By Charles Leaver

Ziften App For Splunk

Continuous Monitoring and Response of Enterprise Endpoints

  • Security based alerts that tie network-based feeds to Ziften binary data
  • Daily Reports that tie Ziften binary data to Zflow binary threat feeds
  • Forensics based ability tying endpoint context and attribution to NetFlow