-
- Home
>
-
- Resources
>
-
- Data Sheet
LogRhythm Intelligence
Data Sheet
See the threats that matter with behavior analytics that apply machine-learning (ML) to security data in LogRhythm SIEM.
LogRhythm Intelligence, a cloud-native add-on to LogRhythm SIEM, collects data from LogRhythm SIEM and processes it using ML to detect anomalies related to potential user attacks such as insider threats, compromised accounts, and administrator misuse. By upgrading an organization’s defenses, analysts can contend with sophisticated and credential-based attacks, all within the simplified workflow of LogRhythm SIEM.
LogRhythm Intelligence adapts through ML by establishing baselines and auto- scoring events by risk level. ML boosts entity context classification, distinguishing between workstations, servers, service accounts, and human users, enabling continuous tuning without manual intervention. Ingest logs, alerts, and other telemetry; enrich them with intelligence, location, and user/host context; then run behavioral detections. Risk-based prioritization within the LogRhythm SIEM workflow helps analysts triage, investigate, and respond to insider threats more efficiently. Exabeam Nova accelerates threat analysis using purpose-driven, generative AI. Its automated summaries provide an overview of triggered detections, categorize threats using MITRE frameworks, and suggest next steps.