Trend Micro and LogRhythm entered into a partnership to integrate their security information and event management (SIEM) and extended detection and response (XDR) platforms so security teams can pull threat data from multiple sources, correlate that data, and respond automatically to potential threats. But this joint service exists in a market that's "rife with offerings" of a similar nature, LogRhythm Director of Technology Alliances Robert Dirth told SDxCentral.
LogRhythm's SIEM tech collects and analyzes logs from the Trend Micro Vision One XDR platform to help security teams understand a cyberattack. Containment and remediation of an attack is then "accelerated by LogRhythm’s automated workflows that trigger action by the Trend Micro Vision One XDR platform," Dirth explained.
Trend Micro's "sophisticated capabilities" for data and detection correlation in email, endpoints, servers, cloud workloads, and network environments are built upon by the integration with LogRhythm SIEM and allow security teams to "centralize detection of malware threats and reduce response time," he added.
Despite a saturated market for offerings like this one, Dirth sees differentiation in both vendors' history of leading their markets, "being better together," and the multi-directional integration of the two companies' platforms. This type of integration "allows customers to detect and respond quickly to threats, reducing their mean-time-to-detect [MTTD] and mean-time-to-respond [MTTR]," he said.
Dirth expects a broad potential customer base for the integration, considering "cybersecurity threats are not isolated to any particular vertical nor size of company." Digital weaponization is increasing, he said, and all sizes of companies are potential targets. Trend Micro and LogRhythm's joint offering is particularly suited for any vertical "and will benefit the smallest of businesses to the largest of multi-national corporations," he noted.
The Revolving Threat Landscape DoorCybersecurity is constantly evolving, and threat actors will keep discovering new methods of wreaking havoc. And as technologies evolve and shift, the threat landscape shifts in tandem.
Dirth noted machine learning (ML) and artificial intelligence (AI) are powerful tools and can improve society in meaningful ways, "but they can also be put to use for nefarious activities. We can expect to see threat actors leveraging these emerging technologies," he said, citing ChatGPT's ability to write malware. "This is just another evolution in what we as a broader security community face," he said.
Comments