TMCnet News

FireEye and Quantum team to streamline adoption of cybersecurity forensics solutions
[July 24, 2014]

FireEye and Quantum team to streamline adoption of cybersecurity forensics solutions


(Cision Via Acquire Media NewsEdge) New partnership enables enterprises to easily conduct cybersecurity investigations and improve security against advanced attacks LONDON., 24 July 2014 – Quantum Corp. (NYSE: QTM) today announced the integration of the FireEye Network Forensics Platform (PX) with Quantum’s StorNext®  (http://www.stornext.com/)scale-out storage. Combining high-speed packet indexing and search from FireEye (NASDAQ: FEYE) with scale-out storage from Quantum, the joint solution provides organisations with access to months of network traffic data to quickly conduct incident response in the event of a breach.



Threat groups are active in an organisation’s network for a median of 229 days, and conducting incident response can involve costly forensic analysis of disparate log files and network data to determine the extent of the breach. In certain instances, organisations without robust network forensics may never fully know what data left the network, how they were compromised, or whether they have fully removed the threat actor.

The joint FireEye-Quantum solution utilises the FireEye Network Forensics Platform to capture, index and store connection and packet information at up to 30 million packets per second. Quantum’s StorNext 5 (http://www.quantum.com/stornext), the industry’s fastest streaming file system, provides the high-performance, scale-out storage repository for forensic data generated by the FireEye platform along with policy -based tiering that enables organisations to match the cost of storage to their need for data access during forensic analysis.


This ability to capture network traffic data in real-time and preserve it for network forensics is critical to resolving a cyber attack. Examining full packet data allows investigators to understand attackers’ tools, techniques and procedures, enabling them to improve their network defenses and assist others via threat intelligence sharing. According to the Ponemon Institute, incident response takes approximately four months, on average, to resolve an attack. In contrast, by allowing organisations to keep forensic data longer and examine it faster, the joint FireEye-Quantum solution is designed to give incident response teams the ability to resolve attacks in much less time – as little as days or hours.

Supporting quotes Jon Oltsik, senior principal analyst, Enterprise Strategy Group “As the sophistication of cyber attacks increases, the ability to analyse the intrusion, contain it, and quickly recover is more critical than ever. By combining their respective expertise with FireEye network forensics and StorNext storage workflows, FireEye and Quantum are offering customers an integrated cybersecurity solution for incident investigation, which can also reduce mean time to resolution and prevent future incidents.” Tim Sullivan, vice president, Enterprise Forensics, FireEye “We know today the overwhelming majority of organisations have some malicious code in their networks. Given this, what’s most important is the ability to understand how that malicious code behaved and if threat actors were able to remove any valuable information from a network. The joint solution from FireEye and Quantum provides customers with the storage, indexing and search capabilities to create a detailed forensics report so an incident response team can quickly determine the extent of a data breach to remediate and provide a detailed report to protect against future attacks. It also provides the reassurance that company boards are looking for and should be a core part of the modern security infrastructure.” Geoff Stedman, senior vice president, StorNext Solutions, Quantum “Network forensics is becoming an increasingly important tool for cyber incident response, and effective network forensics workflows have two essential ingredients: high-speed packet indexing and highly scalable storage for preserving the network traffic data. Through our partnership with FireEye, a broader range of customers can now benefit from Quantum’s expertise in information workflows and StorNext’s unique combination of industry-leading performance and scale-out tiered storage.” Availability The combined FireEye-Quantum solution is currently available.

Additional resources · For a solution brief outlining the FireEye-Quantum approach to network forensics challenges, go to http://qntm.co/cybersecuritybrief · For more information about the joint FireEye-Quantum approach to network forensics, go to: www.quantum.com/cybersecurity Contact details Joanna Clark [email protected] 44 (0)20 7403 8878 www.rlyl.com About Quantum Quantum is a leading expert in scale-out storage, archive and data protection. Its StorNext 5 solutions power modern workflows, enabling high-performance, real-time collaboration and keeping content readily accessible for future use and re -monetisation. More than 100,000 customers have trusted Quantum to address their most demanding content workflow needs, including top studios, major broadcasters and new, cutting-edge content creators. With Quantum, customers can Be Certain™ they have the end-to-end storage platform to manage assets from ingest through finishing, and into delivery and long-term preservation. See how at www.quantum.com/customerstories.

This information was brought to you by Cision http://news.cision.comhttp://news.cision.com/quantum/r/fireeye-and-quantum-team-to-streamline-adoption-of-cybersecurity-forensics-solutions,c9620398 (c) 2014 Cision. All Rights Reserved.

[ Back To TMCnet.com's Homepage ]