際際滷

際際滷Share a Scribd company logo
1
Correlation & Orchestration
Proven Security Analytics for Unmatched Efficiency
Scaling Talent
2
A companys greatest resource is its people
 It takes six (6) people to monitor a
desk 7x24.
 The most underqualified security
people fill these slots.
 Most companies outsource due to
the expense.
 Scaling talent is the best means to
maintain quality and reduce costs.
FluencyCorpproprietary
Fluency
3
 Fluency reduces the need to staff 7x24 security monitoring,
by leveraging automated correlation and machine learning
into single view scoring.
 Fluency offers 1st and 2nd tier orchestration using its
patented correlation and risk scoring that increases efficiency
and accuracy.
Automated Correlation/Risk Scoring = Efficiency
FluencyCorpproprietary
How Fluency Works
4
Scoring of Correlated Data
FluencyCorpproprietary
Risk Scoring
5
Performs Validation 7x24 for every system
Fluency uses supporting vectors
What does that mean?
When an analyst validates an alert
they look at the time period around
the event and determine if there are
supporting factors, giving more weight
to factors that are from different
sources. Fluency does the same in
machine learning.
FluencyCorpproprietary
Better than a Human  YES, every time
6
Results match that of top rated analysts
Fluency consistently matches the results of
MTA analysis. Unlike a human, Fluency is
7x24 and focused on every system as if it
was the only system.
FluencyCorpproprietary
Notification
7
Knowing where to start
Notification events are JSON
objects that can be sent or
listed.
The notification page allows
an overview of system
messages along with a
summary and link to its
details.
FluencyCorpproprietary
Scoring
8
Analytics are transparent
FluencyCorpproprietary
Single View
9
User and device insight to events
FluencyCorpproprietary
Technology
10
Proprietary code designed to run in-memory
 U.S. patent for real time correlation based of flow characteristics
 Beginning process of a second patent on orchestrated threat
scoring
 Proprietary graph database
FluencyCorpproprietary
11
Process Flow
FluencyCorpproprietary
Delivery
 Subscription based model (12 month minimum commit)
 Investment based on bandwidth of access points & a fee for total EPS
 Able to provide CAPEX or OPEX proposals depending on customer
need
 Flexibility and willingness to meet customer needs
12
FluencyCorpproprietary
Use Case: 10 Gbps Entry
8,000,000,000 flow events per day
 DDoS EPS spikes
 Large scans
 1,600,000 nodes with 600
subnets
 IPv6
13
 Compared 3 major detection
products
 FireEye/Blue Coat/Fidelis
 Integration from alert to payload
(Blue Coat Solera)
 Flow analysis
FluencyCorpproprietary
How Tough is 10g
14
488,000 EPS
Fluency was the only security device to maintain operations
during a 488,000 EPS DDoS attack.
FluencyCorpproprietary
Use Case: Finding Impacted User
 Previously, 45 minutes to
determine user from an event
 Policy insight into remote login
(LogMeIn/TeamViewer)
 Determination of events not
blocked
From issue-to-user in one click
 Four diverse ingress/egress
points converted to a single view
 Cisco firewalls and WebSense
 No integration with IT
Recognition
17

More Related Content

Fluency Introduction Deck - October, 23, 2017