SlideShare a Scribd company logo
product overview




Advanced Intelligence (AI) Engine                                              TM




LogRhythm’s Advanced Intelligence (AI) Engine is an optional module for any LogRhythm deployment, offering
sophisticated correlation and analysis of all enterprise log data in a uniquely intuitive fashion. With a practical
combination of flexibility, usability and comprehensive data analysis, AI Engine delivers real-time visibility to
risks, threats and critical operations issues that are otherwise undetectable in any practical way. AI Engine is
Correlation That Works!
With over 100 preconfigured, out-of-the-box correlation rule sets and
a wizard-based drag-and-drop GUI for creating and customizing even
complex rules, AI Engine enables organizations to predict, detect and
swiftly respond to:
• Sophisticated intrusions
• Insider threats
• Fraud
• Compliance violations
• Disruptions to IT Services
• And many other critical actionable events…
Comprehensive Advanced Correlation
Unlike legacy SIEM solutions, AI Engine leverages its integration with the log and event management functions
within the LogRhythm platform to correlate against all log data – not just a pre-filtered subset of security events.
Seamless integration also enables immediate access to all forensic data directly related to an event.
AI Engine rules draw from over 50 different metadata fields that provide highly relevant data for analysis
and correlation. Whether detected by out-of-the-box rules or user-created/modified rules, AI Engine identifies
and alerts on actionable events with tremendous precision, for operations, security and compliance assurance.
AI Engine can also be used to cast a wide net through generalized correlation rules for broader visibility that
accommodate changes in event behavior.
TrueTime   TM




       LogRhythm applies a universal timestamp to every log as it is processed. This ensures that the actual
       time of occurrence of an activity is recorded accurately – regardless of external factors, such as an out-
       of-sync server clock, delayed delivery of a log or differences in time zones. TrueTimeTM guarantees
       that advanced correlation within AI Engine is based on chronological fact – recognizing the true
       sequence of events – minimizing false positives and avoiding false negatives.
AI Engine Delivers
• Advanced Correlation Against All Log Data
• TrueTimeTM Event Sequencing
• Immediate Access to Underlying Forensic Data
• Generalized and Targeted Rules
• Extensive Out-of-the-Box Advanced Correlation Rules
• Unparalleled Ease of Use
AI Engine in Action
AI Engine’s numerous predefined advanced correlation rule sets are configured to run “out-of-the-box” and act as
templates for easy customization. All rules within AI Engine can be quickly modified through a highly intuitive
GUI to address unique requirements of any organization.
product overview
Advanced intelligence (Ai) engine


   Secure
   A single event is not always enough to indicate a breach or show the true reach of a security incident. AI Engine
   recognizes common security incidents and automatically correlates them against suspicious behavior patterns
   to automatically identify and alert on aberrant activity. For example, malware can invade and spread through an
   organization quickly, exposing data and weakening security faster than administrators can react. In many cases,
   the extent of damage is unknown.
   Examples:
   • Malware is detected on one host followed by attacks from that affected host.
   • Suspicious communication from an external IP Address is followed by data being transferred to the same IP Address.
   • A user logs in from one location, does not log out, but logs in from another city or country in a short timeframe.
   Comply
   AI Engine can assist in automating compliance controls, generating events when specific policy violations occur.
   These include protecting cardholder data or Protected Health Information (PHI) from unauthorized access and
   actively monitoring privileged user behavior.
   Examples:
   • Five failed authentication attempts followed by a successful login to a database containing ePHI followed by a
     large data transfer to the user’s machine all within 30 minutes.
   • A file containing credit card data is accessed, followed by an attempt to transfer information from the same host
     to a USB thumb drive within 10 minutes.
   • Creating one or multiple accounts and escalating their privileges in a short period of time.
   Optimize
   Advanced correlation offers substantial value for operational insight and IT services assurance. Slight variations in
   specific activities or a particular sequence of more common operations events may indicate critical operations issues.
   Examples:
   • A backup process is started, but no log for backup completed is generated.
   • A critical process stops and doesn’t start back up within a specific timeframe.
   • A large group of servers shuts down followed by a smaller group of servers starting back up.
   • High I/O rates on a critical server usually only observed during backup procedures are observed during normal
     business hours.
   AI Engine Deployment Options
   Designed to integrate with any core LogRhythm deployment AI Engine can be purchased as a turnkey
   appliance, installed as software on dedicated customer equipment or deployed on multiple virtualization
   platforms, including VMware ESX, Microsoft Hyper-V, and Citrix XenServer. High performance
   appliances can process tens of thousands of logs per second and billions of logs per day. AI Engine follows
   LogRhythm’s building-block architecture – expansion is as simple as plugging in an additional appliance.
   All appliances are centrally configured, monitored, and managed through LogRhythm’s universal console.

    APPLIAnCE LInE    LPS/LPD*          CPU Memory          RAID        Storage   Chassis   Power       Ethernet        Dimensions Weight

     LR-AIE1              1,150
                                      1 Quad core 32GB
                                                          perc H200,
                                                             rAid 1      272GB      1u      100-240v
                                                                                                         Broadcom
                                                                                                       5809c (2 cards
                                                                                                                         H4.26cm x
                                                                                                                         w48.24cm x        17.69kg
                      / 100 Million
                                                           (data, oS)                                     / 4 ports)      d77.2cm


     LR-AIE2             11,150
                                      2 Quad core 96GB
                                                          perc H700,
                                                          rAid 1 (oS), 540GB        1u      100-240v
                                                                                                         Broadcom
                                                                                                       5809c (2 cards
                                                                                                                         H4.26cm x
                                                                                                                         w48.24cm x        17.69kg
                       / 1 Billion
                                                         rAid 10 (dAtA)                                   / 4 ports)      d77.2cm

                                                                                                                         *Logs per Second/Logs per day



    LogRhythm Headquarters                               LogRhythm EMEA                                  LogRhythm Asia Pacific Ltd.
    3195 Sterling circle                                 Siena court, the Broadway                       8/F exchange Square ii
    Boulder, co 80301                                    Maidenhead Berkshire SL6 1NJ                    8 connaught place, central
    303-413-8745                                         united Kingdom                                  Hong Kong
                                                         +44 (0) 1628 509 070                            +852 2297 2812


© 2011 Logrhythm inc. | www.logrhythm.com                                                                           Aienginedatasheet_1102               2

More Related Content

Viewers also liked

Artificial Intelligence in Financial Trading and Education
Artificial Intelligence in Financial Trading and EducationArtificial Intelligence in Financial Trading and Education
Artificial Intelligence in Financial Trading and Education
srparfitt
 
Hadoop innovation index
Hadoop innovation indexHadoop innovation index
Hadoop innovation index
WeAreInnovation
 
From Sensing to Decision
From Sensing to DecisionFrom Sensing to Decision
From Sensing to Decision
Tzar Umang
 
Vgu bis2010 edge_rank_lite
Vgu bis2010 edge_rank_liteVgu bis2010 edge_rank_lite
Vgu bis2010 edge_rank_lite
Lam Pham
 
Inteligência artificial para sistemas colaborativos
Inteligência artificial para sistemas colaborativosInteligência artificial para sistemas colaborativos
Inteligência artificial para sistemas colaborativos
Rodrigo de Oliveira
 
Yahoo Artificial Intelligence Patents Assessment
Yahoo Artificial Intelligence Patents AssessmentYahoo Artificial Intelligence Patents Assessment
Yahoo Artificial Intelligence Patents Assessment
Alex G. Lee, Ph.D. Esq. CLP
 
Abhinandan cultural institute
Abhinandan cultural instituteAbhinandan cultural institute
Abhinandan cultural institute
Shoilen Sannamat
 
Solution to Help Companies Patent their Inventions, License Technologies, and...
Solution to Help Companies Patent their Inventions, License Technologies, and...Solution to Help Companies Patent their Inventions, License Technologies, and...
Solution to Help Companies Patent their Inventions, License Technologies, and...
Dr. Haxel Consult
 
Presentation 20110918 split
Presentation 20110918   splitPresentation 20110918   split
Presentation 20110918 split
Kuanhung Chen
 
VC 1pager
VC 1pagerVC 1pager
VC 1pager
Alex Greystoke
 
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
Tatiane Aguirres Nogueira
 
Lumiata
LumiataLumiata
Lumiata
YTH
 
Introduction to Tensorflow
Introduction to TensorflowIntroduction to Tensorflow
Introduction to Tensorflow
Tzar Umang
 
Introduction To My Graduation Project
Introduction To My Graduation ProjectIntroduction To My Graduation Project
Introduction To My Graduation Project
Abdelrahman Al-Ogail
 
How One Billion Salesforce records Can Be Replicated with Minimal API Usage
How One Billion Salesforce records Can Be Replicated with Minimal API UsageHow One Billion Salesforce records Can Be Replicated with Minimal API Usage
How One Billion Salesforce records Can Be Replicated with Minimal API Usage
Baruch Oxman
 
Good Old Fashioned Artificial Intelligence
Good Old Fashioned Artificial IntelligenceGood Old Fashioned Artificial Intelligence
Good Old Fashioned Artificial Intelligence
Robert Short
 
AI maturity index report
AI maturity index report AI maturity index report
AI maturity index report
Ajay Karanam
 
Artificial intelligence
Artificial intelligence Artificial intelligence
Artificial intelligence
luisjcaro
 
AI and Salesforce
AI and SalesforceAI and Salesforce
AI and Salesforce
Salesforce Developers
 
Drowning In Data
Drowning In DataDrowning In Data
Drowning In Data
Stephen Pratt
 

Viewers also liked (20)

Artificial Intelligence in Financial Trading and Education
Artificial Intelligence in Financial Trading and EducationArtificial Intelligence in Financial Trading and Education
Artificial Intelligence in Financial Trading and Education
 
Hadoop innovation index
Hadoop innovation indexHadoop innovation index
Hadoop innovation index
 
From Sensing to Decision
From Sensing to DecisionFrom Sensing to Decision
From Sensing to Decision
 
Vgu bis2010 edge_rank_lite
Vgu bis2010 edge_rank_liteVgu bis2010 edge_rank_lite
Vgu bis2010 edge_rank_lite
 
Inteligência artificial para sistemas colaborativos
Inteligência artificial para sistemas colaborativosInteligência artificial para sistemas colaborativos
Inteligência artificial para sistemas colaborativos
 
Yahoo Artificial Intelligence Patents Assessment
Yahoo Artificial Intelligence Patents AssessmentYahoo Artificial Intelligence Patents Assessment
Yahoo Artificial Intelligence Patents Assessment
 
Abhinandan cultural institute
Abhinandan cultural instituteAbhinandan cultural institute
Abhinandan cultural institute
 
Solution to Help Companies Patent their Inventions, License Technologies, and...
Solution to Help Companies Patent their Inventions, License Technologies, and...Solution to Help Companies Patent their Inventions, License Technologies, and...
Solution to Help Companies Patent their Inventions, License Technologies, and...
 
Presentation 20110918 split
Presentation 20110918   splitPresentation 20110918   split
Presentation 20110918 split
 
VC 1pager
VC 1pagerVC 1pager
VC 1pager
 
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
Palestra "Ionic Framework 2 - O que vem por aí?" TDC 2016
 
Lumiata
LumiataLumiata
Lumiata
 
Introduction to Tensorflow
Introduction to TensorflowIntroduction to Tensorflow
Introduction to Tensorflow
 
Introduction To My Graduation Project
Introduction To My Graduation ProjectIntroduction To My Graduation Project
Introduction To My Graduation Project
 
How One Billion Salesforce records Can Be Replicated with Minimal API Usage
How One Billion Salesforce records Can Be Replicated with Minimal API UsageHow One Billion Salesforce records Can Be Replicated with Minimal API Usage
How One Billion Salesforce records Can Be Replicated with Minimal API Usage
 
Good Old Fashioned Artificial Intelligence
Good Old Fashioned Artificial IntelligenceGood Old Fashioned Artificial Intelligence
Good Old Fashioned Artificial Intelligence
 
AI maturity index report
AI maturity index report AI maturity index report
AI maturity index report
 
Artificial intelligence
Artificial intelligence Artificial intelligence
Artificial intelligence
 
AI and Salesforce
AI and SalesforceAI and Salesforce
AI and Salesforce
 
Drowning In Data
Drowning In DataDrowning In Data
Drowning In Data
 

Similar to LogRhythm Advanced Intelligence Engine Data Sheet

SwiftWing SIRIUS Datasheet
SwiftWing SIRIUS DatasheetSwiftWing SIRIUS Datasheet
SwiftWing SIRIUS Datasheet
Peter Koza
 
ComWorth' Sirius SwiftWing Hi Performance Capture & Storage Solutions
ComWorth'  Sirius SwiftWing Hi Performance Capture & Storage SolutionsComWorth'  Sirius SwiftWing Hi Performance Capture & Storage Solutions
ComWorth' Sirius SwiftWing Hi Performance Capture & Storage Solutions
ComWorth Europe
 
Introduction to Serial RapidIO® (SRIO) by IDT
Introduction to Serial RapidIO® (SRIO) by IDTIntroduction to Serial RapidIO® (SRIO) by IDT
Introduction to Serial RapidIO® (SRIO) by IDT
Integrated Device Technology
 
Graph-Based Identity Resolution at Scale
Graph-Based Identity Resolution at ScaleGraph-Based Identity Resolution at Scale
Graph-Based Identity Resolution at Scale
TigerGraph
 
Phytium 64 core cpu preview
Phytium 64 core cpu previewPhytium 64 core cpu preview
Phytium 64 core cpu preview
inside-BigData.com
 
RAD Industrial Automation, Labs, and Instrumentation
RAD Industrial Automation, Labs, and InstrumentationRAD Industrial Automation, Labs, and Instrumentation
RAD Industrial Automation, Labs, and Instrumentation
Embarcadero Technologies
 
8 Channel Analog Data Logger
8 Channel Analog Data Logger8 Channel Analog Data Logger
8 Channel Analog Data Logger
Raghav Shetty
 
Bsides Puerto Rico-2017
Bsides Puerto Rico-2017Bsides Puerto Rico-2017
Bsides Puerto Rico-2017
Price McDonald
 
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
Bhavin Chandarana
 
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
Vietnam Open Infrastructure User Group
 
Huawei Innovative ICT Solutions, CeBIT
Huawei Innovative ICT Solutions, CeBITHuawei Innovative ICT Solutions, CeBIT
Huawei Innovative ICT Solutions, CeBIT
Huawei Enterprise
 
IBM Power Systems at FIS InFocus 2019
IBM Power Systems at FIS InFocus 2019IBM Power Systems at FIS InFocus 2019
IBM Power Systems at FIS InFocus 2019
Paula Koziol
 
Fred server
Fred serverFred server
Fred server
Yansi Keim
 
Lagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
Lagopus presentation on 14th Annual ON*VECTOR International Photonics WorkshopLagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
Lagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
Lagopus SDN/OpenFlow switch
 
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mãoWebinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
Embarcados
 
Manufacturing pov jeff green 2016 v2
Manufacturing pov jeff green 2016 v2Manufacturing pov jeff green 2016 v2
Manufacturing pov jeff green 2016 v2
Jeff Green
 
Hpe Proliant DL325 Gen10 Server Datasheet
Hpe Proliant DL325 Gen10 Server DatasheetHpe Proliant DL325 Gen10 Server Datasheet
Hpe Proliant DL325 Gen10 Server Datasheet
美兰 曾
 
WIRELESS SURVILLANCE ROBOT
WIRELESS SURVILLANCE ROBOT WIRELESS SURVILLANCE ROBOT
WIRELESS SURVILLANCE ROBOT
KrishGupta94
 
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
Embarcados
 
Design & Implementation Of Fault Identification In Underground Cables Using IOT
Design & Implementation Of Fault Identification In Underground Cables Using IOTDesign & Implementation Of Fault Identification In Underground Cables Using IOT
Design & Implementation Of Fault Identification In Underground Cables Using IOT
IRJET Journal
 

Similar to LogRhythm Advanced Intelligence Engine Data Sheet (20)

SwiftWing SIRIUS Datasheet
SwiftWing SIRIUS DatasheetSwiftWing SIRIUS Datasheet
SwiftWing SIRIUS Datasheet
 
ComWorth' Sirius SwiftWing Hi Performance Capture & Storage Solutions
ComWorth'  Sirius SwiftWing Hi Performance Capture & Storage SolutionsComWorth'  Sirius SwiftWing Hi Performance Capture & Storage Solutions
ComWorth' Sirius SwiftWing Hi Performance Capture & Storage Solutions
 
Introduction to Serial RapidIO® (SRIO) by IDT
Introduction to Serial RapidIO® (SRIO) by IDTIntroduction to Serial RapidIO® (SRIO) by IDT
Introduction to Serial RapidIO® (SRIO) by IDT
 
Graph-Based Identity Resolution at Scale
Graph-Based Identity Resolution at ScaleGraph-Based Identity Resolution at Scale
Graph-Based Identity Resolution at Scale
 
Phytium 64 core cpu preview
Phytium 64 core cpu previewPhytium 64 core cpu preview
Phytium 64 core cpu preview
 
RAD Industrial Automation, Labs, and Instrumentation
RAD Industrial Automation, Labs, and InstrumentationRAD Industrial Automation, Labs, and Instrumentation
RAD Industrial Automation, Labs, and Instrumentation
 
8 Channel Analog Data Logger
8 Channel Analog Data Logger8 Channel Analog Data Logger
8 Channel Analog Data Logger
 
Bsides Puerto Rico-2017
Bsides Puerto Rico-2017Bsides Puerto Rico-2017
Bsides Puerto Rico-2017
 
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
Presentation for IoT workshop at Sinhagad University (Feb 4, 2016) - 2/2
 
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
Packaging Strategy for Community Openstack and Implementation Reference | Hoj...
 
Huawei Innovative ICT Solutions, CeBIT
Huawei Innovative ICT Solutions, CeBITHuawei Innovative ICT Solutions, CeBIT
Huawei Innovative ICT Solutions, CeBIT
 
IBM Power Systems at FIS InFocus 2019
IBM Power Systems at FIS InFocus 2019IBM Power Systems at FIS InFocus 2019
IBM Power Systems at FIS InFocus 2019
 
Fred server
Fred serverFred server
Fred server
 
Lagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
Lagopus presentation on 14th Annual ON*VECTOR International Photonics WorkshopLagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
Lagopus presentation on 14th Annual ON*VECTOR International Photonics Workshop
 
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mãoWebinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
Webinar: NVIDIA JETSON – A Inteligência Artificial na palma de sua mão
 
Manufacturing pov jeff green 2016 v2
Manufacturing pov jeff green 2016 v2Manufacturing pov jeff green 2016 v2
Manufacturing pov jeff green 2016 v2
 
Hpe Proliant DL325 Gen10 Server Datasheet
Hpe Proliant DL325 Gen10 Server DatasheetHpe Proliant DL325 Gen10 Server Datasheet
Hpe Proliant DL325 Gen10 Server Datasheet
 
WIRELESS SURVILLANCE ROBOT
WIRELESS SURVILLANCE ROBOT WIRELESS SURVILLANCE ROBOT
WIRELESS SURVILLANCE ROBOT
 
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
Webinar: Plataforma Renesas Synergy – Construindo sua aplicação MQTT com anal...
 
Design & Implementation Of Fault Identification In Underground Cables Using IOT
Design & Implementation Of Fault Identification In Underground Cables Using IOTDesign & Implementation Of Fault Identification In Underground Cables Using IOT
Design & Implementation Of Fault Identification In Underground Cables Using IOT
 

More from jordagro

LogRhythm Alerting on the Absence of an Event Use Case UK
LogRhythm Alerting on the Absence of an Event Use Case UKLogRhythm Alerting on the Absence of an Event Use Case UK
LogRhythm Alerting on the Absence of an Event Use Case UK
jordagro
 
LogRhythm Zero Day Exploits Use Case
LogRhythm Zero Day Exploits Use CaseLogRhythm Zero Day Exploits Use Case
LogRhythm Zero Day Exploits Use Case
jordagro
 
LogRhythm Visualization Use Case
LogRhythm Visualization Use CaseLogRhythm Visualization Use Case
LogRhythm Visualization Use Case
jordagro
 
LogRhythm Time-to-Value Use Case
LogRhythm Time-to-Value Use CaseLogRhythm Time-to-Value Use Case
LogRhythm Time-to-Value Use Case
jordagro
 
LogRhythm Rapid Forensics Use Case
LogRhythm Rapid Forensics Use CaseLogRhythm Rapid Forensics Use Case
LogRhythm Rapid Forensics Use Case
jordagro
 
LogRhythm Privileged Use Monitoring Use Case
LogRhythm Privileged Use Monitoring Use CaseLogRhythm Privileged Use Monitoring Use Case
LogRhythm Privileged Use Monitoring Use Case
jordagro
 
LogRhythm Operations Use Case
LogRhythm Operations Use CaseLogRhythm Operations Use Case
LogRhythm Operations Use Case
jordagro
 
LogRhythm Geolocation Use Case
LogRhythm Geolocation Use CaseLogRhythm Geolocation Use Case
LogRhythm Geolocation Use Case
jordagro
 
LogRhythm E Phi Use Case
LogRhythm E Phi Use CaseLogRhythm E Phi Use Case
LogRhythm E Phi Use Case
jordagro
 
What's New Logrhythm 5.1 Data Sheet
What's New Logrhythm 5.1 Data SheetWhat's New Logrhythm 5.1 Data Sheet
What's New Logrhythm 5.1 Data Sheet
jordagro
 
LogRhythm Web Rhythm Data Sheet
LogRhythm Web Rhythm Data SheetLogRhythm Web Rhythm Data Sheet
LogRhythm Web Rhythm Data Sheet
jordagro
 
LogRhythm Siem 2.0 Flyer
LogRhythm Siem 2.0 FlyerLogRhythm Siem 2.0 Flyer
LogRhythm Siem 2.0 Flyer
jordagro
 
LogRhythm Professional Services Overview Data Sheet
LogRhythm Professional Services Overview Data SheetLogRhythm Professional Services Overview Data Sheet
LogRhythm Professional Services Overview Data Sheet
jordagro
 
LogRhythm PowerTech Interact Data Sheet
LogRhythm PowerTech Interact Data SheetLogRhythm PowerTech Interact Data Sheet
LogRhythm PowerTech Interact Data Sheet
jordagro
 
LogRhythm Visualize This Data Sheet
LogRhythm Visualize This Data SheetLogRhythm Visualize This Data Sheet
LogRhythm Visualize This Data Sheet
jordagro
 
LogRhythm Training Syllabus Data Sheet
LogRhythm Training Syllabus Data SheetLogRhythm Training Syllabus Data Sheet
LogRhythm Training Syllabus Data Sheet
jordagro
 
LogRhythm Overview Data Sheet
LogRhythm Overview Data SheetLogRhythm Overview Data Sheet
LogRhythm Overview Data Sheet
jordagro
 
LogRhythm FIPS Data Sheet
LogRhythm  FIPS Data SheetLogRhythm  FIPS Data Sheet
LogRhythm FIPS Data Sheet
jordagro
 
LogRhythm High Availability Solutions Data Sheet
LogRhythm High Availability Solutions Data SheetLogRhythm High Availability Solutions Data Sheet
LogRhythm High Availability Solutions Data Sheet
jordagro
 
File Integrity Monitoring Data Sheet
File Integrity Monitoring Data SheetFile Integrity Monitoring Data Sheet
File Integrity Monitoring Data Sheet
jordagro
 

More from jordagro (20)

LogRhythm Alerting on the Absence of an Event Use Case UK
LogRhythm Alerting on the Absence of an Event Use Case UKLogRhythm Alerting on the Absence of an Event Use Case UK
LogRhythm Alerting on the Absence of an Event Use Case UK
 
LogRhythm Zero Day Exploits Use Case
LogRhythm Zero Day Exploits Use CaseLogRhythm Zero Day Exploits Use Case
LogRhythm Zero Day Exploits Use Case
 
LogRhythm Visualization Use Case
LogRhythm Visualization Use CaseLogRhythm Visualization Use Case
LogRhythm Visualization Use Case
 
LogRhythm Time-to-Value Use Case
LogRhythm Time-to-Value Use CaseLogRhythm Time-to-Value Use Case
LogRhythm Time-to-Value Use Case
 
LogRhythm Rapid Forensics Use Case
LogRhythm Rapid Forensics Use CaseLogRhythm Rapid Forensics Use Case
LogRhythm Rapid Forensics Use Case
 
LogRhythm Privileged Use Monitoring Use Case
LogRhythm Privileged Use Monitoring Use CaseLogRhythm Privileged Use Monitoring Use Case
LogRhythm Privileged Use Monitoring Use Case
 
LogRhythm Operations Use Case
LogRhythm Operations Use CaseLogRhythm Operations Use Case
LogRhythm Operations Use Case
 
LogRhythm Geolocation Use Case
LogRhythm Geolocation Use CaseLogRhythm Geolocation Use Case
LogRhythm Geolocation Use Case
 
LogRhythm E Phi Use Case
LogRhythm E Phi Use CaseLogRhythm E Phi Use Case
LogRhythm E Phi Use Case
 
What's New Logrhythm 5.1 Data Sheet
What's New Logrhythm 5.1 Data SheetWhat's New Logrhythm 5.1 Data Sheet
What's New Logrhythm 5.1 Data Sheet
 
LogRhythm Web Rhythm Data Sheet
LogRhythm Web Rhythm Data SheetLogRhythm Web Rhythm Data Sheet
LogRhythm Web Rhythm Data Sheet
 
LogRhythm Siem 2.0 Flyer
LogRhythm Siem 2.0 FlyerLogRhythm Siem 2.0 Flyer
LogRhythm Siem 2.0 Flyer
 
LogRhythm Professional Services Overview Data Sheet
LogRhythm Professional Services Overview Data SheetLogRhythm Professional Services Overview Data Sheet
LogRhythm Professional Services Overview Data Sheet
 
LogRhythm PowerTech Interact Data Sheet
LogRhythm PowerTech Interact Data SheetLogRhythm PowerTech Interact Data Sheet
LogRhythm PowerTech Interact Data Sheet
 
LogRhythm Visualize This Data Sheet
LogRhythm Visualize This Data SheetLogRhythm Visualize This Data Sheet
LogRhythm Visualize This Data Sheet
 
LogRhythm Training Syllabus Data Sheet
LogRhythm Training Syllabus Data SheetLogRhythm Training Syllabus Data Sheet
LogRhythm Training Syllabus Data Sheet
 
LogRhythm Overview Data Sheet
LogRhythm Overview Data SheetLogRhythm Overview Data Sheet
LogRhythm Overview Data Sheet
 
LogRhythm FIPS Data Sheet
LogRhythm  FIPS Data SheetLogRhythm  FIPS Data Sheet
LogRhythm FIPS Data Sheet
 
LogRhythm High Availability Solutions Data Sheet
LogRhythm High Availability Solutions Data SheetLogRhythm High Availability Solutions Data Sheet
LogRhythm High Availability Solutions Data Sheet
 
File Integrity Monitoring Data Sheet
File Integrity Monitoring Data SheetFile Integrity Monitoring Data Sheet
File Integrity Monitoring Data Sheet
 

Recently uploaded

Serial Arm Control in Real Time Presentation
Serial Arm Control in Real Time PresentationSerial Arm Control in Real Time Presentation
Serial Arm Control in Real Time Presentation
tolgahangng
 
HCL Notes and Domino License Cost Reduction in the World of DLAU
HCL Notes and Domino License Cost Reduction in the World of DLAUHCL Notes and Domino License Cost Reduction in the World of DLAU
HCL Notes and Domino License Cost Reduction in the World of DLAU
panagenda
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
danishmna97
 
Presentation of the OECD Artificial Intelligence Review of Germany
Presentation of the OECD Artificial Intelligence Review of GermanyPresentation of the OECD Artificial Intelligence Review of Germany
Presentation of the OECD Artificial Intelligence Review of Germany
innovationoecd
 
How to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For FlutterHow to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For Flutter
Daiki Mogmet Ito
 
Mind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AIMind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AI
Kumud Singh
 
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAUHCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
panagenda
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
Matthew Sinclair
 
GraphRAG for Life Science to increase LLM accuracy
GraphRAG for Life Science to increase LLM accuracyGraphRAG for Life Science to increase LLM accuracy
GraphRAG for Life Science to increase LLM accuracy
Tomaz Bratanic
 
Communications Mining Series - Zero to Hero - Session 1
Communications Mining Series - Zero to Hero - Session 1Communications Mining Series - Zero to Hero - Session 1
Communications Mining Series - Zero to Hero - Session 1
DianaGray10
 
Best 20 SEO Techniques To Improve Website Visibility In SERP
Best 20 SEO Techniques To Improve Website Visibility In SERPBest 20 SEO Techniques To Improve Website Visibility In SERP
Best 20 SEO Techniques To Improve Website Visibility In SERP
Pixlogix Infotech
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Paige Cruz
 
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdfUnlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
Malak Abu Hammad
 
RESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for studentsRESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for students
KAMESHS29
 
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
名前 です男
 
UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6
DianaGray10
 
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
Edge AI and Vision Alliance
 
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success StoryDriving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Safe Software
 
Artificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopmentArtificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopment
Octavian Nadolu
 
Full-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalizationFull-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalization
Zilliz
 

Recently uploaded (20)

Serial Arm Control in Real Time Presentation
Serial Arm Control in Real Time PresentationSerial Arm Control in Real Time Presentation
Serial Arm Control in Real Time Presentation
 
HCL Notes and Domino License Cost Reduction in the World of DLAU
HCL Notes and Domino License Cost Reduction in the World of DLAUHCL Notes and Domino License Cost Reduction in the World of DLAU
HCL Notes and Domino License Cost Reduction in the World of DLAU
 
How to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptxHow to Get CNIC Information System with Paksim Ga.pptx
How to Get CNIC Information System with Paksim Ga.pptx
 
Presentation of the OECD Artificial Intelligence Review of Germany
Presentation of the OECD Artificial Intelligence Review of GermanyPresentation of the OECD Artificial Intelligence Review of Germany
Presentation of the OECD Artificial Intelligence Review of Germany
 
How to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For FlutterHow to use Firebase Data Connect For Flutter
How to use Firebase Data Connect For Flutter
 
Mind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AIMind map of terminologies used in context of Generative AI
Mind map of terminologies used in context of Generative AI
 
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAUHCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
HCL Notes und Domino Lizenzkostenreduzierung in der Welt von DLAU
 
20240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 202420240609 QFM020 Irresponsible AI Reading List May 2024
20240609 QFM020 Irresponsible AI Reading List May 2024
 
GraphRAG for Life Science to increase LLM accuracy
GraphRAG for Life Science to increase LLM accuracyGraphRAG for Life Science to increase LLM accuracy
GraphRAG for Life Science to increase LLM accuracy
 
Communications Mining Series - Zero to Hero - Session 1
Communications Mining Series - Zero to Hero - Session 1Communications Mining Series - Zero to Hero - Session 1
Communications Mining Series - Zero to Hero - Session 1
 
Best 20 SEO Techniques To Improve Website Visibility In SERP
Best 20 SEO Techniques To Improve Website Visibility In SERPBest 20 SEO Techniques To Improve Website Visibility In SERP
Best 20 SEO Techniques To Improve Website Visibility In SERP
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
 
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdfUnlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
Unlock the Future of Search with MongoDB Atlas_ Vector Search Unleashed.pdf
 
RESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for studentsRESUME BUILDER APPLICATION Project for students
RESUME BUILDER APPLICATION Project for students
 
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
みなさんこんにちはこれ何文字まで入るの?40文字以下不可とか本当に意味わからないけどこれ限界文字数書いてないからマジでやばい文字数いけるんじゃないの?えこ...
 
UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6UiPath Test Automation using UiPath Test Suite series, part 6
UiPath Test Automation using UiPath Test Suite series, part 6
 
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
“Building and Scaling AI Applications with the Nx AI Manager,” a Presentation...
 
Driving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success StoryDriving Business Innovation: Latest Generative AI Advancements & Success Story
Driving Business Innovation: Latest Generative AI Advancements & Success Story
 
Artificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopmentArtificial Intelligence for XMLDevelopment
Artificial Intelligence for XMLDevelopment
 
Full-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalizationFull-RAG: A modern architecture for hyper-personalization
Full-RAG: A modern architecture for hyper-personalization
 

LogRhythm Advanced Intelligence Engine Data Sheet

  • 1. product overview Advanced Intelligence (AI) Engine TM LogRhythm’s Advanced Intelligence (AI) Engine is an optional module for any LogRhythm deployment, offering sophisticated correlation and analysis of all enterprise log data in a uniquely intuitive fashion. With a practical combination of flexibility, usability and comprehensive data analysis, AI Engine delivers real-time visibility to risks, threats and critical operations issues that are otherwise undetectable in any practical way. AI Engine is Correlation That Works! With over 100 preconfigured, out-of-the-box correlation rule sets and a wizard-based drag-and-drop GUI for creating and customizing even complex rules, AI Engine enables organizations to predict, detect and swiftly respond to: • Sophisticated intrusions • Insider threats • Fraud • Compliance violations • Disruptions to IT Services • And many other critical actionable events… Comprehensive Advanced Correlation Unlike legacy SIEM solutions, AI Engine leverages its integration with the log and event management functions within the LogRhythm platform to correlate against all log data – not just a pre-filtered subset of security events. Seamless integration also enables immediate access to all forensic data directly related to an event. AI Engine rules draw from over 50 different metadata fields that provide highly relevant data for analysis and correlation. Whether detected by out-of-the-box rules or user-created/modified rules, AI Engine identifies and alerts on actionable events with tremendous precision, for operations, security and compliance assurance. AI Engine can also be used to cast a wide net through generalized correlation rules for broader visibility that accommodate changes in event behavior. TrueTime TM LogRhythm applies a universal timestamp to every log as it is processed. This ensures that the actual time of occurrence of an activity is recorded accurately – regardless of external factors, such as an out- of-sync server clock, delayed delivery of a log or differences in time zones. TrueTimeTM guarantees that advanced correlation within AI Engine is based on chronological fact – recognizing the true sequence of events – minimizing false positives and avoiding false negatives. AI Engine Delivers • Advanced Correlation Against All Log Data • TrueTimeTM Event Sequencing • Immediate Access to Underlying Forensic Data • Generalized and Targeted Rules • Extensive Out-of-the-Box Advanced Correlation Rules • Unparalleled Ease of Use AI Engine in Action AI Engine’s numerous predefined advanced correlation rule sets are configured to run “out-of-the-box” and act as templates for easy customization. All rules within AI Engine can be quickly modified through a highly intuitive GUI to address unique requirements of any organization.
  • 2. product overview Advanced intelligence (Ai) engine Secure A single event is not always enough to indicate a breach or show the true reach of a security incident. AI Engine recognizes common security incidents and automatically correlates them against suspicious behavior patterns to automatically identify and alert on aberrant activity. For example, malware can invade and spread through an organization quickly, exposing data and weakening security faster than administrators can react. In many cases, the extent of damage is unknown. Examples: • Malware is detected on one host followed by attacks from that affected host. • Suspicious communication from an external IP Address is followed by data being transferred to the same IP Address. • A user logs in from one location, does not log out, but logs in from another city or country in a short timeframe. Comply AI Engine can assist in automating compliance controls, generating events when specific policy violations occur. These include protecting cardholder data or Protected Health Information (PHI) from unauthorized access and actively monitoring privileged user behavior. Examples: • Five failed authentication attempts followed by a successful login to a database containing ePHI followed by a large data transfer to the user’s machine all within 30 minutes. • A file containing credit card data is accessed, followed by an attempt to transfer information from the same host to a USB thumb drive within 10 minutes. • Creating one or multiple accounts and escalating their privileges in a short period of time. Optimize Advanced correlation offers substantial value for operational insight and IT services assurance. Slight variations in specific activities or a particular sequence of more common operations events may indicate critical operations issues. Examples: • A backup process is started, but no log for backup completed is generated. • A critical process stops and doesn’t start back up within a specific timeframe. • A large group of servers shuts down followed by a smaller group of servers starting back up. • High I/O rates on a critical server usually only observed during backup procedures are observed during normal business hours. AI Engine Deployment Options Designed to integrate with any core LogRhythm deployment AI Engine can be purchased as a turnkey appliance, installed as software on dedicated customer equipment or deployed on multiple virtualization platforms, including VMware ESX, Microsoft Hyper-V, and Citrix XenServer. High performance appliances can process tens of thousands of logs per second and billions of logs per day. AI Engine follows LogRhythm’s building-block architecture – expansion is as simple as plugging in an additional appliance. All appliances are centrally configured, monitored, and managed through LogRhythm’s universal console. APPLIAnCE LInE LPS/LPD* CPU Memory RAID Storage Chassis Power Ethernet Dimensions Weight LR-AIE1 1,150 1 Quad core 32GB perc H200, rAid 1 272GB 1u 100-240v Broadcom 5809c (2 cards H4.26cm x w48.24cm x 17.69kg / 100 Million (data, oS) / 4 ports) d77.2cm LR-AIE2 11,150 2 Quad core 96GB perc H700, rAid 1 (oS), 540GB 1u 100-240v Broadcom 5809c (2 cards H4.26cm x w48.24cm x 17.69kg / 1 Billion rAid 10 (dAtA) / 4 ports) d77.2cm *Logs per Second/Logs per day LogRhythm Headquarters LogRhythm EMEA LogRhythm Asia Pacific Ltd. 3195 Sterling circle Siena court, the Broadway 8/F exchange Square ii Boulder, co 80301 Maidenhead Berkshire SL6 1NJ 8 connaught place, central 303-413-8745 united Kingdom Hong Kong +44 (0) 1628 509 070 +852 2297 2812 © 2011 Logrhythm inc. | www.logrhythm.com Aienginedatasheet_1102 2