SIM On-Demand
The security devices and tools you deploy to protect your infrastructure and adhere to compliance guidelines generate extensive log files in a variety of formats. You must continuously monitor and sift through all those different logs and files, as well as the logs from the critical assets they are protecting, to identify and respond to significant security events before any damage occurs.
Dell SecureWorks Security Information Management (SIM) On-Demand service is a security-as-a-service solution that does the heavy lifting for you. It collects, filters and categorizes security events from logs and files across virtually any device and critical asset in your environment, around the clock. We handle all the time-consuming, labor-intensive activities quickly and accurately, providing real-time insight and actionable information you need to respond effectively to real attacks.
With SIM On-Demand you can:
Identify and respond to threats faster
With painless implementation, no maintenance or management overhead, and minimal administration, you can protect your infrastructure from a broad range of threats quickly and accurately.
Turned up and running in a matter of days rather than weeks or months typical of SIM hardware and software solutions, our SIM On-Demand service provides you real-time insight and actionable information you need to respond effectively to real attacks. Via the secure Web-based Customer Portal, you can assess significant events that indicate potential malicious attacks and take appropriate action.
Prioritize and track issue resolution
Our SIM On-Demand service provides the real-time event analysis and reports you need to defend your infrastructure around the clock. The service provides actionable information based on thresholds, rules and escalation preferences in the Customer Portal. All you need to do is review event analyses and summaries in real time or at regular intervals to manage incident response.
Our SIM On-Demand service provides a powerful tool for identifying malicious activity, managing the incident handling process and tracking remediation efforts. Via our secure, web-based Customer Portal, you can create and view reports, graphs and tickets, as well as create your own escalation matrices and correlation rules. In addition to enabling default correlation rules and event identification filters created by our security professionals while monitoring customers across the globe, you can also create your own rules to identify malicious patterns and take automated action based on tailored escalation procedures.
Demonstrate compliance efficiently
You can easily generate summary overviews and real-time snapshots of security events, incidents, vulnerabilities, remediation activities, active rules and policies to demonstrate security efficiency and effectiveness to business management, auditors and regulators.
SIM On-Demand supports both your security program and your compliance requirements through comprehensive reporting that is aligned with your regulatory requirements or guidelines, whether PCI, NERC CIP, GLBA, FFIEC, NCUA, HIPAA or SOX or ISO. Our secure, web-based Customer Portal houses an extensive assortment of pre-built security and compliance reports as well as an intuitive reporting wizard for generating tailored reports.
Make better-informed security decisions
Our Counter Threat Platform (CTP), strengthened by our global threat visibility across billions of events every day, provides real-time information and protection against known and emerging threats around the clock. This next generation technology platform filters, correlates, analyzes and condenses security events into meaningful security information that enables you to assess risk accurately and respond effectively in a timely fashion.
SIM On-Demand service provides:
- Log and alert collection from across virtually any security device or critical asset
- Advanced correlation and analysis techniquesHighly scalable, proven SIM platform
- No SIM management or maintenance overhead
- Comprehensive security and compliance reporting
- 24x7 access to Dell SecureWorks' security professionals for support and troubleshooting
- Rapid deployment - in days, not weeks or months - by security experts
- Predefined and customizable event thresholds, correlation rules and escalation procedures
