Laserfiche WebLink
<br />Critical Insight® and the Critical Insight logo are the trademarks of Critical Insight, Inc. <br />©2023 Critical Insight, Inc. All rights reserved. <br />2 <br />• AMAZON WEB SERVICES (“AWS”) <br />• MICROSOFT AZURE (“AZURE”) <br /> <br />FOR ON PREMISES ENVIRONMENTS WITH COLLECTORS, CI WILL DELIVER <br />AND INSTALL, OR PROVIDE INSTRUCTION FOR INSTALLATION OF, THE CI <br />COLLECTOR ON CUSTOMER PREMISES AND VERIFY OPERATION. <br /> <br />FOR ALL ENVIRONMENTS, CI WILL PROVIDE RELEVANT PROVISIONING <br />INSTRUCTIONS FOR MONITORING TOOLS AND DATA STREAMS. <br /> <br />DATA STREAMS: <br />EACH ENVIRONMENT HAS UNIQUE DATA STREAMS AND CI WILL MONITOR <br />ALL DATA STREAMS DOCUMENTED IN THE DATA INGEST LIST THROUGH <br />APPROVED DATA INGESTION METHODS. THE FOLLOWING LIST DETAILS <br />COMMON DATA STREAMS CI MONITORS PER ENVIRONMENT. THE DATA <br />STREAMS CI WILL MONITOR FOR THE CUSTOMER ARE DOCUMENTED IN THIS <br />DATA INGEST LIST: <br /> <br />• ON-PREMISES <br />• SPECIFIC INTRUSION-DETECTION EVENT STREAMS <br />• SPECIFIED DEVICE, SERVER, INFRASTRUCTURE, AND <br />APPLICATION LOGS <br />• CONTINUOUS ONSITE PACKET COLLECTION FOR NETWORK <br />SEGMENTS SPECIFIED BY CUSTOMER <br />• CI WILL GENERATE FLOW RECORDS FROM COLLECTED <br />PACKETS <br />• CI EPHEMERALLY STORES PACKETS FOR A PERIOD LIMITED <br />BY THE STORAGE CAPACITY OF THE CUSTOMER’S CHOSEN <br />COLLECTORS <br />• AWS <br />• GUARDDUTY ALERTS <br />• CLOUDTRAIL LOGS <br />• VPC FLOW RECORDS <br />• O365 <br />• SPECIFIC MICROSOFT DEFENDER FOR CLOUD APPS ALERT & <br />EVENT STREAMS <br />• SPECIFIC MICROSOFT AZURE AD IDENTITY PROTECTION ALERTS <br />& EVENT STREAMS <br />• Azure AD INTEGRATION FOR RAPID QUARANTINE ACTION AND <br />USER ENRICHMENT <br />• EDR <br />• SPECIFIC SECURITY EVENT STREAMS DEPENDING ON APPROVED <br />EDR <br />• SPECIFIC ACTIONS DEPENDING ON APPROVED EDR <br />• MICROSOFT AZURE <br />• SPECIFIC MICROSOFT DEFENDER FOR CLOUD APPS ALERT & <br />EVENT STREAMS <br />• SPECIFIC MICROSOFT DEFENDER FOR CLOUD ALERT & EVENT <br />STREAMS <br />• SPECIFIC MICROSOFT AZURE AD IDENTITY PROTECTION ALERT & <br />EVENT STREAMS <br />