Technology Overview for Security Incident Response Platforms


Archived Published: 10 April 2015 ID: G00251917

Analyst(s):

Purchase this Document

Price: $195.00 USD (PAGES: 11)

To purchase this document, you will need to register or sign in above.

Summary

Security incident response platforms as a commercial offering are relatively new, with a small number of vendors offering credible solutions. They offer powerful functionality for incident responders. They appeal to a niche market, but demand is likely to evolve and grow.

Table of Contents

  • What You Need to Know
  • Analysis
    • Technology Description
    • Technology Definition
    • Standards
    • Uses
    • Benefits and Risks
    • Technology Alternatives
    • Selection Guidelines
      • Case Management and Workflow
      • Journaling and Evidentiary Support
      • Threat Intelligence and Attack Path Analysis
      • Automatic Incident Generation
      • Analytics and Forensic Support
    • Price Performance
    • Technology Providers
      • DFLabs
      • Hexadite
      • ID Experts
      • Resilient Systems
      • Resolution1 Security
  • Gartner Recommended Reading
© 2015 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartners research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice.

Why Gartner

Gartner delivers the technology-related insight you need to make the right decisions, every day.

Find out more