Know your risk in a matter of minutes.
Use Cases and Deployment Scope
Cisco Secure Network Analytics is used as part of the security stack we have in our organization. With this tool we are able to analyze traffic patterns, identify potential issues, and address threats before they become more than just a warning sign. Through this product we were able to see some rogue actors on the network and get them shut down before they became more of a problem.
Pros
- Ability to quickly see and address rogue actors
- See what type of threats are on the network in a quick manner using the dashboard
- Provide administrative reports to leadership to assist in their decision making process
- See network communications flows between hosts
Cons
- Some of the jobs can be difficult to setup until you know how they were designed
- Unless coupled with other Cisco products, you may not get all of the information you would like to have
- If you have a network that already has many issues it may take a lot of time to see the value in the product; it would take time to weed everything which this product will detect for you to use it to find that needle in the haystack
Return on Investment
- Once tuned and baselines established, it is far easier to identify issues on a network
- Management is able to look at the dashboard and fairly quickly get an update on the status of how the network is performing and what threats may be out there
- Reports can be scheduled to send on a regular basis to all involved with management of the infrastructure and the security team
Alternatives Considered
Splunk Asset and Risk Intelligence, PRTG Network Monitor, SolarWinds Kiwi Syslog Server, SolarWinds NetFlow Traffic Analyzer (NTA), SolarWinds Network Performance Monitor (NPM) and SolarWinds Network Configuration Manager (NCM)
Other Software Used
PRTG Network Monitor, SolarWinds Network Performance Monitor (NPM), Splunk Attack Analyzer


