The Anomali Platform Advances Intelligence-Driven Detection and Response Capabilities and Prevents Business Disruptions While Optimizing Security Expense
15.9.2022 02:46:00 EEST | Business Wire | Press release
Anomali, the leader in intelligence-driven cybersecurity solutions, announced the general availability today of its quarterly platform update to meet the expanding needs of its customers and partners. This release introduces new capabilities to enhance Anomali’s threat intelligence and extended detection and response (XDR) use cases that enable enterprise organizations to stay one step ahead of adversaries and prevent business disruptions while optimizing security expenses.
“Anomali’s August release offers new capabilities and enhancements for security operations teams struggling to identify not only who’s targeting them, but how and why they are being targeted,” said Mark Alba, Chief Product Officer at Anomali.
Key highlights of this release include:
Creating Extended Visibility with Anomali Attack Pattern Detection and MITRE ATT&CK®: In 2021, Anomali joined MITRE Engenuity’s Center for Threat-Informed Defense to collaborate on the Attack Flow Project to better understand adversary behavior and improve defensive capabilities. This partnership culminated with the public release of the project in March 2022.
Since then, Anomali has been working to incorporate attack flows into The Anomali Platform. This release moves the platform toward an Attack Flow Library for Anomali ThreatStream that will provide an access point for new Attack Flows that sequence cyberattack techniques. This capability will provide a new context around adversary behavior and help security teams expertly profile the adversary. It will also enable them better to protect the organization in advance of an attack, detect an attack in real-time, and respond post-attack.
Furthermore, this predictive visual mapping will be leveraged by CISOs and security professionals to align attacks with potential holes in their security posture to get in front of the threat.
“ESG research found that 97% of security professionals believe that MITRE ATT&CK is important to their organization’s security operations strategy,” said Jon Oltsik, Senior Principal Analyst and Fellow, ESG Research. “Anomali’s commitment to integrating the MITRE ATT&CK Framework into its solutions and participating in the MITRE Engenuity Center for Threat Informed Defense can help security teams adopt the framework and better understand cyber-adversaries.”
Routine Workflow Automation: Given macro-economic conditions, customers are looking for capabilities that make their existing investments more impactful. We’ve introduced a new extensible framework to support the automation of routine tasks throughout the platform. This release's first implementation is available to automate enrichments in the investigations workbench. A drag-and-drop process for configuring a multi-stage enrichment task can easily be set and run when conditions require it, saving analysts time performing repetitive tasks.
Additional enhancements with this platform release include:
- Support for MITRE ATT&CK Mobile & ICS: Intelligence aggregation, contextualization, and analysis for Mobile and ICS attack surfaces to strengthen overall security posture.
- MITRE ATT&CK Enterprise v11 in Anomali Lens
- Scheduled Retrospective Search: Helps the SOC automate the correlation of historical events with newly available intelligence to produce reports and gain insight into threat actors, TTPs, or other adversary behavior. This new capability enables CISOs to detect real-time threats in their local IT environment.
Anomali will be exhibiting at BlackHat on August 10 & 11, Booth #3034. Stop by to chat with the team and learn more about our intelligence-driven solutions.
About Anomali
Anomali is the leader in intelligence-driven extended detection and response (XDR) cybersecurity solutions. Anchored by big data management (the “X”) and refined by artificial intelligence, The Anomali Platform, an XDR solution, delivers unique proprietary capabilities that correlate the largest repository of global intelligence with telemetry from customer-deployed security solutions. This combination empowers security operations teams to accurately detect threats, optimize response, achieve resiliency, and ultimately stop attackers and breaches. Our SaaS-based solutions easily integrate into existing security tech stacks through native-cloud, multi-cloud, on-premises, and hybrid deployments. Founded in 2013, Anomali serves global B2B enterprise businesses, large public sector organizations, ISACs, ISAOs, service providers, and Global 1000 customers to help safeguard the world’s critical infrastructure, companies, and people. Leading venture firms, including Google Ventures, General Catalyst, and IVP, back Anomali. Learn more at www.anomali.com.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20220808005789/en/
Contact information
Karen Buffo
news@anomali.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network28.9.2026 11:00:00 EEST | Press release
Horizon3, the AI-Native Proactive Security Company, today announced that it has earned Cyber Essentials Plus certification covering its NodeZero AWS EU network. The network supports Horizon3’s EU data sovereignty site in Germany. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928143792/en/ Horizon3 Earns Cyber Essentials Certification Covering NodeZero EU Network Organizations use NodeZero® to test production environments and find weaknesses attackers can exploit. When customers and partners assess the platform itself, they also need to understand the security standards applied to its supporting infrastructure. The Cyber Essentials certificate identifies a defined portion of that infrastructure and the baseline against which it was assessed. Developed by the UK’s National Cyber Security Centre, Cyber Essentials addresses five foundational controls: firewalls, secure configuration, security updates, user access control, an
Thales Expands Collaboration with Google Cloud to Help Secure Agentic AI Workflows28.9.2026 10:03:00 EEST | Press release
Thales today announced an expanded collaboration with Google Cloud to help enterprises address emerging security and governance challenges associated with agentic AI, bringing integrated protection, visibility, and policy enforcement to AI-driven workflows on Google Cloud. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260928647188/en/ ©Thales The integration of Thales AI Security Fabric with Google Cloud Gemini Enterprise helps organizations apply security, governance, and visibility across interactions among users, agents, models, and tools in real time. “Enterprises are moving from AI assistants to AI agents that can autonomously take action, make decisions, and interact with critical business systems. This requires a fundamentally different approach to security,” Eva Rudin, Senior Vice President, Cybersecurity Products, at Thales, said.“By expanding our collaboration with Google Cloud, we are helping organizations build
SPORVIGILANCE Targets Safer Medicines and Billion-Euro Savings for Global Pharma Facing EU IDMP Fines28.9.2026 09:13:00 EEST | Press release
British regulatory technology company SPORVIGILANCE is targeting one of global pharma’s major compliance challenges with a platform offering a faster route to IDMP and SPOR readiness, compliance and governance. As the European Medicines Agency advances structured medicinal product data, companies face pressure to keep regulatory data accurate, standardised and aligned with EMA requirements. SPORVIGILANCE replaces fragmented manual assessment with a regulatory intelligence layer built around IDMP, SPOR and Product Management Service (PMS) requirements. At its core is an IDMP Business Rule Validation Engine that assesses medicinal product data at scale and at field level, identifying missing, inconsistent and non-compliant data. SPORVIGILANCE is the only platform to translate IDMP business rules directly into automated validation logic, enabling companies to test data against the rules rather than rely on manual interpretation. Its PMS Alignment capability reconciles internal RIM data ag
Sofinnova Partners Closes Oversubscribed €82 Million Sofinnova MD Start IV Fund to Create the Next Generation of Medtech Companies28.9.2026 09:00:00 EEST | Press release
Sofinnova Partners ("Sofinnova"), a leading European life sciences venture capital firm based in Paris, London, and Milan, today announced the final close of Sofinnova MD Start IV at €82 million. The fund, which was oversubscribed, will help expand Sofinnova's medtech company-creation strategy across Europe and the US with greater capacity to launch new ventures and support them through key stages of development. With plans to launch six to eight new medtech companies over the next five years, Sofinnova MD Start IV will support ventures from inception through key clinical and operational milestones, providing founders with both capital and hands-on support. Sofinnova MD Start's approach combines clinical insight, entrepreneurial talent, and operational expertise to tackle significant unmet medical needs. The previous fund, Sofinnova MD Start III, a €63 million fund, invested across six companies that have collectively raised more than €140 million in follow-on financing. Sofinnova MD S
Ant International’s Antom Upgrades Southeast Asia Leadership Structure to Drive Regional Synergy in the AI Era28.9.2026 08:18:00 EEST | Press release
Antom, a leading merchant payment and digitisation services provider under Ant International, today announced a series of key appointments for its operations in Southeast Asia to further strengthen the synergy among its regional brands and better serve regional merchants with streamlined full-stack AI-native solutions. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260927431282/en/ Nabilah Alsagoff, co-founder and former chief operating officer of DOKU, Indonesia's leading payment fintech company, has been appointed as Head of Product, Antom SEA. In her new role, the payment veteran will oversee product development and innovation and drive a unified product roadmap for the overall SEA region. Chris Yeo, former chief executive officer (CEO) of DOKU, will take on the role as Head of Antom Philippines, and Country Head of 2C2P Philippines. With his long experience at DOKU, Grab and PayPal, Chris will also oversee the execution
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
