ThreatDefence

ThreatDefence

Last Updated

Overview

ThreatDefence provides an all-in-one cybersecurity platform that unifies security operations for businesses. While its reporting features can be complex for non-technical users, the software provides deep evidence-based visibility across the entire technology stack with multiple security tools which makes it a reliable choice for improving threat detection.

Be the first one to leave a review!

No review found

vendorReviewSummaryStar icon
Starting Price
Custom

ThreatDefence Specifications

  • Security Information And Event Management (SIEM)
  • Vulnerability Management
  • Threat Intelligence
  • Cloud Security

ThreatDefence Features

Next-Generation SIEM

The platform gathers extensive data sources using Syslog Data from a wide array of security tools, including firewalls, Email Security, DNS Security, and Endpoint Protection. This capability establishes a central authority for collecting and analyzing all log data across the client environment.

See How It Works
Machine Learning And User Behaviour Analytics

Advanced behavior analysis monitors access to privileged accounts and closely examines Entra ID Logons to set a behavioral baseline. Custom machine learning models continuously detect and uncover suspicious behavior that deviates from established normal activity.

See How It Works
Playbooks And Automation

ThreatDefence software utilizes Playbooks to define and enforce a consistent, automatic set of SOC Workflows upon detection. This automation applies to Security Detections for quick triage and escalation of incoming security Alerts, ensuring fast and organized incident handling.

See How It Works
Network Detection And Response (NDR)

The platform operates by deploying Physical and Virtual Sensor appliances across the network to monitor traffic at a granular level. These appliances retain weeks of valuable network evidence, supporting high speed threat hunting and post incident investigation.

See How It Works
Digital Forensics Toolset

A dedicated Endpoint Agent collects forensic telemetry directly from devices to enable highly detailed investigations and full incident recovery. The toolset facilitates the acquisition of evidence and allows for remote analysis across the entire enterprise.

See How It Works

Pros And Cons of ThreatDefence

Pros

  • Automatic response capabilities for rapid threat containment

  • Reduced alert volume by correlating events into single incidents

  • In-depth forensic visibility for breach detection and investigation

Cons

  • Requires specialized skill sets for full system optimization

  • Operational models may need updates to align with the platform

ThreatDefence Reviews

no-reviews

No reviews yet!

Be the first to review this product

Frequently Asked Questions

Does ThreatDefence have a mobile app?

Information regarding a dedicated mobile app has not been specified by the vendor.

What types of pricing plans does ThreatDefence offer?

The vendor offers customized pricing plans, depending on the unique requirements of businesses. Request a customized ThreatDefence price quote for your business today!

Who are the typical users of ThreatDefence?

ThreatDefence features are designed for businesses in industries and sectors like education, finance, healthcare, legal, private equity, and retail.

Does ThreatDefence offer an API?

Yes, ThreatDefence offers an API.

What level of support does ThreatDefence offer?

The platform provides support through phone and email.

What language does ThreatDefence support?

The platform currently supports the English language.

What other apps does ThreatDefence integrate with?

The platform integrates with various software and services including Microsoft 365, Microsoft Azure, Amazon Web Services (AWS), Google Cloud, and Okta.