Home » CHANNEL NEWS » Trellix Extends XDR Platform to Transform Security Operations

Trellix Extends XDR Platform to Transform Security Operations

Trellix has announced the expansion of its XDR platform. Trellix XDR enables the company’s 40,000+ customers to increase their cyber resilience, maximize the value of their existing security tools, and decrease mean time to detection and response.

Trellix XDR

The upgraded XDR engine, which will be available in the fourth quarter of 2022, will provide security operations teams with enhanced playbooks for guided investigations, enhanced threat intelligence via the integration of McAfee and FireEye assets, and the launch of Trellix Event Fabric. Trellix Event Fabric connects disparate security data sources from any cloud provider, enabling security analysts to access and correlate data from any location. With the help of machine learning and automation, security operations teams can reduce mean time detection and improve mean time to response.

Trellix XConsole

XConsole streamlines the user experience across Trellix XDR by providing security operations teams with a single interface. Customers can maximise their investments in native Trellix technologies and third-party security tools by delivering a common operating picture. Analysts and responders can quickly baseline their overall threat posture by leveraging a single user interface that provides visibility across network, endpoint, data, email, and cloud attack surfaces. XConsole, which will be available in early 2023, will serve as the control centre for Trellix XDR.

Trellix Endpoint

Arriving early 2023, Trellix Endpoint unifies the best of McAfee and FireEye technologies across endpoint protection, endpoint detection and response, and forensics to deliver best-in-class layered endpoint defense.

This first step on the XDR journey provides:
• multi-stage ransomware prevention
• identity detection and response to prevent credential theft and abuse
• attack surface management to prioritize threats that matter
• digital forensics and incident response to quickly find root causes.

Trellix Network Detection & Response (NDR)

Trellix Network Investigator, which is now available to all customers, provides a comprehensive solution for detecting, investigating, and addressing threats across the kill chain. Customers can rapidly deploy NDR capabilities across their existing Trellix network products by combining our existing machine learning modules, event-based packet capture, and network traffic hunting into a single solution. Customers can now prevent lateral movement and data exfiltration by using signals from Trellix Intrusion Prevention System, Trellix Network Security, and Trellix Network Forensics products to detect activity after initial infection. The Trellix NDR solution immediately applies patching to protect against further exploitation when combined with triage and investigation features. Trellix Network Investigator is enhanced by the subscription to Detection as a Service. Customers receive zero-day protection and malware analysis, which is now available to all Trellix Intrusion Prevention System customers and is deployable with SaaS and private cloud options.

Trellix Advanced Research Center

The Advanced Research Center assembles a top-tier team of security researchers, analysts, and responders to generate novel insights and actionable real-time intelligence. Trellix technology is powered by cutting-edge threat indicators by leveraging security telemetry from the market’s network of sensors and unparalleled industry intelligence. The Advanced Research Center provides continuous adversarial research, threat intelligence, product updates, and machine learning algorithms to Trellix’s 40,000 customers.

Check Also

Redington and CrowdStrike Announce New Distribution Agreement to Accelerate Cybersecurity Transformation Across India

Redington and CrowdStrike Announce New Distribution Agreement to Accelerate Cybersecurity Transformation Across India

Redington selects CrowdStrike to meet growing demand in India for stopping breaches and consolidating cybersecurity …

Do NOT follow this link or you will be banned from the site!