|

This paper explores two disparate insider threat scenarios: passing information to a competitor, and detecting and managing collaborative activities in a low-tech incident. The paper then presents the features and benefits of ArcSight ESM, demonstrating that detection, investigation, response and incident management are all critical features of a strong insider threat initiative.
|