Fortinet introduced major upgrades to FortiAnalyzer, enhancing its ability to deliver faster, smarter SecOps (security operations) through a turnkey hybrid platform designed for midsize enterprises and teams facing cybersecurity talent shortages.
“Security teams today are stretched thin, yet they’re expected to defend against increasingly complex and targeted threats,” said Nirav Shah, Senior Vice President, Products and Solutions at Fortinet. “With the latest advancements in FortiAnalyzer, we’ve eliminated the need for additional SecOps tools, making it the ideal turnkey AI-driven security operations platform supporting on-premises and cloud environments. This is a game-changer for lean security teams, allowing them to enhance threat detection, automate incident response, and streamline critical security operations functions from a single platform.”
The newly enhanced FortiAnalyzer delivers:
- Unified data lake for centralized visibility: Consolidated network and security logs, security analytics, and compliance reporting from across the Fortinet Security Fabric into a single platform view, with enhanced IoT, SOC, email security, and endpoint dashboards offer deeper insights into high-severity incidents, compromised hosts, and vulnerabilities, reducing complexity for security teams.
- Advanced threat detection and AI-powered analysis from FortiGuard Labs: Enriched views with integrated threat intelligence, including the FortiGuard Indicator of Compromise (IoC) and Outbreak Detection subscription help analysts identify and address vulnerabilities faster. FortiAnalyzer built-in AI capabilities automatically identify high-priority alerts and downloads relevant event handlers, correlation rules, and reports to help organizations understand an attack’s background, timeline, affected technologies, and related threat intelligence. These capabilities have been further enhanced through zero-trust network access (ZTNA)-based detections and Safeguarding, which detect harmful content to identify and mitigate emerging threats effectively.
- Automated incident response: New prebuilt SOC automation content packs equip teams with the latest event handlers, playbooks, and third-party log parsers, such as Armis Platform, Microsoft Office 365, and more, enabling security teams to contain and remediate threats with minimal manual intervention.
- Expanded automation connectors: Enhanced native integrations with FortiAuthenticator, FortiSandbox, FortiWeb, FortiMail, and VirusTotal provide more automation actions, reducing response times and improving incident resolution.
- Native integration with the Fortinet Security Fabric: Unified interoperability across Fortinet’s cybersecurity solutions ensures end-to-end protection with AI-driven correlation and actionable insights.
- Third-party device and dynamic SOC service support: Integrations with third-party devices and dynamic SOC services ensure organizations can seamlessly deploy FortiAnalyzer within their existing infrastructure and secure their entire ecosystem with a unified platform.
- Embedded GenAI assistance: FortiAI, the Gen-AI assistant built into the FortiAnalyzer user experience, maximizes the product capabilities, analytics, and telemetry to help security teams supercharge threat investigation and response at the speed of AI.