Fortinet evolves FortiAnalyzer

FortiAnalyzer leverages a unified data lake, FortiGuard Labs threat intelligence, and AI-driven capabilities to empower midsize enterprises with accelerated threat hunting and incident response.

  • Thursday, 20th February 2025 Posted 2 months ago in by Phil Alsop

Fortinet has introduced significant enhancements to FortiAnalyzer, reinforcing its role in driving faster, smarter security operations (SecOps) all from a single, turnkey hybrid platform tailored for midsize enterprises and teams impacted by the cyber skills shortage.

FortiAnalyzer is a powerful, streamlined entry point to scale an organization’s security operations center (SOC), providing broad coverage for both on-premises and cloud environments from a single platform. With ready-to-deploy capabilities that deliver complete control with centralized visibility, advanced threat detection, and automated incident response, FortiAnalyzer helps organizations increase their agility and ability to rapidly expand SecOps coverage and use cases without adding complexity.

“Security teams today are stretched thin, yet they’re expected to defend against increasingly complex and targeted threats,” said Nirav Shah, Senior Vice President, Products and Solutions at Fortinet. “With the latest advancements in FortiAnalyzer, we’ve eliminated the need for additional SecOps tools, making it the ideal turnkey AI-driven security operations platform supporting on-premises and cloud environments. This is a game-changer for lean security teams, allowing them to enhance threat detection, automate incident response, and streamline critical security operations functions from a single platform.”

AI-Driven Security Operations, Simplified

As cyberthreats grow more sophisticated and the attack surface expands, organizations—particularly those with resource-constrained security and IT teams—struggle to manage security operations effectively. Recognizing this challenge, Fortinet continues to evolve FortiAnalyzer with cutting-edge AI and automation, ensuring that organizations can detect, investigate, and respond to threats faster and more efficiently without needing a complex, multi-tool security stack.

The newly enhanced FortiAnalyzer delivers:

• Unified data lake for centralized visibility: Consolidated network and security logs, security analytics, and compliance reporting from across the Fortinet Security Fabric into a single platform view, with enhanced IoT, SOC, email security, and endpoint dashboards offer deeper insights into high-severity incidents, compromised hosts, and vulnerabilities, reducing complexity for security teams.

• Advanced threat detection and AI-powered analysis from FortiGuard Labs: Enriched views with integrated threat intelligence, including the FortiGuard Indicator of Compromise (IoC) and Outbreak Detection subscription help analysts identify and address vulnerabilities faster. FortiAnalyzer built-in AI capabilities automatically identify high-priority alerts and downloads relevant event handlers, correlation rules, and reports to help organizations understand an attack’s background, timeline, affected technologies, and related threat intelligence. These capabilities have been further enhanced through zero-trust network access (ZTNA)-based detections and Safeguarding, which detect harmful content to identify and mitigate emerging threats effectively.

• Automated incident response: New prebuilt SOC automation content packs equip teams with the latest event handlers, playbooks, and third-party log parsers, such as Armis Platform, Microsoft Office 365, and more, enabling security teams to contain and remediate threats with minimal manual intervention.

• Expanded automation connectors: Enhanced native integrations with FortiAuthenticator, FortiSandbox, FortiWeb, FortiMail, and VirusTotal provide more automation actions, reducing response times and improving incident resolution.

• Native integration with the Fortinet Security Fabric: Unified interoperability across Fortinet’s cybersecurity solutions ensures end-to-end protection with AI-driven correlation and actionable insights.

• Third-party device and dynamic SOC service support: Integrations with third-party devices and dynamic SOC services ensure organizations can seamlessly deploy FortiAnalyzer within their existing infrastructure and secure their entire ecosystem with a unified platform.

• Embedded GenAI assistance: FortiAI, the Gen-AI assistant built into the FortiAnalyzer user experience, maximizes the product capabilities, analytics, and telemetry to help security teams supercharge threat investigation and response at the speed of AI.

A Smarter Approach to Security Operations

With these latest innovations, FortiAnalyzer empowers lean security teams to manage hybrid environments at the level of large, well-resourced security operations teams without requiring extensive personnel or multiple security tools. By leveraging AI-driven automation, FortiAnalyzer enables organizations to maximize efficiency at scale without complexity, delivering faster detections, smarter responses, and decreased risk within a unified platform.

Current FortiAnalyzer customers with FortiGuard subscription services already have access to the new features and capabilities. Content packs are updated regularly, ensuring that organizations keep pace with emerging threats and enabling the expansion of SOC coverage as needs evolve.

Compliance Scorecard joins Pax8 Marketplace

Posted 18 hours ago by Phil Alsop
Compliance Scorecard™, a Compliance as a Service (CaaS) platform provider, has partnered with Pax8 to help managed service providers (MSPs)...

OVHcloud introduces Data Platform

Posted 18 hours ago by Phil Alsop
An all-in-one, ready-to-use solution to unleash the full value of data.

Kiteworks slashes storage costs

Posted 18 hours ago by Phil Alsop
Integration with Wasabi hot cloud storage delivers cost-effective cloud storage with enterprise-grade security and compliance.

Lenovo unveils new data storage solutions

Posted 18 hours ago by Phil Alsop
Next generation Lenovo AI-optimised storage unleashes the power of data at any scale with 21 new ThinkSystem and ThinkAgile models for enterprise AI,...
Netwrix has released its annual global 2025 Cybersecurity Trends Report based on a global survey of 2,150 IT and security professionals from 121...

Tray.ai launches ITSM Agent

Posted 18 hours ago by Phil Alsop
Automates IT support to cut costs, reduce human-handled tickets by 75%, and ensure enterprise governance and control.

Cynomi secures $37m in Series B funding

Posted 18 hours ago by Phil Alsop
Latest investment for leading AI-powered vCISO platform for MSPs and MSSPs to drive product innovation and growth across service provider ecosystem.

Veeam launches strategic framework

Posted 18 hours ago by Phil Alsop
New global research from Veeam and McKinsey reveals most organizations vastly overestimate their resilience—Veeam’s new Data Resilience Maturity...