Cyberattacks have increasingly become more difficult to identify as well as contain and disrupt, making it nearly impossible for defenders to scale their efforts in response. To meet this escalating onslaught, two things are essential: real-time visibility into and across enterprise infrastructure (clouds, networks, apps, and endpoints), and the ability to orchestrate countermeasures at enterprise scale. A tight integration between your endpoint security technology and your SOAR platform is an essential ingredient.
Draft demo showcase:
VMware & SOAR integration supports bi-directional information flow so you can use our APIs to update endpoint policies across the enterprise based on a SOAR alert, threat intelligence indicator or other aspect of an integrated workflow. For example, in the process of responding to an alert, the team may discover that a threat indicator is a false positive, in which case you can use our APIs to update the NGAV policy on all of your endpoints at the same time
Date: 12 Aug, 2022 (Friday)
Time: 3:00 pm - 5:00 pm
Venue: Splunk Hong Kong Office
Partner: Cyberforce
Speaker: Cathy Chan (Cyberforce) / Paul Tsang (Splunk, Security Regional Sales Manager)