, ArcSight ESM is uniquely able to understand who is on the network, what data they are seeing, which actions they are taking with that data, and how that affects business risk
For more information, click here.
ArcSight Express
ArcSight Express correlates seemingly unrelated events and NetFlow data from network devices using the most advanced real-time correlation techniques. By correlating disparate events and NetFlow data, it can detect even the most subtle attacks. As a result, organizations can cut through millions of activities to focus on the most critical incidents affecting the organization. This provides better security and faster response with fewer resources. ArcSight Express also includes the first log management solution to fully integrate field-based and raw text search across structured and unstructured log data.
ArcSight Express is unique in its Universal Data Collection capability. Only ArcSight offers a FlexConnector collection architecture that allows organizations to include niche products and custom applications into their analysis in days instead of weeks
For more information, click here.
ArcSight Logger
ArcSight Logger 4 collects information from any system that generates log data. It can process that information as much or as little as desired, and can produce ultra-fast searching across the data. As a result, organizations of any size can quickly detect cybercrime, automate compliance reporting and streamline IT operations.
Until now, organizations purchased one product for security and compliance reporting, and a different product for IT operations search. The security logs were in a structured format for easy drill down, and the IT logs were in raw form for ad hoc search. ArcSight Logger is unique in its ability to combine collection of structured and unstructured data and perform integrated, unstructured and field-based search against all log information.
For more information, click here.