CyberSponse was a security orchestration, automation and response (SOAR) solution, now known as FortiSOAR. Fortinet acquired and now supports the solution (December 2019).
N/A
NetWitness Orchestrator
Score 8.2 out of 10
N/A
NetWitness Orchestrator provides security orchestration and automation (O&A) to improve a security operations center’s efficiency and effectiveness. Supported by preconfigured and customizable playbooks, NetWitness Orchestrator empowers teams to collaborate and streamlines and automates incident response. Inherent threat intelligence enables SOCs to better understand and act upon threats.
I recommend it to all companies with scenarios that are looking for a SOC queue management tool, vulnerabilities, assets, indicators, visualization panels with alarms and real-time notifications, and personalized reports of all the functions present in the tool. It's easy to install and configure on a VM. The interface is user-friendly and fully customizable and can even create infinite mini-panels of platforms, incidents, alarms, and other functions. The price is great and it's an investment to improve security and visibility and incident handling.
High-end business customers will benefit from the solution's scalability, but smaller businesses will not.Our opinion is that it's a worthwhile product that should be put into use.
Threat prediction and network forensics are the most useful features. It's possible for me to see who received and clicked on any malware on the network, for example. This is the feature I enjoy the most.
In addition, the capture packet provides a wealth of information.
Training Services- Fortinet offers courses geared towards administration and designed and development of FortiSOAR , Which required multiples access , we need all training services with self pace basis , I think here Fortinet need to improve.
Licensing Model- Being as a new technology Licensing model should be crystal & Clear, be it Concurrent Users or The number of FortiSOAR nodes there should be no ambiguity .
Done prove of concept (POC) thoroughly , where we judged the solution on every aspect & We came to know FortiSOAR will work well in our environment as it is blended with features like Case managements , Product Flexibility * Scalable Architecture . These features were much required to optimum use of our SOC solution. Since we have all the Fortinet security stack in our environment it helped us a lot in selection (POC) and also commercially.