Details.
Collects and analyses security events, with correlation scenarios covering lateral movement and references such as MITRE ATT&CK and YARA rules. Includes ongoing addition of compromise indicators from public or commercial CTI feeds, advanced automation, and possible automated remediation of common and controlled incidents.







