Graylog ‘redefines’ SIEM

Graylog has unveiled significant security advancements to drive smarter, faster, and more cost-efficient security operations. The company’s latest capabilities include advanced data routing, asset-based risk scoring, and AI-generated investigation reports.

  • Monday, 28th October 2024 Posted 3 months ago in by Phil Alsop

These enhancements, and many others in the Fall 2024 release, help organizations realign their time and financial investment with security objectives, empowering security teams to confidently reduce risk. With a detailed understanding of the threat landscape at both user and system levels, Graylog enables organizations to make more informed decisions about their security posture and respond more effectively to potential threats.

Exclusive to Graylog is its native advanced data routing that enables practitioners to send lower-value “standby” data to inexpensive storage before it is indexed by Graylog. Standby data is available for retrieval into Graylog for future incident investigations. This classification shifts the typical SIEM license model to more accurately align with the overall value of the data. Security and IT operations teams can now invest time and money in the value of the data sent, processed, and stored while minimizing the number of technology solutions managed.

“A challenge with SIEMs has been the need to bring in all the data from log sources as if all the log messages are of equal value,” said Seth Goldhammer, vice president of product management at Graylog. “Of course, if a log message is dropped, it is gone forever. Our new data routing removes this compromise, allowing practitioners to bring in all the data and only pay for the log messages delivering value.”

Graylog's asset-based risk modeling finds related security events across attack surfaces and prioritizes what should be investigated with context such as vulnerability state, variance, and API risk. Instead of thousands of daily alerts requiring individual triage and investigation, Graylog prioritizes the high-risk users and systems for security analysts, grouping together multiple alerts and context to expedite the investigation.

Graylog’s Fall 2024 release includes a timeline visualization of events and leverages GenAI to summarize these details, including impact analysis, into an incident response report to further aid with those investigations and save analyst time.

Spectra Logic transforms tape connectivity

Posted 1 day ago by Phil Alsop
New switch enables data center SAS fabrics as a cost-effective alternative to Fibre Channel networks.

EthosEnergy reinforces global resilience

Posted 1 day ago by Phil Alsop
EthosEnergy has successfully enhanced its data management and business continuity with the Nasuni File Data Platform. The hybrid cloud storage...

Defra extends collaboration with Kyndryl

Posted 1 day ago by Phil Alsop
This marks a one-year, £2.28M contract extension to Kyndryl and Defra’s current partnership.

Pax8 launches EMEA Centre of Excellence

Posted 1 day ago by Phil Alsop
Pax8 has opened its new EMEA Centre of Excellence, which aims to foster innovation, and transform the businesses of partners and their customers with...

POET engaged to develop custom Optical Engine

Posted 2 days ago by Phil Alsop
Demonstrates versatility of Optical Interposer Platform and adds new revenue stream.
Kodesage, a pioneering startup specializing in AI-powered solutions for legacy software modernization, has raised €2.3 million in pre-seed funding...

SuperOps raises $25M in Series C

Posted 3 days ago by Phil Alsop
SuperOps also introduces Monica, a hyper-contextual AI super agent that empowers smarter, faster business decision-making. The latest funding round,...

Scality launches Cloud & Service Provider Programme

Posted 3 days ago by Phil Alsop
Cyber-resilient storage software, ARTESCA set to unlock substantial revenue growth for Cloud Providers, IT Service Providers and VARs.