ManageEngine, the IT management division of Zoho, has integrated automated incident response into its Log360 security information and event management (SIEM) solution. The company showcased the Log360 update at last week's Black Hat USA 2019 conference in Las Vegas, Nevada.
Log360 automated incident response enables IT teams to link predefined or custom workflows to security alerts to automate standard incident response measures, according to ManageEngine. Log360 performs automated responses via incident workflows, which outline the steps to be taken after a security incident.
Automated incident response for Log360 is now available.
What Is Log360?
Log360 is a log management and security solution that helps organizations protect their networks against cyber threats. In addition to automated incident response, Log360 offers other capabilities to help organizations detect and respond to security incidents, including:
Pricing for Log360 starts at $795 per year.
SIEM for MSSPs and MSPs
A growing number of SIEM platforms specifically target MSPs and MSSPs. The offerings include SOC-as-a-Service tools that deliver SIEM features and functions. Still, MSP and MSSP business models for SIEM services can vary widely. Some options require complete SOC (security operations center) build-outs. Others are available as white-label services from master MSSPs and software companies.
Partners should study the models and associated talent costs closely before signing on the dotted line for such capabilities.
Additional insights from Joe Panettieri.