We are pleased to announce the general availability of ArcSight User Behavior Analytics 6.10 (UBA 6.10). Powered by the Securonix Snypr platform, UBA 6.10 introduces the use of big data security analytics based on Hadoop to improve identification of insider threats. Other key new features available in 6.10 include:
- Consumption of Events from ArcSight Event Broker
- A Cloud solution for collecting and analyzing activity from Cloud services
- Security Command Center for a real-time view of insider threats
- Improved search functionality and performance from the UBA interface
ArcSight UBA connects directly to your identity and HR repositories, as well as customized, non-traditional identity information from flat files or exports, aggregating all identity information under a single user
ArcSight UBA ingests event information from the SIEM infrastructure, including from ArcSight SmartConnectors, Loggers, or Event Brokers.
Combining these sources of data with analytics, ArcSight UBA identifies and prioritizes user related threats. Additionally, ArcSight UBA is integrated into the SOC workflow, feeding user centric violations, both behavior based and policy based, back into ArcSight ADP.
UBA 6.10 documentation can be found on Protect724 here: https://community.softwaregrp.com/t5/User-Behavior-Analytics-UBA/tkb-p/hp-user-behavior-analytics
UBA 5 customers desiring to move to UBA 6.10 should plan to operate both environments in parallel for 30-days before decommissioning their UBA 5 environment. Existing UBA Premium customers will need to acquire new license keys in order to obtain the Cloud solution.
Please reach out to your Micro Focus account representative for more information.