New SIEM integrations expand Druva’s security ecosystem to accelerate threat remediation
Druva, the leading provider of data security, today announced new and enhanced integrations with Palo Alto Networks, Splunk, and Sumo Logic to incorporate backup data telemetry directly into security operations tools. With these integrations, IT and security teams can now augment their Security Information and Event Management (SIEM) and extended detection and response (XDR) tools with backup data insights to strengthen incident response (IR) workflows. Druva’s extensive integration ecosystem delivers deeper visibility into data anomalies and empowers customers to actively leverage backup data to respond to and recover from cyber threats.
Also Read: The Arbitrage Opportunity of Small Language Models: Unlocking AI Efficiency and Performance
“Druva’s integration ecosystem helps extend the comprehensive protection offered by its fully managed Data Security Cloud, enabling customers to integrate backup data into security data workflows for even faster threat detection and response.”
Nearly every ransomware attack last year targeted backup data. However, backup data is often siloed from broader security operations, making it difficult for security teams to detect, investigate, and respond to cyber threats effectively. By integrating backup telemetry into SIEM and XDR platforms, Druva bridges the gap between IT and security teams. Having end-to-end visibility across user activities, application logs, and backup telemetry enables accurate, faster threat detection and reduces the risk of data loss. With SIEM visibility combined with Druva’s proprietary Managed Data Detection and Response, businesses can also improve compliance with regulatory requirements and expedite time to insight for auditing purposes.
Also Read: Ensuring High Availability in a Multi-Cloud Environment: Lessons from the CrowdStrike Outage
“Security teams don’t just need a wealth of data to defend against cyber threats, they need real-time, actionable insights to filter out the noise,” said Shankar Subramaniam, VP & GM of Security at Druva. “Druva’s enhanced integrations with Palo Alto Networks, Splunk, and Sumo Logic enable security teams to get end-to-end insights so they can accelerate incident response and mitigate threats before they escalate into a full-blown crisis. We’re constantly working to help customers safeguard their data, and our integrations should help reduce the business disruption caused by cyber attacks.”
Also Read: The Arbitrage Opportunity of Small Language Models: Unlocking AI Efficiency and Performance
Druva’s integrations with industry-leading SIEM platforms offers comprehensive threat monitoring and faster IR by incorporating backup data into security workflows. This enables security teams to benefit from:
- Real-Time Event Ingestion: Streamlines the collection of backup-related events, such as data access and file changes, to accelerate detection of threats.
- Streamlined Incident Correlation: Automates incident management to identify, escalate, and remediate threats faster, as well as correlate backup events with security data to improve IR.
- Bidirectional Remediation Actions: Leverages SIEM capabilities to quarantine compromised snapshots and initiate data restores directly from backups for faster remediation and minimal downtime.
- Enhanced Compliance and Reporting Support: Provides deep visibility into backup events to help meet regulatory and audit requirements.
Druva’s holistic approach to data security is designed to strengthen organizational cyber resilience, ensuring that backup data is continuously protected from emerging threats—without requiring separate security measures. These latest integrations complement Druva’s comprehensive set of partner integrations, which includes integrations with Microsoft, Okta, and ServiceNow.
“Organizations need a cohesive infrastructure of cyber and data security technologies to effectively keep threats at bay,” said Justin Iwaniszyn, Director, New and Emerging Alliances at GuidePoint Security. “Druva’s integration ecosystem helps extend the comprehensive protection offered by its fully managed Data Security Cloud, enabling customers to integrate backup data into security data workflows for even faster threat detection and response.”
[To share your insights with us as part of editorial or sponsored content, please write to psen@itechseries.com]