ArcSight - Protect Your Business

Technology Partner Finder

ArcSight Technology Partner Finder

Search the ArcSight Technology Partner Database to find a technology partner that will meet your needs.

         

Complete list of Supported Products

AirPatrol

AirPatrol is the first cognitive mobile security company whose technology provides wireless situational awareness by continuously monitoring any mobile device, cellular or Wi-Fi, in an enterprise, determine compliance with security policy, enforce the appropriate policy in real-time and dynamically empower capabilities for the situation. AirPatrol offers a comprehensive suite of location-based solutions that enable clients in the government, corporate and other sectors to keep pace with the expanding security requirements of an increasingly mobile world.

Website    

Application Security

DbProtect, from Application Security, Inc. , proactively secures enterprise databases at hundreds of enterprises and government agencies worldwide. Our security experts, combined with our strong support team, deliver up-to-date database protection that minimizes risk and allows organizations to confidently connect with customers, partners, and suppliers. DbProtect’s network-based, vulnerability assessment scanner enhances the ArcSight solution by discovering database applications within your infrastructure, assessing security strength and prioritizing database vulnerability risks for remediation.

Website    

Arxan

Arxan Technologies is a leading provider of software security solutions that protects applications from attack in distributed or un-trusted environments. By integrating Arxan’s real-time security checks and tamper alerts into the ArcSight platform, users benefit from immediate detection and notification of external or internal attempts to tamper with software assets or steal intellectual property. ArcSight customers can then gain a deep view into app integrity to better manage overall data and application security.

Website    

Bit9

Bit9 is the leader in advanced threat protection. Bit9 Parity for ArcSight ESM brings total visibility and control over all endpoint resources including the registry, file system, memory, portable storage devices, as well as applications, protecting the resources most commonly targeted by advanced threats. Unique endpoint security events generated by Bit9 Parity’s threat detection and prevention capabilities are correlated within ArcSight ESM to deliver end to end risk and threat management.

Website    

CORE Security

CORE Security is the leading provider of predictive security intelligence solutions for enterprises and government organizations. We help more than 1,400 customers worldwide preempt critical security threats throughout their IT environments, and communicate the risk the threats pose to the business.  Our patented, proven, award-winning enterprise solutions are backed by more than 15 years of applied expertise from CoreLabs, the company’s innovative security research center.

Website    

Cyber-Ark

Cyber-Ark® Software is a global information security company that specializes in protecting and managing privileged users, applications and highly-sensitive information to improve compliance and protect organizations against insider threats. Cyber-Ark’s Privileged Identity Management Suite is integrated with the ArcSight SIEM platform to monitor and archive all privileged account management activities and correlate these alerts with other real-time threats coming from the rest of the enterprise, and identify the critical security incidents that have the largest business impact/risk.

Website     Solution Brief    

Damballa

Pioneering the fight against cybercrime, Damballa provides the only network security solution that detects the remote control communication criminals use to breach networks to steal personal and intellectual information, and conduct espionage or other fraudulent transactions. ArcSight customers can correlate Damballa alerts with other activity in ArcSight ESM to gain better visibility into threats and risks. Damballa solutions are platform and system-agnostic, protecting any network with any device - PCs, Macs, mobile or embedded.

Website    

F5

F5 is the global leader in Application Delivery Networking, enabling customers to realize the full value of virtualization, cloud computing, and on-demand IT. F5 solutions optimize network, server, and storage environments to ensure the highest levels of performance, security, and availability at the lowest possible cost. F5 provides strategic points of control throughout the IT infrastructure, helping organizations scale, adapt, and align with changing demands and drive business forward on a solid foundation of agility.

Website    

FairWarning

FairWarning® is a global leader in appliance-based software solutions which monitor and protect patient privacy in electronic health records.  Customers consider FairWarning® essential for compliance with healthcare privacy regulations such as ARRA HITECH privacy and meaningful use, HIPAA, EU Data Protection, UK Freedom of Information Act, California SB 541 and AB 211, and Canadian privacy law. FairWarning® and ArcSight SIEM provide cooperative correlation for end-to-end analysis of patient privacy incidents. 

Website    

Fidelis

Fidelis Security Systems provides organizations with the power to protect their sensitive information from data breaches and sophisticated cyber attacks. Built on a patented Deep Session Inspection™ platform, the Fidelis Extrusion Prevention System® gives commercial enterprise and government organizations total visibility and control over network activities at the protocol, application, payload, content and threat intelligence levels. The Fidelis XPS products can send alert information to ArcSight ESM in CEF format.

Website    

FireEye

FireEye, Inc. is the leader in malware protection systems and next-generation threat prevention to safeguard sensitive data and networks against Modern Malware infiltration. ArcSight customers can incorporate FireEye’s dynamic malware analysis and intelligence into the ArcSight platform and its built-in workflow engine to better prioritize risk mitigation activities. Real-time, signature-less detection is crucial to combat today’s zero-hour attacks and advanced persistent threats from compromising sensitive customer data and intellectual property.

Website    

ForeScout

ForeScout is the leading provider of network access control (NAC) and policy compliance management solutions.  ForeScout’s products interoperate with ArcSight SIEM platform by providing detailed information about endpoint configuration and security posture.  ForeScout provides both low-level information (who, what, where) and high-level information (compliance status) about endpoints to ArcSight. This allows organizations using ArcSight to make better, faster, and more informed decisions around endpoint related security risks and compliance violations.

Website     Solution Brief    

Guidance Software

Guidance Software, the maker of EnCase®, is the leading provider of digital investigative solutions. EnCase® solutions enable customers to conduct thorough, network-enabled, computer investigations such as computer incident response, electronic discovery or fraud and HR investigations with judicially accepted results. ArcSight customers can leverage powerful incident response capabilities of EnCase Cybersecurity to automate the response process, capturing critical endpoint data the moment alerts are generated — significantly reducing the time and costs associated with incident response.

Website    

HBGary

HBGary, Inc. was founded in 2003 to develop products to detect and counter APT and other unknown cyberthreats. HBGary has in-depth expertise in advanced malware, rootkits, zero-day exploits, and targeted threats. Customers include Fortune 500 corporations, DOD and other U.S. government agencies. HBGary, Inc. is headquartered in Sacramento, Calif. with offices in the Washington D.C. area.

Website    

IBM

IBM InfoSphere Guardium provides the simplest, most robust solution for preventing database breaches and unauthorized changes.  IBM’s scalable platform simplifies information governance and compliance with unified policies for heterogeneous infrastructures.  Capabilities include: real-time database activity monitoring; blocking; vulnerability and configuration management; application-layer monitoring; and automated compliance reporting and oversight. To further strengthen protection, InfoSphere Guardium is integrated with ArcSight, enabling critical database security information to be incorporated in broader security monitoring and analysis activities.

Website    

Imperva

Imperva is the global leader in data security. Thousands of the world’s premier organizations rely on Imperva’s solutions to prevent data breaches, meet compliance mandates, and manage data risk. Imperva has achieved certification from ArcSight for its Common Event Format (CEF)-compliant integration. Imperva SecureSphere Web, Database, and File Security solutions, when coupled with the ArcSight SIEM, provide an enterprise-wide view of security threats, privileged user activity, and data risk management analytics.

Website    

Lancope

Lancope is the leader in flow-based network performance and security monitoring. By collecting and analyzing NetFlow, Lancope provides actionable insight to maintain high-performing, secure enterprise networks. Lancope’s StealthWatch integrates seamlessly with the ArcSight platform, providing an added dimension for security analytics when investigating incidents. StealthWatch provides ArcSight users cost-effective network and security monitoring; deeper visibility into traffic data for forensic analysis; and faster troubleshooting and root cause analysis.

Website    

Lieberman Software

Lieberman Software is the pioneer of privileged identity management. Lieberman’s ArcSight integration provides constant feeds to the ArcSight ESM system of all privileged identity activities including: password check-ins/check-outs, password verifications, password changes, failed and successful propagations and more. By correlating data generated by the Lieberman Software product, customers of the ArcSight system can demonstrate a competent understanding of how sensitive systems are being used and by whom, and for what reasons.

Website    

McAfee

McAfee is the world’s largest dedicated security technology company. McAfee relentlessly tackles the toughest security challenges to deliver solutions that enable consumers and businesses to combat known and emerging threats. ArcSight collectors pull in events from a wide range of McAfee products. The bi-directional integration between ArcSight ESM and McAfee® ePolicy Orchestrator® (McAfee ePO™) helps bridge the gap between event monitoring and incident response. The integration enables security administrators to respond to incidents with prioritized and targeted countermeasures, reducing operational costs and improving security and compliance.

Website     Case Study

Narus

Narus is a global leader in real-time traffic intelligence for protection and management of large IP networks. NarusInsight detects anomalous traffic, analyzes traffic to find bottlenecks and report on legitimate and illegitimate applications on the network. Operation managers can now spot zero-day attacks and advanced persistent threats well before other systems. The combination of NarusInsight with ArcSight, results in far greater insight into the network as well as an increased ability to protect it.

Website     Solution Brief    

NetScout

NetScout® is the market leader in Unified Service Delivery Management that automates and improves awareness to assure user experience and service quality. CEF certified for integration into ArcSight platforms, the nGenius® Service Assurance solution detects anomalies and policy violations to identify cyberthreats and risk across physical and virtual environments. Leveraging powerful deep packet analysis capabilities, the integration delivers a broad-range of rich and trusted early warning alerts with cross-linked data enabling staff to perform granular on-demand forensic analysis of a specific event reducing analysis time and accelerating incident response and remediation.

Website    

NIKSUN

NIKSUN, Inc. is the recognized worldwide leader in developing and deploying a complete range of award-winning forensics, compliance, security surveillance and performance management solutions for applications ranging from branch offices to core infrastructure environments. NIKSUN’s adoption of CEF enables seamless interoperability of information from NIKSUN NetDetector with ArcSight Enterprise Security Manager (ESM), for enterprise-wide correlation of security threats and forensic incident investigation. Several Fortune 1000 enterprise and government customers are already taking advantage of this interoperability to quickly and easily connect to aggregate, filter, correlate and analyze events.

Website    

nPulse

nPulse Technologies is the performance leader in packet capture, replay, and analysis.  Our flagship product, HammerHead, delivers cost-effective, distributed flow-indexed packet capture at ultrafast speeds up to 20Gbps.  HammerHead is used today by leading financial institutions, government agencies, and telcos to reduce time to resolution and enhance historical analysis for network and security operations.  Through its innovative Pivot2Pcap API, HammerHead significantly extends the visibility of existing monitoring and security solutions.

Website    

Palo Alto Networks

Palo Alto Networks delivers the next-generation firewall that provides policy-based visibility and control over applications, users and threats.  These fine-grained policy management and enforcement capabilities are delivered at low latency, multi-gigabit performance with the company¹s innovative Single Pass Parallel Processing (SP3) Architecture.  Arcsight customers can now directly integrate Palo Alto’s extensive data to provide unprecedented multi-dimensional correlation capabilities to better enable the secure use of new enterprise applications while managing the inherent risks.

Website    

Ping Identity

Ping Identity is the market leader in Internet Identity Security, delivering on-premise software and on-demand services for Internet Single Sign-On (SSO), Identity-Enabled Web Services and Internet User Account Management. ArcSight users can now integrate Ping logging data into the ArcSight platform so that they can correlate Cloud usage reports and track when users are accessing unauthorized applications, violating role limitations, or creating undue business risk. ArcSight solutions can then produce complete activity reports that cross internal and Cloud-based systems, making audits faster, easier and less costly.

Website    

Rapid7

Rapid7 is the leading provider of unified vulnerability management and penetration testing solutions, delivering actionable intelligence about an organization’s entire IT environment. Via the ArcSight SmartConnector, ArcSight users can automatically import comprehensive vulnerability scan assessment information from Rapid7’s award-winning vulnerability management solution NeXpose into the ArcSight System to achieve full visibility into their network by knowing their risk and managing network activity.

Website    

RedCloud

RedCloud provides web-based facility access control solutions integrated with logical security systems to deliver enhanced situational awareness/response capabilities. RedCloud Convergence Platform supports a CEF integration to enable ArcSight customers to achieve improved security by adding real-time knowledge about facilities and people whereabouts to the ArcSight ESM monitoring environment. Customers can respond to cyber threats by executing manual or automated commands from ArcSight ESM to control doors, call up security video, and change access privileges in the physical domain.

Website    

Sourcefire

Sourcefire, Inc., a world leader in intelligent Cybersecurity solutions, is transforming the way government agencies manage and minimize network security risks. Sourcefire’s IPS, Real-time Network Awareness and Real-time Adaptive Security solutions equip customers with an efficient and effective layered security defense - protecting network assets before, during and after an attack.

Website    

Stonesoft

Stonesoft is an innovative provider of integrated network security solutions to secure the information flow of distributed organizations. Stonesoft customers include enterprises requiring advanced network security and always-on business connectivity. StoneGate™ Secure Connectivity Solution unifies Firewall/VPN, IPS and SSL VPN blending network security, end-to-end availability and load balancing into a unified and centrally managed system. Those products send their logs to StoneGate Log Server that can be configured to forward the logs to ArcSight in CEF format.

Website    

Thycotic Software

Thycotic Software, Ltd. is a Washington, DC-based company committed to providing secure password management solutions.  From managing privileged accounts to Active Directory self-service resets, our software securely manages all credentials critical to your organization’s operations. Thycotic’s Secret Server integrates with the ArcSight SIRM platform to correlate and alert administrators of specific events that occur within their systems. These events (user lockout, heartbeat failure, etc.) are logged with different alert levels depending on their severity.

Website    

Triumfant

Triumfant continuously monitors endpoint machines and leverages patented analytics to detect, catalog, correlate, analyze and assess changes to those machines to identify and remediate anomalous, exceptional and potentially malicious activity.  Triumfant uses an ArcSight certified CEF integration to provide ArcSight data about detected incidents and to leverage Triumfant’s comprehensive endpoint state data.  This integration provides invaluable insight into the endpoint population to enhance and extend the value of their ArcSight implementations.

Website    

XYPRO

XYPRO Technology Corporation is the market leader in HP NonStop server security, audit, compliance, and FIPS-validated encryption solutions. XYPRO helps businesses to better mitigate security risks, protect assets and gain a competitive edge through compliance while improving efficiency. Through the partnership with ArcSight, XYPRO enables NonStop users to feed their NonStop audit and event data into the ArcSight ETRM to get a complete view of their enterprise audit data.

Website