Posts tagged Incident Response

11 min Security Operations (SOC)

Talkin’ SMAC: Alert Labeling and Why It Matters

This blog post will demonstrate some common pitfalls of alert labeling, and offers a new framework for SOCs to use.

6 min InsightIDR

InsightIDR: 2020 Highlights and What’s Ahead in 2021

As we kick off the New Year, we wanted to highlight some key InsightIDR product investments and take a look ahead at detection and response in 2021.

5 min InsightIDR

Visualizing Network Traffic Data to Drive Action

In this blog, we cover the top five multi-groupby queries that can be used to visualize network sensor data with the Insight Network Sensor.

3 min Detection and Response

2021 Detection and Response Planning, Part 3: Why 2021 Is the Year for SOC Automation

In this third installment of our series around 2021 security planning, we’re focused on SOC automation.

3 min InsightIDR

Introducing Enhanced Endpoint Telemetry (EET) in InsightIDR

Rapid7 is excited to announce Enhanced Endpoint Telemetry (EET) in our SIEM, InsightIDR.

5 min Detection and Response

2021 Detection and Response Planning, Part 2: Driving SOC Efficiency With a Detections-First Approach to SIEM

In this installment of our security planning series, we’ll explore the importance of reliable detections to drive an efficient security program forward.

4 min InsightIDR

What’s New in InsightIDR: Q3 2020 in Review

This post offers a closer look at some of the recent updates and releases in InsightIDR from Q3 2020.

6 min Detection and Response

Rapid7 Introduces “Active Response” for End-to-End Detection and Response

We are excited to announce the launch of our new Active Response capability as a part of our MDR Elite service

6 min Detection and Response

2021 Detection and Response Planning, Part 1: Rapid7’s Jeffrey Gardner Breaks Down How CISOs Should Approach Security Planning for the New Year

To kick off this series, we sat down with Jeffrey Gardner, a former Information Security Officer, and recently appointed Practice Advisor for our Detection and Response portfolio here at Rapid7.

2 min InsightIDR

Define What to Parse From Logs with the Custom Parsing Tool in InsightIDR

In InsightIDR, Rapid7’s SIEM tool, customers use log data to detect malicious activity, prove compliance, and gain visibility across their network.

3 min Rapid7 Perspective

Why I Joined Rapid7

In this blog, Jeff Gardner, Rapid7's new Detection & Response Practice Advisor, discusses why he decided to join Rapid7.

3 min InsightIDR

InsightIDR Demo: Cloud-Native SIEM vs. Modern Security Challenges

Grab some popcorn and watch as Rapid7’s demo video gives you a glimpse of InsightIDR in action.

3 min SIEM

Data Ingestion and Data Digestion: What SIEM Log Consumption Tells Us About Modern Attack Patterns

From endpoints and VPN networks to cloud applications, the modern attack surface has expanded—but does your solution stack reflect this?

3 min InsightIDR

InsightIDR Now Connects to Zoom for Easy Monitoring

Zoom adoption has skyrocketed with spikes in remote working, but web application security needs to be a top priority to avoid disruptions in collaboration.

4 min InsightIDR

What’s New in InsightIDR: H1 2020 in Review

This post offers a closer look at select highlights of what’s new in InsightIDR, our cloud-based SIEM tool, from the first half of 2020.