Security Onion Solution Brief
Security Onion Solution Brief
Security Onion Solution Brief
VISIT WWW.PROFITAP.COM
The Challenge
Enterprises often fail to pay close attention to what goes on before a cyber attack. Many assume that a single Network Security
Monitoring (NSM) tool or the occasional test is sufficient to prevent, detect and respond to attacks which are so common
today. However, just collecting and analyzing data doesn’t get you there. Malicious activity often masquerades as legitimate
activity. This means your organization requires continuous monitoring, with a diverse toolset.
While some of these requirements can be fulfilled by accessing network data through SPAN/mirror ports on switches in low
bandwidth environments, multi-gigabit per second environments require a dedicated solution to access, manage, and analyze
the traffic.
The joint solution of Security Onion and Profitap offers the most efficient end-to-end monitoring platform you can get for high-
speed networks. It offers reliable access to the network and actionable data for the visibility you need to identify on anomalous
events.
Security Onion provides a suite of tools, including full packet capture, network-based and host-based intrusion detection
systems, and network and protocol metadata collection, combined with powerful analysis tools used to slice and dice network,
endpoint, and application log data.
Profitap’s innovative Network TAPs and Packet Brokers complement Security Onion’s technology by capturing the network
traffic (north-south & east-west) and providing all the data management required for a complete and effective security analysis
in Security Onion. Using this data, security analysts can monitor networks in real-time and perform deep dive investigations,
uncovering potential threats in your network.
The interface makes threat hunting easy to perform. Data sourced from your network, endpoints and applications are visualized
directly in Security Onion, helping you proactively search for malicious activities. With the combination of data access and
visualization, you are in complete control to implement a threat hunting gameplan tailored to your company and network
environment.
Joint Solution
Visibility, performance and security. All are deeply important for the defense of your enterprise network. So what does the joint
solution between Profitap and Security Onion Solutions look like in real life?
Profitap’s network TAPs provide fail-safe access to the network and optimize the flow of traffic data by aggregating this into a
centralized NPB. This way the Packet Broker is in an ideal position to perform advanced traffic management like deduplication
and time stamping, forwarding only actionable flow data while keeping bandwidth usage to a minimum.
The joint solution allows network analysts to effectively and quickly identify malicious activity in very high volume networks.
Main Benefits
1. Fail-safe and real-time access to high performance networks with Network TAPs.
2. Centralized management and traffic intelligence. Leverage advanced features such as deduplication, packet slicing, flow
aware load balancing, advanced filtering and time stamping from a single GUI.
3. Keep bandwidth usage low. Only actionable flow data is forwarded to the Security Onion sensor with Profitap Network
Packet Brokers.
4. Easily identify network security breaches and suspicious behavior through traditional detection and response as well as
threat hunting.
Company Information
Profitap develops and manufactures a complete range We are the builders of Security Onion, a free Linux
of innovative Network TAPs, Network Packet Brokers distribution for threat hunting, enterprise security
and Field Service Troubleshooters for security, forensics, monitoring, and log management. It includes Suricata,
deep packet capture and network performance Zeek, Wazuh, the Elastic Stack, and many other
monitoring sectors. All their network monitoring tools security tools. Security Onion Solutions offers hardware
are highly performant and user-friendly, providing appliances, support, and professional services centered
complete visibility and access to your network, 24/7. around the Security Onion platform, and is the only
With a non-intrusive and fail-safe design, Profitap provider of official Security Onion training.
network analysis and traffic acquisition solutions send
all the data to your security appliances so that your Follow us on Twitter @securityonion
team can easily prevent and analyze cyberthreats. or on the web at https://securityonionsolutions.com
BRINGING CLARITY
INTO YOUR NETWORKS.
Profitap develops and manufactures hardware and
PROFITAP HQ B.V.
HIGH TECH CAMPUS 9
5656 AE EINDHOVEN
THE NETHERLANDS
[email protected]
www.Profitap.com
Profitap
@Profitap
Profitap-international