Insight, News, Technology

Infoblox’s new AI-powered SOC insights capability reduces critical security operations challenges

Infoblox Inc., a leader in cloud networking and security services, recently announces an industry-first, AI-driven security operations solution, SOC Insights, that boosts its DNS Detection and Response solution, BloxOne® Threat Defence.

SOC Insights empowers security analysts to jump-start investigations that truly matter and dramatically reduce response time by turning vast amounts of security events, network, ecosystem, and unique DNS intelligence data into a manageable set of immediate, actionable insights at AI-speed.

Going beyond simple malware risk-based dashboards, SOC Insights enables cybersecurity teams to reduce mean-time-to-respond (MTTR) by eliminating wasted time by consolidating individual alerts into unique insights. Each insight provides easy access to device, event, and attacker infrastructure details and Infoblox unique DNS intelligence data. This eliminates the need for SecOps teams to spend time tracking each individual alert or waiting on NetOps for user and device information for context around threat activity.

“SOC Insights is a game-changer for SecOps, allowing them to focus on what really matters, especially when they’re up against limited budget and resources”, said Craig Sanderson, Vice President, Security and Product Management, Infoblox. “At Infoblox, we envision a future where AI-driven analytics and DNS driven intelligence dramatically elevate SecOps efficiency, with SOC Insights setting the industry standard”.

With evolving technologies like generative AI and cloud, and the continued cyber security skills shortage — the growth of sophisticated attacks is now resulting in more business risk and exposure than ever. With SOC Insights, Infoblox BloxOne Threat Defense can help in eliminating critical SecOps team challenges such as:

  • Increasingly complex cyber-attacks: Apply unique DNS threat intelligence to identify threats other tools will miss and proactively disrupt the adversaries infrastructure to stop threats before they occur.
  • Alert fatigue: Quickly identify which events matter the most by narrowing down hundreds of thousands of alerts to a more manageable set of insights with actionable guidance to accelerate the investigation and remediation process.
  • Lengthy incident response times: Eliminate wasted time collecting, filtering, and interpreting vast amounts of event, network, and unique DNS intelligence data to enable SecOps to quickly or automatically initiate response activities.
  • Underutilised existing security ecosystem: Share AI-driven insights with correlated and filtered data to trigger automated responses, making other tools in the security stack more effective, further improving the efficiency of SOC tools and teams.

“DNS is poised to help organisations improve security posture and take a proactive approach to preventing breaches, as well as faster time to remediation of ones that do occur. Bad actors are becoming more sophisticated in attacks, leveraging AI to their advantage. SOC Insights has the potential to allow defenders to stay one step ahead of attackers without any guesswork”, said Will Townsend, VP & Principal Analyst, Moor Insights & Strategy. “By applying AI to vast amounts of DNS and network data, Infoblox is able to provide security teams with proactive threat disruption, insightful analytics, and intelligent ecosystem integrations”.

With SOC Insights, Managed Security Service Providers can help their customers improve their security posture, optimise their security investments, and streamline their operations. IT channel partners can also unlock new opportunities to sell or uplift other solutions in the Infoblox Security Ecosystem.

“In a world that never stops, Infoblox unites networking and security, empowering customers to deliver better performance and protection and ensure their businesses thrive. Infoblox’s new SOC Insights is a very attractive proposition for SecOps teams of organisations in the Middle East that are having to deal with an increasing number of highly sophisticated and evolving cyber threats on a daily basis. SOC Insights augments BloxOne Threat Defence’s ability to stop threats before they occur, providing faster investigation and response times and maximising existing security ecosystem investments. Those advantages will resonate very strongly in the region. We look forward to getting in front of customers and partners and discussing this industry-first innovation among others at upcoming industry events like LEAP in Saudi Arabia and GITEX in Dubai later this year”, concluded Mohammed Al-Moneer, Senior Regional Director, META at Infoblox.

“Infoblox’s SOC Insights represents a shift in how security operations centres can leverage AI to transform overwhelming volumes of data into precise, actionable intelligence”, said Steven Dickens, VP and Practice Leader, the Futurum Group. “By integrating unique DNS intelligence with AI-driven analytics, SOC Insights not only streamlines SecOps workflows but also sets a new industry benchmark for proactive threat detection and response, ensuring that security teams can stay ahead of increasingly sophisticated cyber threats”.

Previous ArticleNext Article

GET TAHAWULTECH.COM IN YOUR INBOX

The free newsletter covering the top industry headlines