Skip to content

Securing the Future of Work: Agent Behavior Analytics with Google Cloud — Read the Blog

What’s New in Exabeam Product Development – October 2023

  • Nov 02, 2023
  • Jeannie Warner
  • 2 minutes to read

Table of Contents

    In October, we introduced more than 30 feature and product improvements to enhance your experience with the Exabeam Security Operations platform. Our goal is to make it easier to ingest a broad set of third-party data sources, while adding advanced capabilities to our service offerings.

    Join us on Nov. 14 at 8 a.m. PT for our October New-Scale Release Webinar, where we’ll dive into each key feature with detailed explanations and live demonstrations.

    Microsoft 365 Exchange admin reports and Microsoft security alerts collector

    These reports and the alerts collector have been integrated into the Exabeam Security Operations Platform. With the Microsoft security alerts collector, you can ingest critical alerts from other Microsoft services, such as Microsoft Defender, Azure Security Center, and Azure Active Directory Identity Protection. These new cloud collectors make it easier to configure and separate endpoints from the old Office 365 cloud connector into separate, log-specific cloud collectors. 

    What’s New in Exabeam Product Development — October 2023

    Read the Cloud Collector release notes

    Enhancements to roles and permissions

    We’ve simplified and targeted access control workflows for the Exabeam Security Operations Platform. We’ve expanded the number of prepackaged roles in settings from three to seven, helping align security operations organizations of any size. Permissions have clear names and descriptions, allowing administrators to define access control efficiently for every role, including custom roles.

    What’s New in Exabeam Product Development — October 2023

    Read the Exabeam Security Operations Platform release notes.

    Risk scoring in Alert and Case Management

    Our risk scoring now escalates the highest-risk alerts and cases for analyst review, indicating the likelihood of business impact. These risk scores inform system-generated priority levels, which can be manually adjusted by the analyst. Prioritizing security alerts and cases offers clear direction on where to focus efforts for faster detection and assessment of potential incidents, a key aspect in threat mitigation. You can filter alerts and cases by priority, risk scores, or age (the length of time since the alert or case was first created).

    What’s New in Exabeam Product Development — October 2023
    What’s New in Exabeam Product Development — October 2023

    Read the Alert and Case Management release notes.

    Granular suppression for rules and entities

    This feature has been enhanced to allow users to suppress a correlation rule for a specific group or host. When using a Common Information Model (CIM) 2.0 field, a correlation rule is suppressed only by that value for the assigned suppression threshold. Using suppression to address “noisy” ports or hosts ensures you can manage alert fatigue and not miss important detections. The ability to suppress a value appears as the last step of the CR creation wizard, making it easy to apply as part of the regular workflow.

    Read the Correlation Rules release notes.

    New-Scale Okta Context Management

    We now support one of the most widely adopted identity provider (IdP) solutions, Okta, for access and authentication. Okta context tables can be included in custom filtered tables, which are then used in Search, Correlation Rules, and Dashboards to boost functionality.

    Read the Context Management release notes.

    What’s New in Exabeam Product Development — October 2023

    For a complete list of Exabeam release features organized by month, visit our page to discover additional October features not covered in this blog post.

    Dig into the new release in the Exabeam Community. Engage in live ExaExpert Q&A sessions every other week, or join technical discussions at your convenience. Your curiosity and questions are always welcome.

    Exabeam Community
    Jeannie Warner

    Jeannie Warner

    Director, Product Marketing | Exabeam | Jeannie Warner, CISSP, is the Director of Product Marketing at Exabeam. Jeannie is an information security professional with over twenty years in infrastructure operations/security starting her career in the trenches working in various Unix help desk and network operations centers. She started in Security Operations for IBM MSS and quickly rose through the ranks to technical product and security program manager for a variety of software companies such as Symantec, Fortinet, and Synopsis (formerly WhiteHat) Security. She served as the Global SOC Manager for Dimension Data, building out their multi-SOC “follow the sun” approach to security. Jeannie was trained in computer forensics and practices, and plays a lot of ice hockey.

    More posts by Jeannie Warner

    Learn More About Exabeam

    Learn about the Exabeam platform and expand your knowledge of information security with our collection of white papers, podcasts, webinars, and more.

    • Blog

      How Exabeam Helps Organizations Adapt to Australia’s Privacy Reforms

    • Blog

      Why Your Threat Hunting Program Might Be Failing

    • Blog

      Bring Your Own SIEM: Upgrade Detection and Response With New-Scale Analytics

    • Blog

      From Reactive to Strategic: Why AI Agents Will Transform TDIR

    • Blog

      Cloud-Native SIEM and Detection Coverage: Key Benefits for Modern SOCs

    • Blog

      Choosing a SIEM? Why Exabeam New-Scale Fusion Outpaces Microsoft Sentinel

    • Show More