Orbital Advanced Search

July 9, 2020

SECURITY

Getting more value from your endpoint security tool #4: Querying Tips for IT Operations

Orbital Advanced Search has an entire category dedicated to Posture Assessments which contains queries to check CPU data, network host connections, operating system information, installed programs, and more.

June 19, 2020

SECURITY

Getting more value from your endpoint security tool #3: Querying Tips for Incident Investigation

Cisco Orbital Advanced Search has an entire category dedicated to Forensics, which contains queries to collect data such as installed programs on the host, types of failed login attempts, operating system attributes, and more.

May 13, 2020

SECURITY

Getting more value from your endpoint security tool #2: Querying Tips for threat hunting

Cisco Orbital Advanced Search has an entire section of its Catalog dedicated to Threat Hunting, mapped to the MITRE ATT&CK™ framework, allowing you to query your endpoints for malicious artifacts.

April 21, 2020

SECURITY

Getting more value from your endpoint security tool #1: Querying Tips for security and IT operations

Cisco Orbital Advanced Search is a powerful capability to aid your endpoint detection and response defense. Empower your IT, Security, and Network Operations teams to confidently query endpoints for valuable information.