AlphaSOC, a security and surveillance analytics tools company, has announced the AlphaSOC Analytics Engine (AE) network traffic analysis (NTA) product to help security teams identify compromised cloud workloads.With AlphaSOC AE, security teams can process network flow and DNS query logs within Amazon Web Services (AWS), Microsoft Azure and Google Cloud Platform, the company said. They also can leverage machine learning, prevalence scoring and active analysis to identify cyber threats.AlphaSOC AE provides unified threat detection that multi-cloud customers can use to identify and remediate security gaps, the company noted. The solution helps security teams reduce their time-to-fix and remediation efforts by more than 200%. It also reduces the number of false positives by up to 90% in comparison to legacy intrusion detection system (IDS) and NTA systems.
How AlphaSOC AE Works
AlphaSOC AE utilizes three layers to help security teams uncover cyber threats:- Active Fingerprinting fingerprints destinations to identify command and control infrastructure in real time.
- Reputation Scoring utilizes third-party APIs to gather live reputation data that highlight suspicious low-reputation destinations.
- Prevalence Scoring tracks the prevalence of cyber threats across customer environments to uncover traffic patterns to rare destinations and flags risky connections.




