Implements hundreds of unsupervised machine learning models to detect behavioral anomalies that indicate threats, with automatic ML training that eliminates the need for rules and thresholds
02
Normalized Risk Scoring
Provides quick visualization and contextualization of entity risk with scores ranging from 0 to 100
03
Dynamic Anomaly And Risk Timelines
Displays an entity's risk profile over time, showing anomalies that contributed to risk scores, with advanced filtering capabilities for threat hunters to focus on specific anomalies
04
Raw Event Viewer
Uses a normalization process that retains all raw log fields, enabling users to review exact details contributing to increased risk scores
05
Anomaly Mapping
Maps detected anomalies to MITRE ATT&CK tactics to provide insights into security stack vulnerabilities
Your plan caps how many capabilities are shown — upgrade to see the full list