Posts tagged Incident Detection

3 min Detection and Response

Sharpen Your IR Capabilities With Rapid7’s Detection and Response Workshop

Rapid7's Detection and Response Workshop helps you determine if your tools can immediately detect and respond to threats.

1 min Lost Bots

[The Lost Bots] Episode 5: Insider Threat

In this episode of The Lost Bots, we’re joined by Alan Foster (Manager, Domain Engineers) to discuss insider threats.

3 min Detection and Response

Cybersecurity as Digital Detective Work: DFIR and Its 3 Key Components

We highlight 3 elements of a well-formulated digital forensics and incident response (DFIR) strategy.

3 min Gartner

Once Again, Rapid7 Named a Leader in 2021 Gartner Magic Quadrant for SIEM

This is the second consecutive time our SaaS SIEM—InsightIDR—has been named a Leader in this report.

4 min Detection and Response

InsightIDR’s Log Search: Recent Enhancements and Upcoming Investments

We recently (virtually) sat down with Mirela Smlatic, a Senior Product Manager for Detection and Response at Rapid7, to hear about enhancements and upcoming investments into InsightIDR’s Log Search capabilities.

4 min Detection and Response

Attack vs. Data: What You Need to Know About Threat Hunting

While the definition of threat hunting may be straightforward—proactively hunting for threats—the reality of implementing a threat-hunting program is a bit more complicated, as there are different threat-hunting methodologies to choose from.

3 min Detection and Response

Top Security Trends Driving Threat Detection and Response Priorities

The threat landscape continues to grow at a rapid pace, and organizations need security solutions that can keep up.

1 min Detection and Response

InsightIDR’s NTA Capabilities Expanded to AWS

We’re excited to announce we have expanded the Network Traffic Analysis (NTA) capabilities in InsightIDR to support Amazon Web Services (AWS) environments.

2 min InsightIDR

How to Combat Alert Fatigue With Cloud-Based SIEM Tools

Fortunately, there’s a way to get the visibility your team needs and streamline alerts: leveraging a cloud-based SIEM.

2 min InsightIDR

Monitor Google Cloud Platform (GCP) Data With InsightIDR

Today, more and more organizations are adopting multi-cloud or hybrid environments, creating increasingly more dispersed security environments

11 min Security Operations (SOC)

Talkin’ SMAC: Alert Labeling and Why It Matters

This blog post will demonstrate some common pitfalls of alert labeling, and offers a new framework for SOCs to use.

6 min InsightIDR

InsightIDR: 2020 Highlights and What’s Ahead in 2021

As we kick off the New Year, we wanted to highlight some key InsightIDR product investments and take a look ahead at detection and response in 2021.

4 min InsightIDR

What’s New in InsightIDR: Q4 2020 in Review

As we near the end of 2020, we wanted to offer a closer look at some of the recent updates and releases in InsightIDR from Q4 2020.

4 min Detection and Response

2021 Detection and Response Planning, Part 4: Planning for Success with a Cloud SIEM

In this post, we’ll explore how a cloud SIEM, like Rapid7 InsightIDR, may be more relevant and impactful than ever before.

5 min InsightIDR

Visualizing Network Traffic Data to Drive Action

In this blog, we cover the top five multi-groupby queries that can be used to visualize network sensor data with the Insight Network Sensor.