• Advanced Traffic Flow Analysis.

    NIST CSF ID.AM-3: Organizational communication and data flows are mapped.
  • Zeek integration.
    NIST CSF DE.CM-1: The network is monitored to detect potential cybersecurity events.

Advanced Traffic Flow Analysis for higher network visibilityZeek Logs and Events

Zeek events and LogsFull visibility from our service portal.

Network Connections - Summary.

Each dashboard is composed of summaries and aggregated data for a quick overview of relevant events.

Connections to public IPv4 addresses are checkd against security feeds.

File Transfers - All supported Protocols.

All network activity related to files uploads/downloads.

Connections to public IPv4 addresses are checkd against security feeds.

File hashes are checkd against security feeds.

Detected software in network activity.

Transport Protocols and Detected Software.

Digital Certificates.

Client and Server certificates detected in SSL transactions.

Certificate Issuers, validity, expiring dates, etc.