The company says it's the industry's first "endpoint aware" SIEM

Oct 4, 2013 18:11 GMT  ·  By

McAfee has enhanced the capabilities of its security information event management (SIEM) solution with real-time system state information. This results in improved situational awareness and streamlined incident response.

The McAfee Enterprise Security Manager (ESM) is integrated with McAfee Real Time to instantly provide detailed security analytics regarding all the events that occur on systems. This allows IT staff to immediately detect attacks, determine their root cause, and mitigate them.

McAfee says the combination of the two systems, ESM and Real Point, delivers the industry’s first “endpoint aware” SIEM.

“McAfee is continuing to lead the market for situational awareness by redefining security intelligence and turning the tables on attacks,” said Ken Levine, senior vice president and general manager of Security Management at McAfee.

“We are able to achieve this by leveraging our big security data management system and the deep system insight only McAfee can provide. We understand this need unlike anyone else and we’re arming our customers with the intelligence, speed and context to win the battle against advanced threats.”

It’s worth noting that McAfee Real time is also used along with the McAfee Advanced Threat Defense solution to protect organizations against malware attacks.