Know your risk in a matter of minutes.
Use Cases and Deployment Scope
Cisco Secure Network Analytics is used as part of the security stack we have in our organization. With this tool we are able to analyze traffic patterns, identify potential issues, and address threats before they become more than just a warning sign. Through this product we were able to see some rogue actors on the network and get them shut down before they became more of a problem.
Pros
- Ability to quickly see and address rogue actors
- See what type of threats are on the network in a quick manner using the dashboard
- Provide administrative reports to leadership to assist in their decision making process
- See network communications flows between hosts
Cons
- Some of the jobs can be difficult to setup until you know how they were designed
- Unless coupled with other Cisco products, you may not get all of the information you would like to have
- If you have a network that already has many issues it may take a lot of time to see the value in the product; it would take time to weed everything which this product will detect for you to use it to find that needle in the haystack
Likelihood to Recommend
We were experiencing an issue with a specific computer on our network. With the platform we were able to define what other hosts the particular computer was talking to so we could gain a better understanding of what the issue may have been. In this case it was an unpatched machine that needed to have some remediation done to remove the malware. Once this was done, we noticed a dramatic improvement in the performance of the computer and felt better about our investment in the product. Until you get into a situation where the tool is working for you, it may be something you start to second guess on.
