Cognito Stream: network metadata with an opinion
Deliver scalable, security-enriched network metadata to feed custom detection and response tools
- Actionable network data in Zeek format
- Embedded with data science-derived security insights
- Associates network metadata with unique host attributes
Security-enriched metadata
- Hundreds of metadata attributes collected from cloud to enterprise
- Embedded machine learning-derived security insights
- Conduct investigations based on hosts, not IP addresses
Low-touch Zeek deployments
- Presented in a compact, easy-to-understand Zeek format
- Requires no performance tuning or ongoing maintenance
- More than five times the performance of self-managed deployments
https://www.vectra.ai/product/cognito-stream
Splunk integration with Vectra Solutions Sheet:
https://content.vectra.ai/rs/748-MCE-447/images/ProductIntegration_2017_Integrating_Cognito_with_Splunk_English.pdf
Cognito Stream Solutions Sheet:
https://content.vectra.ai/rs/748-MCE-447/images/ProductCompanyOverview_2019_Cognito_Stream_Network_metadata_with_an_opinion_English.pdf