Nozomi Networks and Mandiant Partner to Deliver an Integrated Solution for Threat Detection and Response Across OT, IT, and IoT Environments

Published:

Nozomi Networks Unveils TI Expansion Pack: A New Era in OT and IoT Security

In an age where cyber threats are becoming increasingly sophisticated and pervasive, Nozomi Networks has taken a significant step forward in enhancing the security of operational technology (OT) and Internet of Things (IoT) systems. On Wednesday, the company announced the general availability of the Nozomi TI Expansion Pack, a groundbreaking solution powered by Mandiant Threat Intelligence. This federated solution is designed to help Chief Information Security Officers (CISOs) and their teams better anticipate, diagnose, and respond to cyber threats that could jeopardize critical business operations.

Strengthening Cybersecurity Posture

The Nozomi TI Expansion Pack allows customers to enrich their existing threat intelligence with Mandiant’s renowned capabilities, providing comprehensive access to real-time information about threats targeting IT, OT, and IoT systems. Edgard Capdevielle, CEO of Nozomi Networks, emphasized the urgency of this development, stating, “The cybersecurity threat landscape is rapidly evolving, with attacks growing in both number and impact enterprise-wide.” He underscored the necessity for CISOs to have comprehensive solutions that enable swift assessment and response to threats across all systems.

A Partnership Built on Expertise

The collaboration between Nozomi Networks and Mandiant is not new; it has been nearly a decade in the making. Melissa Smith, Head of Strategy & Technology Partnerships at Google Cloud, highlighted the importance of this partnership, stating, “This latest expansion is another critical step in our journey to combine threat intelligence sources and defenses.” By merging Mandiant’s threat intelligence with Nozomi Networks’ OT threat intelligence and tools, organizations can significantly enhance their threat intelligence capabilities and investigations, thereby fortifying their defenses against cyber threats.

Comprehensive Threat Intelligence

With the introduction of the Nozomi TI Expansion Pack, customers can now access an integrated threat feed that combines the extensive threat intelligence from Mandiant with Nozomi Networks’ specialized OT intelligence. This integration allows organizations to gain a deeper understanding of the IT threat landscape, enabling them to monitor and respond to emerging threats more effectively. The holistic approach to threat management ensures that organizations can achieve the strongest possible security outcomes.

Vantage Threat Cards: Revolutionizing Threat Intelligence Access

In addition to the TI Expansion Pack, Nozomi Networks also announced Vantage Threat Cards, a new feature within their cloud-based OT/IoT cyber management console, Nozomi Vantage. These cards transform the way users access and derive value from threat intelligence feeds. By logically clustering and organizing threat data, Vantage Threat Cards provide instant access to critical information, including threat descriptions, exploitation status, targeted industries, and mitigation suggestions.

Users can filter threats based on specific countries and regions, ensuring they receive the most relevant information tailored to their needs. This capability empowers OT and IoT cyber teams to quickly scan and filter key threat information, significantly speeding up response times and enhancing accuracy. Analysts can easily input an IP address, domain name, hash, or threat actor alias to identify associated rules, streamlining the identification process.

Enhanced Vulnerability Management

The integration of Mandiant Threat Intelligence extends throughout the Vantage solution, enhancing the overall offering. Updates to vulnerability data now include improved Common Vulnerability Scoring System (CVSS) mapping, detailed summaries, lists of vulnerable products, and links back to Threat Cards and malware groups. These enhancements ensure comprehensive coverage and deeper insights into vulnerabilities, enabling more effective threat management.

Availability and Future Prospects

The Nozomi TI Expansion Pack is now available for customers utilizing Nozomi Networks’ on-premises and cloud-based monitoring solutions. Vantage customers will benefit from the new threat intelligence feed through the innovative Nozomi Threat Cards. This development marks a significant milestone in the ongoing evolution of cybersecurity solutions for critical infrastructure.

In a related development, Nozomi Networks recently formalized a partnership with Schweitzer Engineering Laboratories (SEL), establishing a reseller agreement and certification of expertise for Nozomi Networks’ software. This collaboration aims to enhance network assets, traffic visibility, and threat detection for utility and industrial control systems, further solidifying Nozomi Networks’ position as a leader in OT and IoT security.

Conclusion

As cyber threats continue to escalate in both frequency and complexity, the Nozomi TI Expansion Pack represents a vital advancement in the field of cybersecurity. By integrating Mandiant Threat Intelligence with its existing solutions, Nozomi Networks is empowering organizations to better protect their critical infrastructure. With tools like Vantage Threat Cards, security teams can access and act on threat intelligence more efficiently than ever before, paving the way for a more resilient future in the face of evolving cyber challenges.

For more information on the Nozomi TI Expansion Pack and its capabilities, visit Nozomi Networks.

Related articles

Recent articles